According to ChainCatcher, citing BeInCrypto, cybercriminals are using a new phishing SMS scam targeting Binance users. Dozens of Binance users reported receiving a batch of seemingly legitimate phishing text messages, using phone numbers and message inboxes consistent with Binance's official communication channels. Upon comparison, these phishing messages have highly similar wording and format. It is speculated that specific threat actors or criminal groups are planning carefully designed phishing attacks against Binance users. In such targeted phishing attacks, SMS messages often warn users of unusual account activities, such as new device two-factor authentication. The most common phishing SMS messages mention an unexpected association between Binance API and Ledger Live, urging recipients to call the provided phone number. Some users noted that these phishing messages appear in the same SMS thread as legitimate Binance notifications, causing confusion and making it easy to fall into the trap. Many users were caught off guard, as the sender ID of the scam messages was identical to Binance's real notification ID.
Binance's Chief Security Officer Jimmy Su confirmed that Binance has noticed an increasing trend in SMS phishing incidents. He stated: "More and more phishing scammers are impersonating us or other legitimate senders via SMS, with scam messages appearing authentic, tricking users into revealing sensitive information, clicking phishing links, or making transfers, resulting in asset losses." Su also revealed that Binance has expanded its anti-phishing code feature to SMS services, which was originally designed for emails. This code is a user-defined identifier that appears in official Binance communications, helping recipients identify genuine notifications and avoid being deceived by impersonators. Currently, the anti-phishing code feature has been launched in all licensed jurisdictions where Binance operates. Additionally, Binance reported that suspicious SMS messages have been received by both registered and unregistered users.