Microsoft’s X account was hijacked in a crypto promotion scheme
Microsoft says the posts were unauthorized and the account is secured while it investigates the takeover.
Attackers briefly took over Microsoft’s official X account and used it to push a crypto token tied to a Clippy impersonation, turning a high-profile brand account into a pump-and-dump lure. Microsoft said the posts were unauthorized, that the account has been secured, and that it is still investigating how the takeover happened. The incident matters because it shows how quickly a trusted corporate account can be abused to drive token speculation and phishing-style engagement. It also fits a wider pattern of X account hijacks used for crypto scams, including Microsoft India in June 2024 and the SEC account in a separate Bitcoin-related compromise.
Why it matters
The incident shows how a trusted corporate account can be turned into a lure for crypto speculation and phishing-style engagement in minutes. It also adds to a pattern of hijacked X accounts being used for similar scams, which raises the stakes for people who rely on verified brand accounts as signals of authenticity.
Keep or strike?
Does this story matter, or is it hype? Mark it before you see what everyone else did.
Sources
- BleepingComputer