Global Scam IntelligenceDaily updates on global scam news and tactics
Back to home
PhishingPublished: September 4, 2026🌐

Binance Warns of Surge in Phishing Attacks Targeting Cryptocurrency Users via Text Messages

Binance has issued a warning about increased phishing attacks targeting cryptocurrency users through fraudulent text messages claiming account security issues or suspicious login attempts. The scammers use shortened links to direct victims to fake login pages designed to steal credentials. Binance recommends users only verify their accounts through the official app and to use security features like address whitelisting and the Verify tool.

How the Phishing Scam Works

Since September 2024, fraudulent text messages impersonating Binance security alerts have targeted cryptocurrency users at scale. Scammers send SMS messages claiming "your account settings have changed" or "suspicious login activity detected," creating urgency. Each message includes a shortened URL and a call-to-action to "verify" or "secure" the account.

These links direct users to fake websites that closely mimic Binance's official login or account verification pages. When users enter their credentials, two-factor authentication codes, or other sensitive information, this data is captured by the scammers. Australian Federal Police have also reported cases where fraudulent messages are inserted within existing Binance message threads, further increasing the appearance of legitimacy.

Warning Signs of Phishing Messages

Binance will never ask you to verify your account through links in text messages. Watch for these red flags:

  • Requests to click links for account verification: Legitimate Binance communications always direct users to open the official app or manually enter the website address
  • Unknown or suspicious sender numbers: Compare the sender's information with official Binance contact details
  • Unusual grammar or phrasing: Scam messages may contain language inconsistencies or awkward wording compared to legitimate company communications
  • Pressure tactics: Phrases like "urgent action required" or "your account will be locked" are common phishing tactics

How to Protect Yourself

1. Use Binance Verify Tool Before clicking any link, visit Binance's official website and use the Verify tool to confirm whether a website address, email, phone number, or social media account actually belongs to Binance. This simple check prevents most phishing attacks.

2. Always Access Through Official Channels Never click links from text messages or emails to log into Binance. Instead, open the official mobile app or manually type the website address into your browser. This single habit eliminates most phishing risks.

3. Enable Withdrawal Address Whitelist Binance's withdrawal whitelist feature restricts fund transfers to pre-approved addresses only. Even if attackers obtain your login credentials, they cannot move funds to their own accounts. Set this up immediately if you haven't already.

4. Secure Your Email Address Your registered email is the gateway to account recovery. Use a strong, unique password for this email account, enable two-factor authentication on it, and avoid sharing it publicly. If your email is compromised, attackers can reset your Binance password.

5. If You've Already Clicked a Malicious Link Immediately contact Binance customer support through the official app. Change your password, review your two-factor authentication settings, and check for any unauthorized transactions. Do not respond to or continue communication with the sender.

Where to Report

If you suspect you've been targeted by this phishing campaign:

  • Report to Binance customer support via the official application
  • Contact your local law enforcement or financial fraud division
  • Report to relevant consumer protection agencies in your country
  • File a report with the FBI's Internet Crime Complaint Center (IC3) if you are in the United States

Source: Gadgets 360

Share