Vitalik Buterin's X account was hacked to promote a crypto scam, leading to an estimated $650K+ of assets being stolen; the tweet was deleted within 20 minutes
This incident adds a social-account takeover route to crypto theft alongside the sector's longer record of large exchange and project breaches, including the 2021 run of major digital-currency hacks.
The same tactic later appeared in the compromise of MicroStrategy's X account, where a phishing post was also tied to user losses. That recurrence makes trusted social distribution a material security surface, not merely a reputational one.
First-order effects
People who acted on the fraudulent post lost an estimated $650K+ in assets, while Buterin's account became an immediate vehicle for impersonation-based fraud.
The rapid deletion limited the post's visible lifespan, but did not prevent losses among users who treated the account as a trusted source.
Second-order effects
High-profile crypto figures and organizations face pressure to harden social-account access and to make official communications easier to verify when accounts are compromised.
Users must discount promotional links even when they originate from prominent accounts, reducing the conversion value of social endorsements for legitimate crypto projects.
Third-order effects
If repeated account takeovers continue to produce theft, crypto's trust model will shift further from personality-led social signals toward independently verifiable channels and transaction checks.
The pattern reinforces the crypto legitimacy gap: security failures at the account and platform layer can translate directly into customer losses, even without a breach of the underlying protocol or wallet.
The trend: Crypto fraud is increasingly exploiting the credibility of prominent social accounts as an entry point, extending the sector's security problem beyond exchanges and protocols.
Vitalik's Twitter account got hacked. Use common sense when reading content on social media, even from large KOLs. Twitter's account security is not designed as financial platforms. It needs quite a bit more features: 2FA, login id should be different from handle or email, etc...…
The Twitter account of Ethereum co-founder Vitalik Buterin is suspected of being hacked and posting phishing links. The tweet containing the phishing link has been deleted. Previously, the founder of Uniswap and member of the Ethereum Foundation also encountered similar things. […
Vitalik's X account was compromised 😞 - NO account is ever 100% safe - Even with the most robust 2FA set up, using a physical key, if an X insider is compromised (as has happened before) anyone is susceptible - Use a hardware wallet - And only ever mint from a hot wallet [image]
Imagine reading this Vitalik tweet, offering a free open edition NFT by a company (tens of thousands would get minted and become worthless) and connecting a wallet with 6figure assets. I mean, the hacker was dumb enough to say you had 24 hrs!!! Speechless. We're so early. [image]
🚨 BREAKING NEWS 🚨 The hacker that took over vitalik's Twitter account has been identified as Samuel Whitcomb Hyde. Using the online alias “Ghost of Kyiv” Samuel was able to steal over $1,000,000 in memecoins, NFTs, and cryptocurrency through this exploit. [image]