Police warn of cryptocurrency account breaches via compromised e-mails警方警告:加密货币账户可能通过被盗用的电子邮件遭到入侵
Police warn of increased cryptocurrency account breaches via hacked e-mails and advise using strong passwords and multi-factor authentication to enhance security. Read more at straitstimes.com.
Users should regularly review their cryptocurrency transaction history and enable account activity notifications.
Published Sep 12, 2026, 02:30 PM
Updated Sep 12, 2026, 02:30 PM
SINGAPORE – The police are urging individuals who trade in cryptocurrency and whose e-mail accounts have been hacked recently to stay alert to data breaches and review their e-mail security regularly. This follows a rise in cryptocurrency accounts being compromised since mid-August following unauthorised access to victims’ linked e-mail accounts.
In an advisory on Sept 12, the police said that investigations reveal that several of the affected e-mail accounts had previously appeared in data breaches on other platforms, meaning that victims’ credentials may have been exposed.
“Perpetrators may have exploited this by using the compromised e-mail credentials to access victims’ cryptocurrency accounts, taking advantage of victims who reused the same passwords across multiple online services,” the authorities said.
It is likely that scammers may have first searched the e-mail accounts to identify cryptocurrency platforms or exchanges victims used.
They then created inbox rules to automatically archive, forward or delete e-mails from cryptocurrency exchanges to avoid detection.
The scammers could also initiate password reset requests for cryptocurrency accounts and intercept the reset links, one-time passwords (OTPs) or verification e-mails sent to the victim.
Credentials obtained through previous data breaches could also be used to gain access to cryptocurrency accounts where the same password has been reused.
To avoid such breaches, the police advised the public to use strong passwords and enable Multi-Factor Authentication (MFA) or Two-Factor Authentication (2FA). They should avoid reusing passwords.
They should also regularly review the security settings of their e-mail accounts, like checking for unauthorised inbox rules or any suspicious activity.
If account credentials have been exposed, change the password immediately.
With regard with cryptocurrency accounts, the police urged users to regularly review their transaction history and enable account activity notifications.
Should there be a compromise of e-mail or cryptocurrency accounts, they should contact their e-mail service provider and cryptocurrency exchange immediately to secure or freeze their accounts.
The next steps would be to change passwords, check for suspicious activity and remove any unauthorised trusted devices, recovery methods, or authentication methods linked to their account.
The police also urged anyone with information relating to such crimes to call the police hotline at 1800-255-0000, or submit it online at www.police.gov.sg/i-witness .
用户应定期查看加密货币交易记录并启用账户活动通知。
发布于2026年9月12日下午2:30
更新于2026年9月12日下午2:30
新加坡——警方敦促近期遭遇电子邮件账户被盗的加密货币交易者提高警惕,防范数据泄露,并定期检查电子邮件安全设置。此前,自8月中旬以来,由于受害者关联的电子邮件账户遭到未经授权的访问,加密货币账户被盗用的案例有所增加。
警方在 9 月 12 日发布的公告中表示,调查显示,一些受影响的电子邮件帐户此前曾在其他平台的数据泄露事件中出现过,这意味着受害者的凭证可能已被泄露。
当局表示:“犯罪分子可能利用被盗用的电子邮件凭证访问受害者的加密货币账户,他们利用受害者在多个在线服务中重复使用相同密码的漏洞。”
诈骗分子很可能先搜索了受害者的电子邮件账户,以确定他们使用的加密货币平台或交易所。
然后,他们创建了收件箱规则,自动归档、转发或删除来自加密货币交易所的电子邮件,以避免被发现。
诈骗者还可以发起加密货币账户的密码重置请求,并拦截发送给受害者的重置链接、一次性密码 (OTP) 或验证电子邮件。
通过之前的数据泄露事件获得的凭证也可用于访问重复使用相同密码的加密货币账户。
为避免此类安全漏洞,警方建议公众使用强密码并启用多因素身份验证(MFA)或双因素身份验证(2FA)。同时,应避免重复使用密码。
他们还应该定期检查电子邮件帐户的安全设置,例如检查是否存在未经授权的收件箱规则或任何可疑活动。
如果账户凭证泄露,请立即更改密码。
关于加密货币账户,警方敦促用户定期查看交易记录并启用账户活动通知。
如果电子邮件或加密货币账户遭到入侵,他们应立即联系电子邮件服务提供商和加密货币交易所,以保护或冻结其账户。
下一步是更改密码,检查可疑活动,并删除与其帐户关联的任何未经授权的受信任设备、恢复方法或身份验证方法。
警方还敦促任何知悉此类犯罪信息的人士拨打警方热线 1800-255-0000,或登录 www.police.gov.sg/i-witness 在线提交信息。