
- Hackers are increasingly targeting social media influencers and content creators
- Their accounts have enormous reach, which crooks can use to deploy malware
- Followers are often drawn into crypto scams and identity theft
Cybercriminals are increasingly targeting social media influencers and other popular individuals in an attempt to infect their followers with malware, draw them into crypto scams, or steal their sensitive information.
A new report from Bitdefender has warned the trend was widespread in 2024, and has now continued into 2025 too.
Threat actors would first approach social media influencers and content creators in different ways, the report notes - they might offer fake sponsorship deals, fake advanced AI-powered video software, or through simple phishing attacks. If the victim falls for the trick and downloads malware, the attackers get ahold of the login credentials for the different platforms they’re using (YouTube, Instagram, TikTok, and others).
Millions of people at risk
The platforms are then used to target the followers in different ways.
For example, Bitdefender says there were more than 9,000 malicious live streams on YouTube alone.
“These streams often appear legitimate at first glance, but they are controlled by hackers who have rebranded compromised channels,” they said. Rebrands often spoof major names such as Donald Trump, Elon Musk (a favorite among crypto scammers), Michael Saylor, or Brad Garlinghouse.
The researchers believe this is a major problem, with millions of people at risk. In fact, one compromised YouTube account was followed by more than 28 million people, and another compromised account has had more than 12 billion views in total.
“The staggering number underscores the global reach that threat actors can access,” Bitdefender added. “If cybercriminals convert just 1% of those views, that equates to a staggering 124 million potential victims exposed to scams, malware, or data theft.”
During these live streams, crooks would promote malicious domains, which they can use to steal credentials, people’s cryptocurrency holdings, or personal information.
Content creators are advised to tighten up on security, while followers should be skeptical of everything they see online, including information coming from their favorite influencer.
You might also like
- Beware, these dangerous fake Microsoft Office add-ons are spreading malware
- We've rounded up the best password managers
- Take a look at our guide to the best identity theft protection