ChainBleedv0.1 · open intel
← back to feed·BITCOIRUG2021-10-15 · 4y ago
Incident · SLOWMIST

CryptoRom

Scam
Estimated loss
$1.40M
VERDICT —UNRATED
Verdict pending. Auto-ingested incidents are reviewed before a public verdict is rendered.
▰ METHOD
RUG
RUGBYTECODE CATCHABLEAI SCANNABLE
Root cause

Root-cause analysis not yet published. The incident description below contains all currently available signal — review the attack transaction directly for definitive forensics.

Forensic narrative

The report released by Sophos stated that the crypto fraud application CryptoRom stole 1.4 million U.S. dollars through the use of "super signature service" and Apple's developer enterprise plan. It is reported that fraudsters gain the trust of victims through Facebook and dating platforms (such as Tinder, Grindr, Bumble, etc.), and then lure them to install a fake cryptocurrency application CryptoRom and invest. The victim installs apps, invests, makes a profit, and is allowed to withdraw funds. After being encouraged, they were forced to invest more, but once they deposited a larger amount, they could no longer withdraw cash. To date, Bitcoin addresses related to the scam have sent more than 1.39 million U.S. dollars, and there may be more addresses related to the scam. According to the report, most of the victims are iPhone users. The report stated that CryptoRom bypassed all security checks in the App Store and remained active every day. The report also stated that Apple “should warn users about installing apps through temporary distribution or through the enterprise configuration system that these apps have not been reviewed by Apple.” Attack method (per SlowMist): Scam. Reported loss: $ 1,400,000.

Primary source
https://threatpost.com/cryptorom-scammers-apple-enterprise-features/175474/
Sourced from
slowmist
Technical record
chain
bitcoin
protocol
CryptoRom
bug_class
rug
date_occurred
2021-10-15
loss_usd
$1,400,000
source_id
sm:cryptorom::2021-10-15
Related — same bug class· rug
2026-05-07
1mo ago
BSC
White Eagle
Rug pull / exit scam (X account deleted, site offline)
rug
$65.6K
UNRATED
2025-11-20
6mo ago
ETH
DMT 空投(@dexmaxai)
Phishing Attack
rug
$130.0K
UNRATED
2025-09-26
8mo ago
HYPERL
HyperVault
Drain Vaults
rug
$3.60M
UNRATED
2025-09-26
8mo ago
HyperVault
Rug Pull
rug
$3.61M
UNRATED
2025-09-23
8mo ago
CORE
Corepound
Drained Contracts
rug
$430.0K
UNRATED
2025-09-23
8mo ago
Corepound
Rug Pull
rug
$400.0K
UNRATED
ChainBleed — live web3 threat intelligence