Skip to main content
Mallory
Mallory

Social Engineering Enterprise Cryptocurrency Theft and Prosecution

social engineeringcybercrimecredential theftfinancial crimephishingorganized crimetheftcryptocurrencycriminal groupcryptocurrency holdersprosecutiondigital currencydigital assetscoordinated attackslaundering
Updated December 11, 2025 at 11:22 PM3 sources

Get Ahead of Threats Like This

Know if you're exposed — before adversaries strike.

A criminal group known as the Social Engineering Enterprise orchestrated large-scale cryptocurrency thefts using social engineering tactics and physical attacks to gain access to victims' digital assets. The group targeted individuals with significant cryptocurrency holdings, either deceiving them into revealing access credentials or physically breaking into their homes to steal devices containing private keys. Law enforcement efforts have led to multiple arrests and guilty pleas, including a California man who admitted to laundering millions in stolen cryptocurrency and facilitating the group's operations by renting luxury properties for their activities.

In related developments, a key participant in a $263 million social engineering ring pleaded guilty, and additional members have been indicted and arrested in various locations, including Miami and Dubai. The group's operations began in late 2023 and involved members from the United States and abroad, who coordinated attacks and laundered proceeds through real estate and other means. The ongoing investigation highlights the growing threat of organized cybercrime targeting cryptocurrency holders through both digital and physical means.

Related Entities

Sources

December 11, 2025 at 12:00 AM
December 11, 2025 at 12:00 AM

Related Stories

Major Cryptocurrency-Related Cybercrime Prosecutions and Asset Seizures

Law enforcement agencies in multiple countries have made significant progress in prosecuting individuals and groups involved in large-scale cryptocurrency-related cybercrimes. In the United States, a California man pleaded guilty to laundering at least $25 million as part of a group that stole $230 million in cryptocurrency through social engineering and account takeovers. The group, composed of young adults from several states and abroad, used various tactics to compromise victims' crypto accounts and launder the proceeds, with several members facing charges including wire fraud, racketeering, and money laundering. In the United Kingdom, prosecutors secured a civil recovery order to seize over £4.11 million ($5.39 million) in crypto assets from Joseph James O'Connor, who was convicted for his role in the 2020 Twitter mega-hack. O'Connor and his associates used SIM-swapping and social engineering to hijack high-profile Twitter accounts, soliciting Bitcoin from followers and amassing illicit gains. These actions demonstrate the increasing effectiveness of international law enforcement in tracing, prosecuting, and recovering assets from cybercriminals who exploit cryptocurrency for large-scale fraud and theft.

3 months ago

Major International Law Enforcement Actions Against Cybercrime and Financial Fraud Networks

Law enforcement agencies across multiple countries have conducted significant operations targeting cybercriminal groups responsible for large-scale financial fraud, data breaches, and cryptocurrency theft. In Spain, police arrested a 19-year-old hacker accused of stealing and attempting to sell 64 million personal data records from nine companies, while Ukrainian authorities apprehended a separate data broker who used custom malware to compromise accounts and sell access on hacker forums. In California, a member of the so-called "Social Engineering Enterprise" pleaded guilty to laundering millions in cryptocurrency stolen through sophisticated social engineering attacks, with the group responsible for a $263 million heist and extravagant spending of the proceeds. Meanwhile, Russian police dismantled a gang that used NFCGate-based malware to steal millions from bank customers by tricking victims into installing fake banking apps and harvesting card credentials for remote theft. A major international operation led by Europol and Eurojust dismantled a €700 million cryptocurrency scam network in Europe that used deepfake videos and aggressive marketing to lure victims into fake investment schemes. The network operated numerous fraudulent platforms, laundered funds through complex channels, and was taken down in coordinated raids across several countries, resulting in arrests and the seizure of cash, cryptocurrencies, and luxury items. These actions highlight the growing sophistication of cyber-enabled financial crime and the increasing collaboration between law enforcement agencies to disrupt such operations on a global scale.

3 months ago

SEC Enforcement Against Social Media Crypto Investment Scams

The U.S. Securities and Exchange Commission (SEC) has charged three purported crypto asset trading platforms—Morocoin Tech Corp., Berge Blockchain Technology Co. Ltd., and Cirkor Inc.—along with four investment clubs—AI Wealth Inc., Lane Wealth Inc., AI Investment Education Foundation Ltd., and Zenith Asset Tech Foundation—for orchestrating a fraudulent scheme that targeted retail investors through social media. According to the SEC, these entities misappropriated over $14 million by luring victims with advertisements and group chats that promised profits from AI-generated investment tips, ultimately convincing them to invest in fake crypto trading platforms where their funds were stolen. The operation used sophisticated tactics, including the use of automated trading bots to generate massive volumes of fake transactions, creating the illusion of legitimate trading activity. This enforcement action is part of a broader regulatory crackdown on crypto-related fraud, with the SEC imposing a record $4.98 billion in cryptocurrency penalties in 2024 alone. The case highlights the growing threat of social media-driven investment scams and the SEC's commitment to pursuing securities fraud that harms retail investors. The agency's complaint details how the fraudsters built trust in online group chats, posed as financial professionals, and systematically exploited individuals interested in cryptocurrency investments, underscoring the need for heightened vigilance among potential investors and continued regulatory oversight in the digital asset space.

2 months ago

Get Ahead of Threats Like This

Mallory continuously monitors global threat intelligence and correlates it with your attack surface. Know if you're exposed — before adversaries strike.