Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
DCloud Uni-App Framework Fuels Global Crypto Scams

DCloud Uni-App Framework Fuels Global Crypto Scams

Posted on June 29, 2026 By CWS

New research by Infoblox has uncovered that over 236,000 websites are deploying scam templates developed with the DCloud Uni-App, a legitimate Chinese open-source framework. These sites are implicated in various fraudulent activities, including fake cryptocurrency exchanges and phishing schemes.

Widespread Use of Scam Templates

The DCloud Uni-App framework powers numerous malicious websites, including fake gambling platforms and cryptocurrency wallet drainers. Infoblox identified 236,493 unique domains using these templates, emphasizing the significant scale of the threat. The operators of these scams employ complex strategies to deceive unsuspecting victims.

Evidence suggests that a central entity may be managing many of these domains, as indicated by patterns in domain registrations and technical footprints. This centralized control could be facing challenges or restructuring, as inferred from observed changes in registration trends.

Notorious Scams and Their Impact

Among the identified scams is RainbowEx, a fraudulent cryptocurrency exchange involved in a Ponzi scheme that affected thousands in San Pedro, Argentina. Seven individuals connected to RainbowEx were arrested in 2024, highlighting the severe impact of these scams on communities.

While the DCloud Uni-App itself is not inherently malicious, its use in scams is characterized by fake interfaces and deceptive prompts. These sites target a global audience, impersonating well-known brands and platforms to lure victims.

Technical Insights and Prevention

Infoblox’s analysis shows these scams are hosted on reputable providers like Cloudflare and Amazon Web Services, with some using bulletproof hosting to avoid takedowns. Sophisticated operators often disguise their activities by modifying the framework’s default signatures.

In the United States, similar scams have emerged, exploiting the DCloud framework in schemes such as the LSSC scooter-sharing scam. These scams often require victims to recruit others, perpetuating the fraudulent operation.

Infoblox emphasizes the need for vigilance and collaboration between cybersecurity experts and hosting providers to combat these threats effectively. Understanding the infrastructure and tactics of these scams is crucial for developing robust prevention strategies.

The continued evolution of online scams necessitates constant vigilance and adaptive measures to protect users from emerging threats.

The Hacker News Tags:crypto scams, Cryptocurrency, Cybercrime, Cybersecurity, DCloud, fake exchanges, Infoblox, internet fraud, investment fraud, online security, Phishing, Ponzi scheme, RainbowEx, scam prevention, wallet drainers

Post navigation

Previous Post: DCloud Uni-App Framework Fuels Global Crypto Scams
Next Post: NAIC Confirms Data Breach in Oracle PeopleSoft Hack

Related Posts

AI-Based Phishing Scheme Targets Apple Device Owners AI-Based Phishing Scheme Targets Apple Device Owners The Hacker News
New Oracle E-Business Suite Bug Could Let Hackers Access Data Without Login New Oracle E-Business Suite Bug Could Let Hackers Access Data Without Login The Hacker News
Google Addresses Critical Chrome Zero-Day Vulnerability Google Addresses Critical Chrome Zero-Day Vulnerability The Hacker News
Smart TVs Used as AI Data Proxies by Free Apps Smart TVs Used as AI Data Proxies by Free Apps The Hacker News
Ukrainian Sites Hacked for Psychedelic Stealer Distribution Ukrainian Sites Hacked for Psychedelic Stealer Distribution The Hacker News
Cybersecurity Threats: SMS Blaster, OpenEMR, and Roblox Hacks Cybersecurity Threats: SMS Blaster, OpenEMR, and Roblox Hacks The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • New Windows Attack Bypasses EDR with Process Injection
  • Citrix Urges Immediate Update for NetScaler Vulnerabilities
  • Microsoft SharePoint Vulnerability CVE-2026-65660 Under Attack
  • Unpatched Citrix NetScaler Flaws Pose Security Threat
  • Citrix Faces Critical NetScaler RCE Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • New Windows Attack Bypasses EDR with Process Injection
  • Citrix Urges Immediate Update for NetScaler Vulnerabilities
  • Microsoft SharePoint Vulnerability CVE-2026-65660 Under Attack
  • Unpatched Citrix NetScaler Flaws Pose Security Threat
  • Citrix Faces Critical NetScaler RCE Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark