Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
WhatsApp Scams Manipulate Stocks with Investors’ Money

WhatsApp Scams Manipulate Stocks with Investors’ Money

Posted on August 21, 2026 By CWS

Scammers have devised a new method to manipulate stock markets by leveraging WhatsApp groups to deceive unsuspecting investors. This emerging scam does not require compromised trading accounts or stolen credit cards. Instead, it involves persuading individuals to execute legitimate trades, leaving them with losses when stock prices tumble.

Exploiting Social Engineering Tactics

These schemes utilize short-lived deepfake advertisements paired with promises of lucrative stock tips. Once individuals click on these ads, they are guided into specific WhatsApp groups based on their location. Within these groups, a seemingly credible ‘head analyst’ advises members on small-cap stocks, setting target prices and limits, which are actually orchestrated to manipulate the market.

According to analysts from Group-IB, this activity was uncovered during investigations into two fraudulent operations known as GoldBull and CoinLure. A report shared with Cyber Security News highlighted that scams are particularly challenging to counter when victims are manipulated into making trades themselves.

WhatsApp Groups Fueling Stock Manipulation

The GoldBull operation begins with deepfake ads posing as financial experts, creating urgency for quick action due to their brief online presence. Victims are directed into WhatsApp groups where an analyst persona presents what seems to be an exclusive investment opportunity.

Participants are instructed to purchase small-cap stocks and provide proof of their transactions. This tactic generates the necessary buying pressure to inflate stock prices. In some instances, groups with around 1,000 members managed to influence thinly traded stocks, involving $1.5 million to $3 million of victim investments in a single campaign.

For example, on November 6, 2025, participants were told to buy a NASDAQ-listed stock at $24.79, aiming for $29. The price reached $27.87 by December 9, but the target was not achieved. By February, the stock plummeted to $14.27, significantly below the purchase price.

Fake Investment Platforms and Network Expansion

The CoinLure operation employs search-engine-optimized pages and social media ads to lure individuals into sham investment platforms. Victims encounter fake registration processes and trial funds before being offered tiered plans, making the fraudulent service appear legitimate.

When victims attempt to withdraw funds, they face various obstacles such as minimum balance requirements and alleged fees, effectively trapping their investments. Some victims are even approached with deceitful recovery offers demanding upfront fees.

Investigators have linked CoinLure to 208 domains, employing common templates and hosting, with an estimated network revenue of $187 million. This infrastructure provides a pathway for authorities to trace fraudulent activities across related domains and ads.

The report emphasizes the need for comprehensive strategies that connect the dots across financial institutions and protect customer data. Individuals should verify financial advisors, avoid guaranteed returns, and refrain from sending fees to access their own funds.

Cyber Security News Tags:brokerage scams, CoinLure, Cybersecurity, deepfake ads, fake platforms, financial fraud, GoldBull, Group-IB, investment fraud, social engineering, stock manipulation, WhatsApp scams

Post navigation

Previous Post: Cybersecurity Highlights: Key Vulnerabilities and Attacks
Next Post: Microsoft Defender Driver Exploit Risks Security Software

Related Posts

CNCERT Accuses of US Intelligence Agencies Attacking Chinese Military-Industrial Units CNCERT Accuses of US Intelligence Agencies Attacking Chinese Military-Industrial Units Cyber Security News
Kodak Acknowledges Data Breach Amid ShinyHunters Threat Kodak Acknowledges Data Breach Amid ShinyHunters Threat Cyber Security News
Cisco Nexus Dashboard Fabric Controller Vulnerability Allows Attackers Device Impersonate as Managed Devices Cisco Nexus Dashboard Fabric Controller Vulnerability Allows Attackers Device Impersonate as Managed Devices Cyber Security News
AI Adoption Surges While Governance Lags — Report Warns of Growing Shadow Identity Risk AI Adoption Surges While Governance Lags — Report Warns of Growing Shadow Identity Risk Cyber Security News
HPE OneView Software Vulnerability Let Attackers Execute Remote Code HPE OneView Software Vulnerability Let Attackers Execute Remote Code Cyber Security News
10-Year-Old Roundcube RCE Vulnerability Let Attackers Execute Malicious Code 10-Year-Old Roundcube RCE Vulnerability Let Attackers Execute Malicious Code Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Ex-NSA Chief Paul Nakasone Opens Security Advisory Firm
  • Microsoft Defender Driver Exploit Risks Security Software
  • WhatsApp Scams Manipulate Stocks with Investors’ Money
  • Cybersecurity Highlights: Key Vulnerabilities and Attacks
  • Critical Spring Security Vulnerability Exposes LDAP Servers

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Ex-NSA Chief Paul Nakasone Opens Security Advisory Firm
  • Microsoft Defender Driver Exploit Risks Security Software
  • WhatsApp Scams Manipulate Stocks with Investors’ Money
  • Cybersecurity Highlights: Key Vulnerabilities and Attacks
  • Critical Spring Security Vulnerability Exposes LDAP Servers

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark