ZeroSecurity - Information Security News
  • Home
  • Security
    • Exploits
    • Mobile Security
  • Malware
  • Breaches
  • Crypto
  • Privacy
  • Tech
    • AI
    • Downloads
      • Malwarebytes
      • Exploits
      • Paper Downloads
    • Reviews
No Result
View All Result
SUBSCRIBE
ZeroSecurity - Information Security News
  • Home
  • Security
    • Exploits
    • Mobile Security
  • Malware
  • Breaches
  • Crypto
  • Privacy
  • Tech
    • AI
    • Downloads
      • Malwarebytes
      • Exploits
      • Paper Downloads
    • Reviews
No Result
View All Result
ZeroSecurity - Information Security News
No Result
View All Result
Home Crypto

Betterment Investment Users Targeted by “Triple Crypto” Scam Notification

Paul by Paul
January 11, 2026
in Crypto, Data Breaches
Reading Time: 3 mins read
Betterment investments hacked for crypto scam
Share on FacebookShare on Twitter

Digital investment advisor Betterment confirmed a security incident over the weekend involving fraudulent push notifications sent to its clients. Users reported receiving messages promising “triple returns” on cryptocurrency investments. The company attributes the unauthorized messages to a compromised third-party tool rather than a direct breach of its internal systems.

You might also like

Panera Bread Hacked – Exposes 5.1 Million Customer Records

KPMG Netherlands Listed as Victim by Nova Ransomware Group

RansomHouse Claims Breach of Key Apple Assembler Luxshare

The Scam Notification

Users began reporting suspicious activity on Saturday across social media platforms like Reddit. The notifications appeared directly within the Betterment mobile interface and via standard push alerts, lending the scam a veneer of legitimacy.

The message announced a fake “Triple Crypto App” launch. It directed users to a malicious external website designed to harvest credentials or funds.

Key characteristics of the fraudulent message included:

  • Promises of 300% returns on crypto assets.
  • Links directing users to a phishing domain distinct from Betterment’s official site.
  • Urgent language designed to prompt immediate user action.

Betterment’s Response and Mitigation

Betterment quickly acknowledged the issue via social media channels and direct communication. The company stated that a bad actor gained unauthorized access to a “custom notification feature” managed by an external vendor.

The firm took immediate steps to mitigate the threat. Engineers disabled the compromised notification tool to prevent further transmission of the phishing links.

Crucially, Betterment assured customers that their core systems remain intact. The company stated that user account data, invested funds, and personal identifiable information (PII) were not accessed or compromised during the event.

Third-Party Risk Exposure

This incident highlights the persistent threat of supply chain vulnerabilities in the financial technology sector. Attackers increasingly target third-party integrations—such as marketing tools or customer support platforms—to bypass the hardened defenses of the primary target.

By compromising a notification tool, attackers successfully leveraged Betterment’s trusted reputation. A push notification from a verified app is statistically more likely to generate clicks than a standard phishing email, making this vector particularly dangerous.

Recommended Actions for Users

While Betterment reports that internal systems are secure, information security professionals recommend users exercise caution.

  • Do Not Interact: Do not click links regarding “Triple Crypto” or similar high-yield promotions.

  • Verify Domains: Ensure you are accessing betterment.com directly rather than through message links.

  • Rotate Credentials: As a precaution, update passwords and verify that Two-Factor Authentication (2FA) is enabled on all financial accounts.

Betterment continues to investigate the scope of the third-party compromise. Users who may have clicked the link or provided information to the malicious site should contact Betterment support immediately.

Sources:

  • Yahoo Finance: Scam notification promising triple crypto returns sent to Betterment accounts
  • Reddit: This seems suspicious… Triple crypto app?
  • TradingView: Betterment urges users to ignore unauthorized crypto promotion message
  • KuCoin: Betterment Warns Users of Fake ‘Triple Return’ Scam
Previous Post

Rainbow Six Siege Hacked: Players Gifted Billions of Credits as Ubisoft Forces Servers Offline

Next Post

Europol Dismantles Black Axe Cell in Spain, Arrests 34 for €5.9M Fraud

Paul

Paul

Editor and chief at ZeroSecurity. Expertise includes programming, malware analysis, and penetration testing. If you would like to write for ZeroSecurity, please click "Contact us" at the bottom of the page.

Recommended For You

Panera Bread Hacked – Exposes 5.1 Million Customer Records

Panera Bread Hacked – Exposes 5.1 Million Customer Records

February 8, 2026
KPMG Netherlands Listed as Victim by Nova Ransomware Group

KPMG Netherlands Listed as Victim by Nova Ransomware Group

January 24, 2026

RansomHouse Claims Breach of Key Apple Assembler Luxshare

January 20, 2026

Tennessee Man Pleads Guilty to Posting Stolen SCOTUS Docs on Instagram

January 19, 2026

BreachForums Database Leak Exposes Over 320,000 Users

January 14, 2026

Rainbow Six Siege Hacked: Players Gifted Billions of Credits as Ubisoft Forces Servers Offline

December 27, 2025 - Updated on December 28, 2025

Related News

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

January 30, 2026
KPMG Netherlands Listed as Victim by Nova Ransomware Group

KPMG Netherlands Listed as Victim by Nova Ransomware Group

January 24, 2026
RansomHouse Claims Breach of Key Apple Assembler Luxshare

RansomHouse Claims Breach of Key Apple Assembler Luxshare

January 20, 2026
ZeroSecurity - Information Security News

We cover the latest in technology news, Crypto, Artificial Intelligence, and the threat trends impacting these sectors.

Categories

Piracy

Tutorials

Programming

Malware Analysis

Downloads

  • Contact us
  • Press
  • Writers
  • Privacy Policy
  • Terms of Service

© 2026 ZeroSecurity, All Rights Reserved.

No Result
View All Result
  • Home
  • Security
    • Tools
  • Exploits
  • Data Breaches
  • Malware
  • Privacy
  • Mobile Security
  • Contact Us
    • Press
  • Privacy Policy

© 2026 ZeroSecurity, All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.