Telegram NewsSubmit game
How to turn on 5 stronger Microsoft Defender protections Image Source: Thoughtco

Microsoft’s X Account Hijacked to Push a Clippy Crypto Scam

George Tsagkarakis 2 min read
Contents 5 sections
We may include affiliate links in our content, meaning we could earn a commission—or receive blockchain-based assets—if you click a link and make a purchase or take a specific action. Additionally, we use generative AI to help draft and refine our posts for clarity and grammar. All content is fact-checked and reviewed by a human editor before publication.

Someone took over Microsoft’s official X account and used it to promise you Clippy’s return in exchange for 500,000 likes. The bait was nostalgia. The goal was a fake cryptocurrency.

The token was called $Clippy, after the paperclip-shaped virtual assistant that many longtime Office users still remember with mixed feelings. Whoever controlled the account promoted it by reposting a related account. X’s team has since suspended that fraudulent account.

The fake apology was the smartest part

The most unusual part of this hijacking came after the scam posts. Shortly after the compromise, a post on Microsoft’s account appeared to distance the company from the hack and threatened bad actors with legal action.

But Microsoft didn’t publish that post either. The apology was fake too.

That’s a nasty move. If you follow a brand and see it disown a hack, you’d reasonably assume the real owners are back in control. Here, that assumption was the trap. The post was likely meant to confuse followers and make it harder to tell whether legitimate users had regained the account.

A stock pairing that didn’t exist

The campaign also claimed the $Clippy token was paired with Microsoft’s own stock, which it listed as MSTF. That claim was absurd. There was no legitimate connection between the two.

The 500,000-like promise worked the same way. Asking people to like a post to bring back a beloved mascot is the kind of engagement request that spreads fast, and every share pushed the token in front of more people.

What we still don’t know

Microsoft hasn’t explained how the attacker got into the account. There’s also no word on how much money the scammers made from the campaign.

Those gaps matter. Without knowing how the account was breached, there’s no way to judge whether the same weakness has been closed or is still open.

Microsoft has been here before

This isn’t the first time a Microsoft X account has been turned against its followers. In June 2024, Microsoft’s India X account was hacked to promote Keith Gill, better known online as “Roaring Kitty” of “GameStop” fame.

That account was used to advertise a GameStop cryptocurrency pre-sale. Users were redirected to a website that could potentially drain their wallets, which made that attack more dangerous than the Clippy campaign, at least based on what’s been disclosed so far.

The takeaway for you is simple. A verified corporate account posting about a token is a red flag, and a follow-up post from that same account saying everything’s fine isn’t proof of anything. If Clippy ever does come back, it won’t need your likes or your wallet.

Share this article
George Tsagkarakis

George Tsagkarakis, known as Staycalm4now is a professional author in the crypto gaming industry since early 2018. He has experienced all the growth of Blockchain Gaming and helped multiple projects achieve their goals and established a player base. He is the co-founder of egamers.io and now the Founder and owner of CryptoGames.gg He is also the COO of MyStage, an…

More from Apps & Social Media

Subscribe
Notify of
0 Comments
Oldest
Newest Most Voted