Binance Co-CEO Yi He’s WeChat Account Compromised: A Wake-Up Call for Web2 Security Risks in Crypto
Key Takeaways
- Binance Co-Founder and newly appointed Co-CEO Yi He revealed that her WeChat account was hijacked after an old mobile number tied to the account was reassigned by a telecom provider.
- Hackers used the compromised account to promote a token named Mubarakah, reportedly profiting around $55,000.
- The incident comes weeks after Justin Sun also reported his WeChat account being hacked.
- SlowMist’s founder warns that WeChat account takeovers require alarmingly low effort, especially with leaked passwords and recycled phone numbers.
- CZ reminds users that he does not use WeChat and will never promote any meme coin contracts through that platform.
- A series of recent account compromises, including the BNB Chain official X account, highlight the growing need for stronger Web2 security among crypto leaders.
Overview of the Incident
Hacker Promotes Token to Generate Profit
The Incident Follows a Similar Attack on Justin Sun
SlowMist Founder Explains Why WeChat Hijacking Is So Easy
Account Takeover Requires Only Minimal Verification
- If attackers obtain leaked login credentials,
- They only need verification from two "frequently contacted" accounts, which may simply be users who interacted in group chats—even without any direct messaging history.
Recycled Phone Numbers Are a Major Risk
- Previously linked WeChat or payment accounts
- Weak or reused passwords
- Credential stuffing attacks
- SIM swap abuse
- Social engineering
SlowMist’s Security Recommendations
- Avoid adding unknown contacts casually
- Rotate passwords regularly
- Respond immediately to login or security alerts
- Diversify communication channels and avoid over-reliance on any single Web2 app
CZ Responds—“I Do Not Promote Meme Coins on WeChat”
- Meme coins
- Contract addresses
- Investment opportunities
Part of a Larger Trend: BNB Chain’s X Account Was Also Hacked
Web2 Vulnerabilities Pose Real Threats to Web3 Leaders
- Manipulate token prices
- Mislead large user groups
- Damage brand credibility
- Facilitate phishing or fund theft
Conclusion: Crypto Leaders Need Stronger Multi-Layer Security
- Strict management of linked phone numbers
- Multi-factor authentication (2FA)
- Rapid-response security workflows
- Separation of personal and professional communication channels
- Regular password updates and credential hygiene
FAQs
Q1: Why are crypto executives frequently targeted by hackers?
Q2: Does a recycled phone number automatically compromise a WeChat account?
Q3: Are Web2 account breaches connected to on-chain losses?
Q4: What security measures should high-profile crypto figures adopt?
Q5: Should crypto companies move away from Web2 platforms entirely?
The articles shared on this page are sourced from public platforms and are provided for reference only. They do not represent the position or views of MEXC. All rights belong to MEXC. If you believe any content infringes upon the rights of a third party, please contact service@support.mexc.com for prompt removal. MEXC does not guarantee the accuracy, completeness, or timeliness of any content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be interpreted as a recommendation or endorsement by MEXC. For expert insights and in-depth analysis, visit MEXC Learn.
Latest Updates on Quack AI
View More
Tesla Q2 2026 Earnings Date: Release Time, Webcast and Key Metrics

Stablecoin Adoption: Why Bank-Level Protection Matters

ZEC Price Breaks $1,650 as Zcash Rally Gains New Catalysts
You May Also Like
HOT
Currently trending cryptocurrencies that are gaining significant market attention
Crypto Prices
The cryptocurrencies with the highest trading volume
Newly Added
Recently listed cryptocurrencies that are available for trading


