According to PANews, a recent sophisticated phishing attack has targeted users in the cryptocurrency sector by exploiting the X platform's application authorization mechanism. This attack bypasses passwords and two-factor authentication, leading to the hijacking of several accounts. The attackers used phishing messages disguised as Google Calendar links to trick users into authorizing a malicious application named 'Calendar.' This application, containing disguised characters, requests full account control permissions. Security experts advise affected users to promptly visit the authorized applications page on X and remove the suspicious 'Calendar' app to prevent further damage.