A Bitcoin toll scam appeared in the Strait of Hormuz, and after a ship paid, it was still shelled

MarketWhisper
BTC4,46%

Bitcoin Toll Scam

According to CoinDesk’s April 22 report, Marisks, a maritime risk services firm in Greece, issued a warning saying scammers are impersonating Iranian authorities and sending messages to multiple shipping companies to demand Bitcoin or USDT as “tolls” to pass through the Strait of Hormuz. Marisks confirmed that the relevant messages are not coming from official Iranian channels, and, according to Reuters, said it believes at least one ship was deceived and still came under shelling when it attempted to pass over the weekend.

Marisks Warns: Original Scam Message vs. Verification Statement

According to the scam message posted publicly by Marisks, the message’s original text states: “After submitting the documents and having our eligibility assessed by Iran’s security departments, we will determine the fee that must be paid in cryptocurrency (BTC or USDT). At that time, your vessel may pass through the strait freely during the agreed time.”

In its statement, Marisks said, “These specific messages are a scam,” and confirmed the content is not from any official Iranian channel. According to Reuters, Marisks believes that after at least one ship paid following deception, it was still shelled when it tried to pass through the Strait of Hormuz.

Strait of Hormuz Background: Blockade Situation and Iran’s Official Crypto Fee Proposal

According to public reports, since the war between the United States and Israel against Iran began on February 28, 2026, Iran has essentially blocked shipping through the Strait of Hormuz, and currently about 20,000 tankers and cargo ships are stuck in the bay. About a week ago, U.S. President Trump ordered a naval blockade of the Strait of Hormuz and has already seized an Iranian vessel that attempted to evade the blockade.

On April 9, 2026, Hamid Hosseini (a spokesperson for the Federation of Petroleum, Natural Gas, and Petrochemical Products Exporters), said that Iran had previously proposed charging vessels transiting through the strait a crypto toll, with the fee possibly calculated in Bitcoin. As of the time of CoinDesk’s report, Iran had not yet responded to the Marisks scam warning.

Frequently Asked Questions

Who issued the warning about the crypto toll scam for the Strait of Hormuz?

According to CoinDesk’s April 22, 2026 report, the warning was issued by Marisks, a maritime risk services firm in Greece. Marisks confirmed the scam messages are not from official Iranian channels and indicated it believes that at least one ship was deceived and shelled when it attempted to pass through the strait.

What cryptocurrencies did the scam message request, and what did it claim the funds were for?

According to the scam message published by Marisks, the scammers requested Bitcoin (BTC) or USDT, claiming that paying would ensure safe passage through the Strait of Hormuz.

Did Iran officially propose charging transiting vessels crypto fees?

According to public reports, on April 9, 2026, Hamid Hosseini, a spokesperson for the Federation of Petroleum, Natural Gas, and Petrochemical Products Exporters, said Iran had proposed charging crypto tolls, with the fee possibly calculated in Bitcoin; however, the scam messages warned about by Marisks have already been confirmed as not coming from official Iranian channels.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

Volo Protocol Loses $3.5M in Sui Hack, Commits to Absorb Losses and Freeze Hacker Funds

Gate News message, April 22 — Volo Protocol, a yield vault operator on Sui, announced yesterday (April 21) that it has begun freezing stolen assets following a $3.5 million exploit. Hackers looted WBTC, XAUm, and USDG from Volo Vaults, marking the latest major DeFi security breach in a

GateNews2h ago

French Family Forced to Transfer $820K in Crypto After Armed Home Invasion

Gate News message, April 22 — A family in Ploudalmézeau, a small town in Brittany, France, was invaded by two armed masked men on Monday (April 20), according to reporting by The Block. Three adults were bound for over three hours and forced to transfer approximately 700,000 euros (about $820,000) i

GateNews3h ago

DOJ Launches Compensation Process for OneCoin Fraud Victims, $40M+ in Recovered Assets Available

Gate News message, April 22 — The U.S. Department of Justice has announced the launch of a compensation process for victims of the OneCoin cryptocurrency fraud scheme, with more than $40 million in recovered assets now available for distribution. The scheme, operated between 2014 and 2019 by Ruja

GateNews4h ago

AI16Z, ELIZAOS Creators Sued Over $2.6B Fraud Allegations; Token Crashes 99.9% From Peak

Federal class action accuses AI16Z/ELIZAOS of a $2.6B crypto fraud via fake AI claims and deceptive marketing, alleging insider favoritism and a staged autonomous system; seeks damages under consumer protection laws. Abstract: This report covers a SDNY federal class-action filed April 21 accusing AI16Z and its rebrand ELIZAOS of a $2.6 billion crypto fraud involving fake AI claims and deceptive marketing. The suit alleges a manufactured link with Andreessen Horowitz and a non-autonomous system. It details a peak valuation in early 2025, a 99.9% crash, and about 4,000 losing wallets, with insiders receiving ~40% of new tokens. Plaintiffs seek damages and equitable relief under New York and California consumer-protection laws. Regulators in Korea and major exchanges have warned or suspended related trading.

GateNews5h ago

SlowMist Alerts: Active MacSync Stealer macOS Malware Targeting Crypto Users

SlowMist warns of MacSync Stealer (v1.1.2) for macOS that steals wallets, credentials, keychains, and infra keys, using spoofed AppleScript prompts and fake 'unsupported' errors; urges caution and awareness of IOCs. Abstract: This report summarizes SlowMist's alert about MacSync Stealer (v1.1.2), a macOS information stealer targeting cryptocurrency wallets, browser credentials, system keychains, and infrastructure keys (SSH, AWS, Kubernetes). It deceives users with spoofed AppleScript dialogs prompting for passwords and visible fake 'unsupported' messages. SlowMist provides IOCs to customers and advises avoiding unverified macOS scripts and remaining vigilant for unusual password prompts.

GateNews6h ago

North Korean Lazarus Group Deploys Mach-O Man Malware to Steal Crypto Wallet Credentials from macOS Users

Lazarus releases Mach-O Man for macOS to steal keychain data and wallet credentials, targeting crypto executives via ClickFix pop-ups and compromised Telegram meetings. Abstract: The article reports that the Lazarus-linked Mach-O Man malware targets macOS to exfiltrate keychain data, browser credentials, and login sessions to access cryptocurrency wallets and exchange accounts. Distribution relies on ClickFix social engineering and compromised Telegram accounts directing victims to fake meeting links. The piece ties the operation to the April 20 Kelp DAO hack and identifies TraderTraitor as Lazarus-affiliated, noting rsETH movement across blockchains via LayerZero’s OFT standard.

GateNews7h ago
Comment
0/400
No comments