Hackers strike Ledger’s Discord

-

Ledger’s Discord server just got hit, and not by some small-time crook. A hacker took over a moderator’s account and started spreading phishing links like wildfire.

The target? Your precious wallet seed phrases.

Access

On the weekend, the attacker hijacked a moderator’s account and blasted out messages claiming there was a fresh vulnerability in Ledger’s system.

ledger
X

The scam urged users to verify their seed phrases by clicking a dodgy link.

If you fell for it, you’d be handing over the keys to your crypto vault, no questions asked.

Ledger’s own guy, Quintin Boatwright, said they jumped on it fast, kicked out the compromised mod, nuked the malicious bot, reported the scam site, and tightened security like Fort Knox.

But it gets messier. Some people in the community say the hacker used those mod powers to ban and mute users trying to sound the alarm.

So, instead of a quick heads-up, the scam got a little runway to spread. Classic move, silence the whistleblowers, delay the response.

And screenshots of those fake warnings were all over X, making the rounds like wildfire.

Infection

Now, this isn’t Ledger’s first rodeo with scammers. Back in April, bad actors sent out physical letters to Ledger customers.

These weren’t your grandma’s spam flyers, they looked legit, branded with Ledger’s logo, and pushed users to scan QR codes and enter recovery phrases for security checks.

Many reckon these mailings tie back to a 2020 data breach where hackers leaked personal info of over 270,000 Ledger customers, names, phone numbers, addresses, every freakin’ thing.

And if that wasn’t enough, some users even reported receiving fake Ledger devices loaded with malware the following year. Talk about being targeted by pros.

Vulnerabilities

And while Ledger’s battling phishing storms, the crypto industry’s got its own drama. Ethereum’s latest Pectra upgrade brought in EIP-7702, which security experts are calling a critical vulnerability.

It lets hackers potentially take over wallets without the user’s say-so.

On the BNB Chain front, Mobius Token got drained for $2.15 million thanks to a malicious smart contract that swapped stolen tokens for stablecoins. Yeah, the bad guys are busy, no doubt.


Disclosure:This article does not contain investment advice or recommendations. Every investment and trading move involves risk, and readers should conduct their own research when making a decision.

Kriptoworld.com accepts no liability for any errors in the articles or for any financial loss resulting from incorrect information.

LATEST POSTS

Backpack Unveils a Token Lock Plan Built Around an IPO Clock

Backpack said it plans to launch a 1 billion supply Backpack token in the future. The exchange tied its release schedule to a planned Backpack...

Kraken’s DeFi Earn: Finally, You Don’t Need a PhD to Harvest Yield

Let’s be honest, for the average person, "real" DeFi has always been a bit of a nightmare. Between managing seed phrases, dodging rug pulls, and...

Steak ’n Shake Bitcoin Reserve Hits $15 Million After $5 Million Add

Steak ’n Shake added $5 million in Bitcoin to its Strategic Bitcoin Reserve, and it said it will route all Bitcoin payments made at its...

CZ Says He Won’t Return to Binance Post-Pardon, And It Might Be the Smartest Move Yet

Changpeng Zhao, aka CZ has made it clear, even with a potential Trump pardon, he's not coming back to run Binance. In a new interview,...
119FollowersFollow

Most Popular

Guest posts