CCT - Crypto Currency Tracker logo CCT - Crypto Currency Tracker logo
Coinpaprika 2024-12-18 09:59:36

Ledger Users Targeted in New Phishing Scam

Ledger users have become the latest targets of a sophisticated phishing scam, as scammers impersonate official Ledger communications to steal recovery phrases. These fake emails, crafted to appear legitimate, urge users to verify their recovery phrases on a fraudulent website, granting attackers full access to victims’ cryptocurrency wallets. The surge in holiday transactions adds urgency to the ongoing threat of crypto scams. The phishing campaign, detailed by tech news outlet Bleeping Computer, begins with deceptive emails titled “Security Alert: Data Breach May Expose Your Recovery Phrase.” These emails claim that a recent Ledger data breach may have put users’ recovery phrases at risk and direct recipients to a fake Ledger-branded website. Hosted on Amazon Web Services, the site appears professional and mimics Ledger’s legitimate platform. Users are prompted to conduct a "security check" by entering their recovery phrases, which are then validated against a recognized word list. Regardless of input, the site falsely claims phrases are invalid, encouraging users to try again, ensuring scammers obtain accurate information. Once attackers have the recovery phrases, they can take full control of wallets, draining funds and seizing other digital assets. This scam highlights the dangers of phishing during the holiday season, a time when online activity spikes, and vigilance is often lowered. Ledger has not confirmed a new data breach but reminded users of its long-standing policy: “Ledger will never ask for your 24-word recovery phrase. If someone does, it’s a scam.” The company has faced phishing issues before, especially after a 2020 breach that exposed customer information, leading to targeted phishing campaigns. Another incident in December 2023 saw Ledger’s connector library exploited, resulting in nearly $500,000 in losses. These recurring events have eroded trust among some users, with one remarking, “For a company we trust to safeguard our assets, this is not reassuring.” Crypto fraud has fluctuated recently, with phishing-related losses dropping by 53% in November 2024 to $9.3 million. However, this latest attack suggests scammers are refining their tactics. Security experts warn that crypto investors must remain cautious and take proactive measures to protect their wallets, especially during high-risk periods like the holidays. Ultimately, safeguarding digital assets is the individual’s responsibility.

Leggi la dichiarazione di non responsabilità : Tutti i contenuti forniti nel nostro sito Web, i siti con collegamento ipertestuale, le applicazioni associate, i forum, i blog, gli account dei social media e altre piattaforme ("Sito") sono solo per le vostre informazioni generali, procurati da fonti di terze parti. Non rilasciamo alcuna garanzia di alcun tipo in relazione al nostro contenuto, incluso ma non limitato a accuratezza e aggiornamento. Nessuna parte del contenuto che forniamo costituisce consulenza finanziaria, consulenza legale o qualsiasi altra forma di consulenza intesa per la vostra specifica dipendenza per qualsiasi scopo. Qualsiasi uso o affidamento sui nostri contenuti è esclusivamente a proprio rischio e discrezione. Devi condurre la tua ricerca, rivedere, analizzare e verificare i nostri contenuti prima di fare affidamento su di essi. Il trading è un'attività altamente rischiosa che può portare a perdite importanti, pertanto si prega di consultare il proprio consulente finanziario prima di prendere qualsiasi decisione. Nessun contenuto sul nostro sito è pensato per essere una sollecitazione o un'offerta