Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert
Zero fees, no slippage
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
Ledger Phishing Attack Hits Users Through Compromised Admin

Ledger Phishing Attack Hits Users Through Compromised Admin

CoinomediaCoinomedia2025/05/12 09:22
By:Aurelien SageAurelien Sage

A Ledger admin account was hacked to spread a phishing scam, tricking users into revealing their seed phrases.How the Scam UnfoldedStay Safe: What Users Should Know

  • A Ledger admin account was hacked to issue a fake warning.
  • Users were tricked into clicking phishing links.
  • Seed phrases were stolen, leading to asset loss.

In a recent security breach, a community administrator’s account at Ledger, a leading hardware wallet company, was compromised by a malicious actor. The attacker used the admin’s identity to post an alarming—but fake—security vulnerability notice. Disguised as an official Ledger message, the fraudulent warning urged users to protect their assets by clicking a link, which turned out to be a phishing trap.

This scam led many unsuspecting users to a malicious site that requested their wallet seed phrases—the most critical piece of information for crypto security. Those who entered their details unknowingly handed full access to their wallets to the attacker, resulting in the theft of their crypto assets.

How the Scam Unfolded

The attacker took advantage of the trust placed in Ledger’s community moderators. By mimicking the style and urgency of a real Ledger announcement, the hacker crafted a believable post that instructed users to “update their wallet security” via a provided link. The link led to a cloned website designed to steal seed phrases.

Many users acted quickly, thinking they were responding to a real threat. However, the speed and believability of the scam meant that by the time it was exposed as a fraud, losses had already occurred.

An attacker hacked into the account of a community administrator of the hardware wallet company Ledger, impersonated the official to issue a false security vulnerability warning, and induced users to click on phishing links to submit their seed phrases, thereby stealing assets.…

— Wu Blockchain (@WuBlockchain) May 12, 2025

Stay Safe: What Users Should Know

Ledger has since confirmed the hack and is investigating the breach. The company emphasized that users should never share their seed phrases—no legitimate service will ever ask for them, even in emergencies.

To avoid falling victim to such scams in the future, users are encouraged to:

  • Only follow updates from official Ledger channels.
  • Never click on links shared by individuals, even moderators, unless verified.
  • Regularly check for phishing alerts from trusted crypto security sources.

As the crypto space grows, so do the tactics of attackers. Vigilance remains the most powerful defense.

Read Also :

  • Ledger Phishing Attack Hits Users Through Compromised Admin
  • $774M in Crypto Token Unlocks Coming This Week
  • Bitcoin Whale Adds 1,721 BTC Worth $179M in 2 Days
  • Want Speed, Scale, and Security? Qubetics, Polkadot, and Flare Are the Best Cryptos to Join Today
  • Metaplanet Buys 1,241 BTC in Bold Crypto Move
Disclaimer: The content on CoinoMedia is for informational purposes only and does not constitute financial, investment, or legal advice. Cryptocurrency investments carry risks, and readers should conduct their own research before making any decisions. CoinoMedia is not responsible for any losses or actions taken based on the information provided.
0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Locked for new tokens.
APR up to 10%. Always on, always get airdrop.
Lock now!