Hackers Target Ledger’s Discord Server with Phishing Attack that Extracts User’s Seed Phrases ⋆ ZyCrypto
By: bitcoin ethereum news|2025/05/12 23:00:13
0
Share
The Discord server for Ledger, a crypto wallet provider, suffered a security breach with an intruder compromising the moderator’s account, posting scam links, and promoting a third-party website that asked visitors for their crypto seed phrases. Quintin Boatwright, a Ledger spokesperson, said that a contracted moderator had their account compromised, allowing a bot to post scam messages. Boatwright further assured users that the bot had been deleted and the compromised account had been deleted. Ledger also reported the phishing website to the appropriate authorities. The phishing website asked users for their seed phrase, which is a serious compromise because the website link was posted on the official Ledger Discord channel by an official moderator contracted by the organisation. The seed phrase is an essential series of words that gives a person complete access to the crypto wallet. The compromised moderator account censored anyone warning others about the phishing website. The attacker used a bot to overwhelm the server, disallowing people to speak out against the attack. However, the Ledger team quickly deleted the bot and deactivated the moderator account. The rapid response of Ledger may have prevented any further damage from occurring. Boatwright assured Ledger users that much work had been done to prevent this attack from happening again. Ledger plans to implement various safeguards and new security features to prevent phishing attacks. Social engineering attacks of this kind have increased lately, with multiple attempts at exploiting crypto wallets. This may be a positive sign for crypto security, indicating that hackers may have exhausted traditional techniques and are now resorting to social engineering instead. Ledger has reiterated its rules for customers never to share their seed phrase and never connect their wallet through a link shared on Discord. Despite the bot being swiftly removed from the server, the damage of this attack could not be ascertained immediately. In April, scammers conducted a widespread attack against Ledger users, posting letters requesting seed phrases so that addresses could be validated. The letter included an official logo, ID number, business address, and QR code, all vital elements for a successful phishing campaign. The letter asked Ledger customers to follow the QR link and post their seed phrase for validation. The attackers could conduct the phishing request because they had access to the July 2020 Ledger breach, where customer data was exposed. In 2024, phishing attacks proved to be the most expensive attacks in the industry, costing over $1 billion in losses. Crypto firms are increasing their security to prevent further losses from phishing attempts, including education campaigns to help customers understand the risks of using crypto. The rise of phishing attacks may indicate that hackers have exhausted traditional attack methods. In January 2025, however, a phishing attack on over 9,000 Ethereum users resulted in over $10 million in losses. Crypto users are encouraged to educate themselves on crypto use risks and take extra precautions to protect themselves from phishing attacks. They can use multiple authentication methods to make the hacker’s task even harder. There is a growing need for security experts to work in the crypto industry, to share their expertise, and to make the industry a safer place to trade. Many crypto exchanges have started communicating with other businesses, sharing details about suspicious activity and learning from past mistakes.Q Source: https://zycrypto.com/hackers-target-ledgers-discord-server-with-phishing-attack-that-extracts-users-seed-phrases/
You may also like

Just now, Sam Altman was attacked again, this time by gunfire
Sam Altman's residence was shot at again, reflecting the deep anxiety and crisis of trust among the public regarding the accelerated evolution of AI into a "quasi-political force" and the lack of social checks and balances behind the extreme violence.

Straits Blockade, Stablecoin Recap | Rewire News Morning Edition
Oil Price Surges

From High Expectations to Controversial Turnaround, Genius Airdrop Triggers Community Backlash
The deadline for immediate claim is 7 days after TGE. If the user chooses immediate claim, 70% of the tokens will be automatically burned.

The Xiaomi electric vehicle factory in Beijing's Daxing district has become the new Jerusalem for the American elite
What exactly turns an automotive assembly line into a hot spot?

Lean Harness, Fat Skill: The Real Source of 100x AI Productivity
error

Ultraman is not afraid of his mansion being attacked; he has a fortress.
Publicly Betting AI Will Succeed, Secretly Preparing for AI to Go Rogue

US-Iran Negotiations Collapse, Bitcoin Faces Battle to Defend $70,000 Level
Polymarket's latest data shows that the market probability of the Fed standing pat this year has risen to 44%.

Reflections and Confusions of a Crypto VC
As the tide recedes, crypto VCs face a life-and-death test. The bubble of blind token overvaluation has been burst, and the industry's valuation logic is returning to real revenue. In the face of increasingly savvy retail investors and dried-up liquidity, VCs that can only throw money around are des...

Morning News | Ether Machine terminates $1.6 billion SPAC deal; SpaceX holds approximately $603 million in Bitcoin; Michael Saylor releases Bitcoin Tracker information again
Overview of Important Market Events on April 12

Crypto ETF Weekly | Last week, the net inflow for Bitcoin spot ETFs in the U.S. was $816 million; the net inflow for Ethereum spot ETFs in the U.S. was $187 million
Bitwise updates Hyperliquid ETF application documents, with the trading code set as BHYP.

This week's news preview | The U.S. will release March PPI data; French President Macron will give a speech at Paris Blockchain Week
Highlights of the week from April 13 to April 19.

How Do Digital Assets Self-Custody? OpenAI Cofounder's 15-Step Checklist
It's time to outsource our memory to AI

Circle Product Management Director: The Future of Cross-Chain: Building an Interoperability Technology Stack for Internet Financial Systems
Building on the foundation laid by CCTP, Circle is increasing its investment in three main areas: settlement acceleration, broader asset interoperability, and orchestration, making cross-chain value flow more seamless and efficient, and achieving internet-level usability.
UCL Fan Tokens 2026 Guide: How to Trade UEFA Champions League Crypto with Zero Fees on WEEX
Discover UCL fan tokens like PSG, Barcelona, and Man City. Learn how to trade UEFA Champions League crypto with zero fees and earn rewards on WEEX.
WEEX Poker Party Season 2: Check How to Earn Crypto Rewards Now!
Learn how WEEX Poker Party Season 2 (Joker Card Event) works. Discover rules, scoring, rewards, and strategies to earn crypto rewards through gamified trading.

Yu Weiwen: Steady Development of Hong Kong's Compliant Stablecoin Ecosystem
The President of the Hong Kong Monetary Authority, Eddie Yue, published an article titled "Steady Development of Hong Kong's Compliant Stablecoin Ecosystem" in the official column "Hui Si," in which he pointed out that this licensing marks a new stage in the regulation of stablecoins in Hong Kong.

After TACO Ceasefire, Iran War is Just on Pause
Ceasefire Eased Market Sentiment but Did Not Address Core Conflict

The 17-Year Mystery Will Be Solved, Who is Satoshi Nakamoto?
The New York Times Traces the Mystery of Satoshi Nakamoto, with Clues Pointing to Adam Back
Just now, Sam Altman was attacked again, this time by gunfire
Sam Altman's residence was shot at again, reflecting the deep anxiety and crisis of trust among the public regarding the accelerated evolution of AI into a "quasi-political force" and the lack of social checks and balances behind the extreme violence.
Straits Blockade, Stablecoin Recap | Rewire News Morning Edition
Oil Price Surges
From High Expectations to Controversial Turnaround, Genius Airdrop Triggers Community Backlash
The deadline for immediate claim is 7 days after TGE. If the user chooses immediate claim, 70% of the tokens will be automatically burned.
The Xiaomi electric vehicle factory in Beijing's Daxing district has become the new Jerusalem for the American elite
What exactly turns an automotive assembly line into a hot spot?
Lean Harness, Fat Skill: The Real Source of 100x AI Productivity
error
Ultraman is not afraid of his mansion being attacked; he has a fortress.
Publicly Betting AI Will Succeed, Secretly Preparing for AI to Go Rogue
