New Nano Ledger Bitcoin/Crypto Wallet Scam?

I emailed Ledger but haven't got a reply yet.

Had a few of these emails come through this week and not sure what to make of them.

"We regret to inform you that Ledger has experienced a security breach affecting approximately 86,000 of our customers and that the wallet associated with your e-mail address (my email address) is within those affected by the breach.

Namely, on Tuesday, December 1st 2020, our forensics team has found several of the Ledger Live administrative servers to be infected with malware.

At this moment, it's technically impossible to conclusively assess the severity and the scope of the data breach. Due to these circumstances, we must assume that your cryptocurrency assets are at risk of being stolen.

If you're receiving this e-mail, it's because you've been affected by the breach. In order to protect your assets, please download the latest version of Ledger Live and follow the instructions to set up a new PIN for your wallet. "

That was was pretty obvious and they provide a handy link for you to go to and sort things out. lols (hint: don't click the link but open ledger live and update your FW from there.

And then there's these ones.

From: [email protected]

Apparently login attempt from Ukraine.

"Deаr My Email address
Did уou trу tо log into уour Ledger асcount frоm nеw Ledger Nanо device rесеntly?

Nеw locаtіоn
IP address: 31.255.57.62
Вrоwsеr: Ореrа
Dеviсe id: ledgеr-9392152fеа6mf745v
Usеr agеnt: Моzillа/5.0 (Windows NТ 10.0; Wіn64; x64) applеWebKіt/537.36 Орera/84.0.4147.105 Sаfarі/537.36
Nоte: Unusuаl асtivіtу on уоur ассount.

If уou are nоt the оne whо triеd to log in, рlеаse саnсel devісe authorіzаtiоn now in yоur ассount settings.

And another one apparently from Russia.

Anyone else getting these and should I be concerned or just ignore them?"

Comments

  • What is this ledger you speak of?

    • Nano ledger Bitcoin/crypto wallet

      • What is this Nano ledger Bitcoin/crypto wallet you speak of?

        • It's a cold wallet. DYOR cold wallet. Enjoy.

  • Your wallet is offline, nothing is stored online

  • +1

    Due to these circumstances, we must assume that your cryptocurrency assets are at risk of being stolen.

    The assets are perfectly safe as long as you don't lose or give away your private keys.

    In order to protect your assets, please download the latest version of Ledger Live and follow the instructions to set up a new PIN for your wallet. "

    The assets are air-gapped and there is no need to do anything.

  • Thought so, thanks all.

  • +1

    https://www.ledger.com/ongoing-phishing-campaigns

    Sorry to share a link but this is their response. You can get the same link by opening Ledger Live App on your desktop

  • I received this email too. The email contents is pretty well crafted (as with most crypto-targetting phishing email).

    The only mistake I found in the email is applеWebKіt. The correct casing for this should be AppleWebKit, or specifically AppleWebKit/537.36.

    No need to worry. As long as your 24 words seed phrase is safe (as in not accessible to anyone and only accessible during emergencies that your LNS is not working…), then your assets are safe. All transaction signing happens on the LNS itself, so no entity (not even your computer) has access to the private key that's used to sign (and subsequently) move funds.

    • Cheers, that's what I thought. :)

  • +1

    Just for the lulz, I received another phishing email from the same campaign today. The subject is: Nеw Sіgn in from Chіnа, Schanghaі. Wіthdrаwаl dеlaуеd.

    If someone knows where this Schanghai place in China is, please let me know! Sounds like a fun place to visit later.

    • SO far I've had one from Moscow, one from St Petersburg and 2 from Kiev. :)

  • whats the preferred way to store BTC these days?
    googling seems to suggest ledger or trezor usb keys.

    any other suggestions please?

    • Cold card wallet is the best for btc only

Login or Join to leave a comment