BEAMSTART Logo

HomeNews

Hackers using fake Ledger Live app to steal seed phrases and drain crypto

Coin Telegraph LogoCoin Telegraph15h ago

Hackers using fake Ledger Live app to steal seed phrases and drain crypto - Coin Telegraph

Quick Summary:

Cybercriminals are using fake Ledger Live apps to drain macOS users’ crypto through malware that steals seed phrases, a cybersecurity firm warns. The malware replaces the legitimate Ledger Live app on victims’ devices and then prompts the user to input their seed phrase through a phony pop-up message, a team from Moonlock said in a May 22 report.“Initially, attackers could use the clone to steal passwords, notes, and wallet details to get a glimpse of the wallet’s assets, but they had no way to extract the funds,” the Moonlock team said.“Now, within a year, they have learned to steal seed phrases and empty the wallets of their victims,” it added. One way the scammers replace the real Ledger Live app with a clone is through the Atomic macOS Stealer, designed to steal sensitive data, which Moonlock said it has found lurking on at least 2,800 hacked websites.

Source: Moonlock After infecting a device, Atomic macOS steals personal data, passwords, notes and wallet details and replaces the real Ledger Live app with a phony. “The fake app then displays a convincing alert about suspicious activity, prompting the user to enter their seed phrase,” the Moonlock team said.“Once entered, the seed phrase is sent to an attacker-controlled server, exposing the user’s assets in seconds.”Malware campaign active since August Moonlock has been tracking malware that's distributing a malicious clone of Ledger Live since August, with at least four active campaigns, and they think hackers are “only getting smarter.” Threat actors on the dark web are offering malware with “anti-Ledger” features.

Hackers will continue to exploit the trust crypto owners place in Ledger Live.” Related: Ledger secures Discord after hacker bot tried to steal seed phrasesTo avoid falling prey to similar malware scams, the cybersecurity firm recommends being wary of any page that warns of a critical error and asks for a 24-word recovery phrase.

or

Article Details

Author / Journalist: Cointelegraph by Stephen Katte

Category: Crypto

Markets:

Topics:

Source Website Secure: Yes (HTTPS)

News Sentiment: Negative

Fact Checked: Legitimate

Article Type: News Report

Published On: 2025-05-23 @ 06:58:43 (15 hours ago)

News Timezone: GMT -5:00

News Source URL: cointelegraph.com

Language: English

Article Length: 484 words

Reading Time: 3 minutes read

Sentences: 18 lines

Sentence Length: 27 words per sentence (average)

Platforms: Desktop Web, Mobile Web, iOS App, Android App

Copyright Owner: © Coin Telegraph

News ID: 28921728

View Article Analysis

About Coin Telegraph

Coin Telegraph Logo

Main Topics: Crypto

Official Website: cointelegraph.com

Update Frequency: 23 posts per day

Year Established: 2013

Headquarters: United States

News Last Updated: 7 hours ago

Coverage Areas: United States

Ownership: Independent Company

Publication Timezone: GMT -5:00

Content Availability: Worldwide

News Language: English

RSS Feed: Available (XML)

API Access: Available (JSON, REST)

Website Security: Secure (HTTPS)

Publisher ID: #11

Publisher Details

Frequently Asked Questions

How long will it take to read this news story?

The story "Hackers using fake Ledger Live app to steal seed phrases and drain crypto" has 484 words across 18 sentences, which will take approximately 3 - 5 minutes for the average person to read.

Which news outlet covered this story?

The story "Hackers using fake Ledger Live app to steal seed phrases and drain crypto" was covered 15 hours ago by Coin Telegraph, a news publisher based in United States.

How trustworthy is 'Coin Telegraph' news outlet?

Coin Telegraph is a fully independent (privately-owned) news outlet established in 2013 that covers mostly crypto news.

The outlet is headquartered in United States and publishes an average of 23 news stories per day.

It's most recent story was published 7 hours ago.

What do people currently think of this news story?

The sentiment for this story is currently Negative, indicating that people regard this as "bad news".

How do I report this news for inaccuracy?

You can report an inaccurate news publication to us via our contact page. Please also include the news #ID number and the URL to this story.
  • News ID: #28921728
  • URL: https://pretty-looking.beamstart.com/news/hackers-using-fake-ledger-live-17479814185349

BEAMSTART

BEAMSTART is a global entrepreneurship community, serving as a catalyst for innovation and collaboration. With a mission to empower entrepreneurs, we offer exclusive deals with savings totaling over $1,000,000, curated news, events, and a vast investor database. Through our portal, we aim to foster a supportive ecosystem where like-minded individuals can connect and create opportunities for growth and success.

© Copyright 2025 BEAMSTART. All Rights Reserved.