Ledger secures Discord after hacker bot tried to steal seed phrases

Hardware wallet provider Ledger has confirmed its Discord server is secure again after an attacker compromised a moderator’s account to post scam links on May 11 to trick users into revealing their seed phrases on a third-party website.
“One of our contracted moderators had their account compromised, which allowed a malicious bot to post scam links in one channel,” Ledger team member Quintin Boatwright wrote on the Ledger Discord server.
“The issue was quickly contained: the compromised account was removed, the bot was deleted, the website was reported, and all relevant permissions were reviewed and secured.”
Some members in Ledger’s Discord channel claimed the attacker abused moderator privileges to ban and mute them as they tried to report the breach, possibly slowing Ledger’s reaction.
Boatwright said the security breach was an isolated incident and that Ledger has taken additional measures to strengthen its security on Discord, a chat platform many crypto projects use to share protocol developments and engage with their community.
Using the compromised Ledger community manager account, the hacker told Ledger Discord members that there was a recently discovered vulnerability in the firm’s security systems and strongly urged all users to verify their recovery phrases with a scam link, according to several screenshots shared on X.
Ledger users were asked to connect their wallets and follow on-screen instructions.
It isn’t clear whether anyone was affected by the security breach. Cointelegraph has reached out to Ledger for comment.
Ledger scammers were sending physical letters last month
In April, scammers were mailing physical letters to owners of Ledger hardware wallets, asking them to validate their private seed phrases in a bid to access and empty the wallets.
The letter used Ledger’s logo, business address and a reference number to feign legitimacy and asked users to scan a QR code and enter the wallet’s recovery phrase.
One Ledger user who received the letter speculated whether scammers were sending letters to Ledger customers whose data was leaked in July 2020.
Related: Jameson Lopp: Most don’t realize how easy self-custody has become
That incident saw a hacker breach Ledger’s database and dump the personal information of over 270,000 of its customers online, which included names, phone numbers and home addresses.
The following year, several Ledger users claimed to have been mailed fake Ledger devices that were tampered with and designed to install malware upon use, Bleeping Computer reported at the time.
Magazine: ChatGPT a ‘schizophrenia-seeking missile,’ AI scientists prep for 50% deaths
Bitcoin (BTC) $ 118,098.00
Ethereum (ETH) $ 3,787.97
XRP (XRP) $ 3.16
Tether (USDT) $ 0.999969
BNB (BNB) $ 836.47
Solana (SOL) $ 187.64
USDC (USDC) $ 0.999743
Dogecoin (DOGE) $ 0.232726
Lido Staked Ether (STETH) $ 3,784.91
TRON (TRX) $ 0.323256
Cardano (ADA) $ 0.805446
Wrapped stETH (WSTETH) $ 4,586.06
Wrapped Bitcoin (WBTC) $ 117,992.00
Hyperliquid (HYPE) $ 44.87
Sui (SUI) $ 4.10
Stellar (XLM) $ 0.426279
Chainlink (LINK) $ 18.50
Wrapped Beacon ETH (WBETH) $ 4,072.56
Hedera (HBAR) $ 0.273434
Bitcoin Cash (BCH) $ 582.28
Avalanche (AVAX) $ 26.35
Wrapped eETH (WEETH) $ 4,059.36
WETH (WETH) $ 3,788.25
Litecoin (LTC) $ 110.35
LEO Token (LEO) $ 8.95
Toncoin (TON) $ 3.31
Shiba Inu (SHIB) $ 0.000014
USDS (USDS) $ 0.999643
Ethena USDe (USDE) $ 1.00
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999675
WhiteBIT Coin (WBT) $ 44.22
Uniswap (UNI) $ 10.57
Coinbase Wrapped BTC (CBBTC) $ 118,152.00
Polkadot (DOT) $ 4.09
Monero (XMR) $ 325.67
Bitget Token (BGB) $ 4.63
Pepe (PEPE) $ 0.000012
Cronos (CRO) $ 0.140077
Aave (AAVE) $ 292.35
Ethena Staked USDe (SUSDE) $ 1.19
Ethena (ENA) $ 0.649375
Bittensor (TAO) $ 411.91
Dai (DAI) $ 0.999446
NEAR Protocol (NEAR) $ 2.84
Pi Network (PI) $ 0.446758
Ethereum Classic (ETC) $ 22.26
Ondo (ONDO) $ 1.01
Internet Computer (ICP) $ 5.68
Aptos (APT) $ 4.74
Jito Staked SOL (JITOSOL) $ 228.71
OKB (OKB) $ 48.75
Bonk (BONK) $ 0.000036
Mantle (MNT) $ 0.800032
Kaspa (KAS) $ 0.100199
Pudgy Penguins (PENGU) $ 0.041715
BlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
Algorand (ALGO) $ 0.270961
Arbitrum (ARB) $ 0.448947
Binance-Peg WETH (WETH) $ 3,791.65
Cosmos Hub (ATOM) $ 4.81
USD1 (USD1) $ 1.00
Render (RENDER) $ 4.20
VeChain (VET) $ 0.025301
Gate (GT) $ 18.03
Worldcoin (WLD) $ 1.16
POL (ex-MATIC) (POL) $ 0.232498
SPX6900 (SPX) $ 2.21
Sky (SKY) $ 0.093114
Official Trump (TRUMP) $ 9.94
Fasttoken (FTN) $ 4.59
Sei (SEI) $ 0.331027
Artificial Superintelligence Alliance (FET) $ 0.733678
Binance Staked SOL (BNSOL) $ 199.82
Filecoin (FIL) $ 2.68
Rocket Pool ETH (RETH) $ 4,314.44
Jupiter (JUP) $ 0.580105
Kelp DAO Restaked ETH (RSETH) $ 3,973.35
Lombard Staked BTC (LBTC) $ 118,066.00
Flare (FLR) $ 0.024209
Story (IP) $ 5.68
sUSDS (SUSDS) $ 1.06
Jupiter Perpetuals Liquidity Provider Token (JLP) $ 5.11
Injective (INJ) $ 15.25
XDC Network (XDC) $ 0.091396
KuCoin (KCS) $ 11.46
USDtb (USDTB) $ 0.999728
StakeWise Staked ETH (OSETH) $ 3,983.28
Celestia (TIA) $ 1.97
Mantle Staked Ether (METH) $ 4,059.16
Optimism (OP) $ 0.789454
Liquid Staked ETH (LSETH) $ 4,093.96
Curve DAO (CRV) $ 0.995732
First Digital USD (FDUSD) $ 0.998730
USDT0 (USDT0) $ 0.998854
Fartcoin (FARTCOIN) $ 1.33
NEXO (NEXO) $ 1.32
Stacks (STX) $ 0.817674
Renzo Restaked ETH (EZETH) $ 3,986.28
Polygon Bridged USDT (Polygon) (USDT) $ 0.999933
FLOKI (FLOKI) $ 0.000126