Skip to content

No results found

To keep going please Log in.

or

By submitting my information, I agree to the Privacy Policy and Terms of Service.

To keep going please Log in.

or

By submitting my information, I agree to the Privacy Policy and Terms of Service.

To keep going please Log in.

or

By submitting my information, I agree to the Privacy Policy and Terms of Service.

To keep going please Log in.

or

By submitting my information, I agree to the Privacy Policy and Terms of Service.

Fake Ledger app on Apple App Store reportedly drained $9.5M from 50 victims

Fake Ledger app on Apple App Store reportedly drained $9.5M from 50 victims

A fake Ledger Live application on the Apple App Store has been linked to a multi-blockchain theft on April 14.

Between April 7 and April 13, attackers spoofed Ledger Live, an app for Ledger hardware wallet users to manage digital assets. This impersonation drained $9.5 million from over 50 victims, according to analysis shared by on-chain sleuth alias ZachXBT. The attack targeted multiple chains: Bitcoin (BTC), Ethereum Virtual Machine (EVM), Tron (TRX), Solana (SOL), and XRP Ledger (XRPL).

An on-chain forensic map. Source: ZachXBT

On-chain analysis showed the attacker laundered stolen funds through KuCoin cryptocurrency exchange and AudiA6, a centralized mixing platform. Meanwhile, Apple flagged the fake Ledger Live application as fraudulent and removed it on Monday.

Fake Ledger Live app weaponized trust on App Store

The fraudulent replica of Ledger Live passed Apple’s App Store review process and became discoverable by users seeking the legitimate platform. Since the fake version lacked visual features that set it apart from the real one, both novice and experienced crypto users were scammed.

The fake Ledger Live app asked users for a seed phrase, disguised as wallet restoration. Notably, the real Ledger Live app never asks for a seed phrase.

Meanwhile, users of the fake application unknowingly entered their seed phrase, thereby surrendering the master key to their entire crypto portfolio. As a result, the attacker seamlessly reconstructed the victims’ wallets on separate devices and systematically drained funds across multiple blockchain networks.

The largest confirmed loss was about $3.22 million in Tether (USDT), drained on April 9. On April 11, the attacker took $2.08 million in Circle’s USD Coin (USDC). As a result, ZachXBT suggested Apple could face a class-action lawsuit for allowing the fake app to pass its review process.

Best Crypto Exchange for Intermediate Traders and Investors

  • Invest in cryptocurrencies and 3,000+ other assets including stocks and precious metals.

  • 0% commission on stocks - buy in bulk or just a fraction from as little as $10. Other fees apply. For more information, visit etoro.com/trading/fees.

  • Copy top-performing traders in real time, automatically.

  • eToro USA is registered with FINRA for securities trading.

30+ million Users worldwide
Securities trading offered by eToro USA Securities, Inc. (“the BD”), member of FINRA and SIPC. Cryptocurrency offered by eToro USA LLC (“the MSB”) (NMLS: 1769299) and is not FDIC or SIPC insured. Investing involves risk, and content is provided for educational purposes only, does not imply a recommendation, and is not a guarantee of future performance. Finbold.com is not an affiliate and may be compensated if you access certain products or services offered by the MSB and/or the BD
Finbold Career

Join Finbold's newsroom, become a crypto reporter today!

Apply now to join Finbold as a crypto/finance news writer!

Latest posts

Finance Digest

By subscribing you agree with Finbold T&C’s & Privacy Policy

Related posts

Finbold AI Agent

How AI Price Predictions Work

We use cutting-edge AI models to forecast future prices for stocks and crypto.

Home

No results found

IMPORTANT NOTICE

Finbold is a news and information website. This Site may contain sponsored content, advertisements, and third-party materials, for which Finbold expressly disclaims any liability.

RISK WARNING: Cryptocurrencies are high-risk investments and you should not expect to be protected if something goes wrong. Don’t invest unless you’re prepared to lose all the money you invest. (Click here to learn more about cryptocurrency risks.)

By accessing this Site, you acknowledge that you understand these risks and that Finbold bears no responsibility for any losses, damages, or consequences resulting from your use of the Site or reliance on its content. Click here to learn more.