Ledger warns over fraudulent Google Chrome extension

Cryptocurrency hardware wallet manufacturer Ledger has reportedly issued a warning over a fraudulent Google Chrome extension. Ledger has alerted users to a fraudulent Chrome extension which asks users to enter their 24-word recovery phrase. The tweet, which alerted users to the extension warning, reminds Ledger clients to never share their recovery phrase or enter it in an internet-connected device.

The attack was first reported by Catalin Cimpanu, a cybersecurity reporter for business technology outlet ZDNet. The fraudulent Chrome extension, called Ledger Live, mimics the mobile and desktop application Leger Live which allows clients to sync their hardware wallet with a secured device.

Once installed, users are asked to enter their 24-word seed phrase into the extension, which collects the data via a Google Form. Attackers can then use the recovery phrase to access a user’s Ledger wallet and “recover” the funds to a different account.

While the extension has been removed from the Google Chrome Web Store, the ZDNet report claims it was downloaded at least 120 times.

0

Community Discussion

Loading discussion…

LEAVE A REPLY

Please enter your comment!
Please enter your name here

More like this

Odin Fun Outlines Major Infrastructure and Security Upgrades in...

Odin Fun has outlined a series of infrastructure, security and operational upgrades introduced in V2 of its...

UniSat to phase out CAT Protocol support across products...

UniSat has announced it will gradually discontinue support for the CAT Protocol across its products on Fractal,...

Liquidium Expands Instant Bitcoin Loans With Direct BTC Collateral...

Liquidium has rolled out a simplified borrowing flow that allows users to open Instant Loans backed by...