Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Solana price forms symmetrical triangle amid MACD cross

    April 14, 2026

    Bitcoin price at all-time high while other metrics at lows

    April 14, 2026

    fake Ledger app steals $9.5 million

    April 14, 2026
    Facebook X (Twitter) Instagram
    Ai Crypto TimesAi Crypto Times
    • Altcoins
      • Bitcoin
      • Coinbase
      • Litecoin
    • Blockchain
    • Crypto
    • Ethereum
    • Lithosphere News Releases
    X (Twitter) Instagram YouTube LinkedIn
    Ai Crypto TimesAi Crypto Times
    Home » fake Ledger app steals $9.5 million

    fake Ledger app steals $9.5 million

    Isabella TaylorBy Isabella TaylorApril 14, 2026No Comments4 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    A crypto scam posing as the official Ledger Live hardware wallet app passed Apple’s App Store review process and drained at least $9.5 million from more than 50 victims across Bitcoin, Ethereum, Solana, Tron, and XRP between April 7 and April 13, with stolen funds routed through more than 150 KuCoin deposit addresses and into a centralized mixing service.

    Summary

    • The three largest individual thefts were $3.23 million in USDT on April 9, $2.08 million in USDC on April 11, and $1.95 million in BTC, ETH, and stETH on April 8, with blockchain investigator ZachXBT tracing all stolen funds to deposit addresses linked to a mixing service called AudiA6, known for charging high fees to obscure illicit transactions.
    • The attack worked by prompting users to enter their 24-word seed phrase into the fake app during what appeared to be a normal wallet setup flow; once a seed phrase is entered into any connected application, attackers gain full and immediate control of every wallet derived from it.
    • Apple has removed the fake app from the App Store but has not publicly commented on how it passed the review process; ZachXBT separately reported that Apple appears to be blocking a security analysis tool from examining the fraudulent listing, which has complicated independent investigation.

    A report on the theft brought the incident to wide attention after ZachXBT published his on-chain analysis. One of the victims, posting on X under the handle @glove, was Philadelphia musician Garrett Dutton of G. Love and Special Sauce, who lost 5.92 BTC accumulated over a decade of saving. “I worked ten years for this,” he wrote. “Be careful out there.” He was setting up his Ledger hardware wallet on a new MacBook when he searched the App Store for Ledger Live and downloaded the impersonating app. The seed phrase he entered gave attackers immediate access.

    The incident is not without precedent. A nearly identical fake Ledger app scheme stole approximately $600,000 through Microsoft’s app store in 2023, using the same impersonation-plus-seed-phrase playbook.

    The mechanism that makes this attack effective is not technical sophistication. It is social trust. Users going to the Apple App Store reasonably expect that the apps listed there have been reviewed and are legitimate. The fake Ledger app exploited that trust by appearing in search results for “Ledger Live” with convincing branding and a standard setup flow. Apple’s review process, which has rejected crypto apps for policy reasons, apparently did not catch a malicious application designed to steal funds from users of hardware wallets that Apple’s own review policies pushed them toward using in the first place.

    Why Seed Phrases and App Stores Are Structurally Incompatible

    The hardware wallet’s entire security model rests on one rule: the seed phrase never touches a connected device. The physical hardware generates the seed phrase offline and signs transactions internally, so private keys are never exposed to the internet. The moment a user types their seed phrase into any app, website, or keyboard, the hardware wallet’s protection is eliminated. No legitimate wallet provider, including Ledger, ever asks for a seed phrase during setup. Any application that requests one is either malfunctioning or malicious. Security experts recommend downloading Ledger Live only from ledger.com directly, never from any app store.

    What Happens to Stolen Funds and Why Recovery Is Unlikely

    ZachXBT traced the stolen funds through nine transactions into KuCoin deposit addresses linked to the AudiA6 mixing service. KuCoin has been barred from onboarding new EU users by Austrian regulators in February 2026, just three months after receiving a MiCA license, and previously paid over $300 million to US authorities in 2025 to settle anti-money laundering violations. Recovery would require coordinated law enforcement action and voluntary exchange cooperation that ZachXBT said he did not expect. The incident has prompted discussion of potential class-action lawsuits against Apple for platform liability, and reinforces why crypto security experts consistently warn against downloading wallet software from any source other than the manufacturer’s official website.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Isabella Taylor

    Related Posts

    Solana price forms symmetrical triangle amid MACD cross

    April 14, 2026

    Fed’s Goolsbee warns rate cuts may be delayed until 2027 on Iran war oil shock

    April 14, 2026

    PI network Protocol 23 targets Wall Street

    April 14, 2026

    Comments are closed.

    Don't Miss

    Solana price forms symmetrical triangle amid MACD cross

    Crypto April 14, 2026

    Solana price is at $83.37 on April 14, down 3.63% on the session, as a…

    Bitcoin price at all-time high while other metrics at lows

    April 14, 2026

    fake Ledger app steals $9.5 million

    April 14, 2026

    SafeMoon CEO Braden John Karony found guilty on all counts

    April 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Our Picks

    Lithosphere Introduces LEP100-14 to Enable Coordinated AI Systems Across Decentralized Networks

    April 14, 2026

    Lithosphere Advances AI-Native Smart Contracts with Lithic Execution Model

    April 13, 2026

    Lithosphere Introduces LEP100 Framework to Standardize AI Execution and Governance

    April 10, 2026

    Lithosphere Integrates DNNS as Programmable Identity Layer in Makalu Environment

    April 9, 2026

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    • Popular
    • Recent
    • Top Reviews

    Why FLOW price is up over 50% today after Upbit and Bithumb delisting announcement

    March 14, 2026

    KaJ Labs Unveils Lithic Developer Stack for AI Applications, Games, and Enterprise Systems

    March 14, 2026

    Ethereum price prediction: $2,500 in focus as OI spike amid Vitalik’s calls for scaling

    March 14, 2026

    Solana price forms symmetrical triangle amid MACD cross

    April 14, 2026

    Bitcoin price at all-time high while other metrics at lows

    April 14, 2026

    fake Ledger app steals $9.5 million

    April 14, 2026
    Latest Galleries
    [latest_gallery cat="all" number="5" type="slider"]
    Latest Reviews
    Demo
    Top Posts

    KaJ Labs Unveils Ecosystem Alignment Strategy to Strengthen AI and Web3 Integration

    March 14, 20263 Views

    KaJ Labs Unveils Lithic Developer Stack for AI Applications, Games, and Enterprise Systems

    March 14, 20263 Views

    Lithic Introduces zk-Verifiable AI Execution Standard (LEP100-5)

    March 17, 20262 Views

    Lithosphere Advances AI-Native Blockchain Infrastructure with Makalu Testnet and Integrated Protocol Stack

    April 3, 20261 Views
    Don't Miss

    Solana price forms symmetrical triangle amid MACD cross

    Crypto April 14, 2026

    Solana price is at $83.37 on April 14, down 3.63% on the session, as a…

    Bitcoin price at all-time high while other metrics at lows

    April 14, 2026

    fake Ledger app steals $9.5 million

    April 14, 2026

    SafeMoon CEO Braden John Karony found guilty on all counts

    April 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    Top Posts

    Trillion Dollar Security Day at Devconnect

    April 8, 20265 Views

    AI news Perplexity jumps 50% after one big change

    April 10, 20264 Views

    Anthropic revenue just hit a $30 billion run rate

    April 9, 20263 Views

    Circle claims Just A Circle’s use of CRCL ticker is brand infringement

    April 7, 20263 Views
    Don't Miss

    Solana price forms symmetrical triangle amid MACD cross

    Crypto April 14, 2026

    Solana price is at $83.37 on April 14, down 3.63% on the session, as a…

    Bitcoin price at all-time high while other metrics at lows

    April 14, 2026

    fake Ledger app steals $9.5 million

    April 14, 2026

    SafeMoon CEO Braden John Karony found guilty on all counts

    April 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    X (Twitter) Instagram YouTube LinkedIn
    Our Picks

    Solana price forms symmetrical triangle amid MACD cross

    April 14, 2026

    Bitcoin price at all-time high while other metrics at lows

    April 14, 2026

    fake Ledger app steals $9.5 million

    April 14, 2026
    Recent Posts
    • Solana price forms symmetrical triangle amid MACD cross
    • Bitcoin price at all-time high while other metrics at lows
    • fake Ledger app steals $9.5 million
    • SafeMoon CEO Braden John Karony found guilty on all counts
    • Fed’s Goolsbee warns rate cuts may be delayed until 2027 on Iran war oil shock
    © 2026 - 2026

    Type above and press Enter to search. Press Esc to cancel.