
On May 11, a hacker used a compromised Ledger Discord moderator account to spread a phishing scam, tricking users into sharing recovery phrases.
Ledger clarified that their Discord server wasnโt hacked, but a contractor moderatorโs account was compromised. Security has since been reinforced.
The crypto world is once again on high alert as Ledger, the maker of popular crypto hardware wallets, has confirmed that its Discord server is back under control after a recent hacking attempt. On May 11, a hacker got access to a moderatorโs account and used it to share scam links in the server, trying to trick users into giving up their wallet seed phrases.
What Happened?
The attacker set up a fake story claiming there was a new security issue with Ledger and urged users to โverifyโ their recovery phrases through a phishing link. Clicking the link could have allowed the scammer to steal usersโ funds.
Some users even said they were muted or banned when trying to warn others, slowing Ledgerโs response.
Discord Admin Hacked, Users Tricked
Highlighting the sensitivity of the issue, former Binance CEO Changpeng Zhao (CZ) raised concerns about a fresh phishing scam targeting Ledger users. This time, the attackers took over the admin account of Ledgerโs official Discord server to spread a dangerous message.
According to CZ, the compromised Ledger Discord admin account was used to impersonate official staff. The scammer claimed that a major vulnerability had been discovered in Ledger wallets, putting users’ sensitive information at riskโincluding their secret recovery phrases.
Notably, the victims were directed to a fraudulent website where they were asked to re-enter their recovery phrases to โsecureโ their wallets. In reality, handing over this phrase gives full control of the wallet to the attacker, putting all funds at immediate risk.
How to be Safe?
In times of crisis, CZ reminded users of a golden rule in crypto: never share your seed or recovery phrase, no matter who asks or how urgent the message seems. Even if it looks official, itโs likely a scam. He stressed that social media and communication accounts remain the most vulnerable links in security chains, often becoming the easiest entry points for attackers.
Ledgerโs Response
Ledger has responded to CZโs warning, clarifying that their Discord server itself wasnโt hacked. Instead, a contractor moderatorโs account was briefly compromised, allowing a fake message with a scam link to be posted in one channel. The situation was resolved within an hour, permissions were locked down, the fake site was reported, and security was reinforced. Ledger emphasized that the phishing message wasnโt from their team and reminded users to never share their recovery phrases.
Never Miss a Beat in the Crypto World!
Stay ahead with breaking news, expert analysis, and real-time updates on the latest trends in Bitcoin, altcoins, DeFi, NFTs, and more.
FAQs
Never share your recovery phrase and always verify announcements via official websites or trusted sources
The U.S. Treasury and G7 nations are focusing on strengthening crypto regulations and cybersecurity to combat increasing crypto hacks and ransomware attacks.