Bitcoin Forum
May 04, 2024, 09:57:25 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: {Warning}: Ledger extension phishing attempts  (Read 127 times)
Baofeng (OP)
Legendary
*
Offline Offline

Activity: 2590
Merit: 1655



View Profile
March 05, 2020, 05:47:49 AM
Merited by NeuroticFish (2), DdmrDdmr (2), bones261 (2), o_e_l_e_o (1), dkbit98 (1)
 #1



https://twitter.com/sniko_/status/1235345036382003206

Another one discovered hours ago, and it was thru Google ads, so if you go to Google and type Ledger Live, this will be on the top, ahead of the official and legit Ledger website, be careful not to get phished.


███████████████████████
████████████████████
██████████████████
████████████████████
███▀▀▀█████████████████
███▄▄▄█████████████████
██████████████████████
██████████████████████
███████████████████████
█████████████████████
███████████████████
███████████████
████████████████████████
███████████████████████████
███████████████████████████
███████████████████████████
█████████▀▀██▀██▀▀█████████
█████████████▄█████████████
███████████████████████
████████████████████████
████████████▄█▄█████████
████████▀▀███████████
██████████████████
▀███████████████████▀
▀███████████████▀
█████████████████████████
O F F I C I A L   P A R T N E R S
▬▬▬▬▬▬▬▬▬▬
ASTON VILLA FC
BURNLEY FC
BK8?.
..PLAY NOW..
1714816645
Hero Member
*
Offline Offline

Posts: 1714816645

View Profile Personal Message (Offline)

Ignore
1714816645
Reply with quote  #2

1714816645
Report to moderator
1714816645
Hero Member
*
Offline Offline

Posts: 1714816645

View Profile Personal Message (Offline)

Ignore
1714816645
Reply with quote  #2

1714816645
Report to moderator
1714816645
Hero Member
*
Offline Offline

Posts: 1714816645

View Profile Personal Message (Offline)

Ignore
1714816645
Reply with quote  #2

1714816645
Report to moderator
Even in the event that an attacker gains more than 50% of the network's computational power, only transactions sent by the attacker could be reversed or double-spent. The network would not be destroyed.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714816645
Hero Member
*
Offline Offline

Posts: 1714816645

View Profile Personal Message (Offline)

Ignore
1714816645
Reply with quote  #2

1714816645
Report to moderator
o_e_l_e_o
In memoriam
Legendary
*
Offline Offline

Activity: 2268
Merit: 18509


View Profile
March 05, 2020, 10:00:14 AM
Merited by bones261 (2)
 #2

People need to stop installing random software they come across and stop using Google to find services they want to use. Google serves up malicious ads constantly, and hosts malicious extensions and apps on their web stores constantly. They don't care about your security or privacy - they care about making money. If a scammer will pay to advertise their malicious site, Google will happily accept it.

Stop using Google altogether. They invade your privacy and serve you with malicious ads. Swap to a better search engine such as DuckDuckGo or SearX.
Install the uBlock Origin extension to block ads altogether.
Don't search for products, services, apps, extensions, etc., you want to use. Visit the official site and go from there.
Don't download any software, app, or extension, without really asking your self if you really need it.
Never enter your seed phrase on random sites or programs which ask for it.
Lucius
Legendary
*
Offline Offline

Activity: 3234
Merit: 5635


Blackjack.fun-Free Raffle-Join&Win $50🎲


View Profile WWW
March 05, 2020, 11:52:36 AM
 #3

Is this something new of which we have not been aware for at least 6 months or more? There is a warning on Ledger Reddit from 7 months ago, and I posted warning last year in this topic. The most important thing is that the seed should never be enter anywhere other than the hardware wallet, learn that and all those fake sites and extensions will not pose any threat.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
dkbit98
Legendary
*
Offline Offline

Activity: 2226
Merit: 7118



View Profile WWW
March 05, 2020, 12:04:12 PM
 #4

This extension is now down and removed from Google store, but people need to watch out what extensions they are installing.
I saw article on ZDNet with more details:
https://www.zdnet.com/article/malicious-chrome-extension-caught-stealing-ledger-wallet-recovery-seeds/

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
Baofeng (OP)
Legendary
*
Offline Offline

Activity: 2590
Merit: 1655



View Profile
March 07, 2020, 12:24:03 AM
 #5

This extension is now down and removed from Google store, but people need to watch out what extensions they are installing.
I saw article on ZDNet with more details:
https://www.zdnet.com/article/malicious-chrome-extension-caught-stealing-ledger-wallet-recovery-seeds/

Yes, it was taken down already,

Code:
https://chrome.google.com/webstore/detail/ledger-live/idnelecdpebmbpnmambnpcjogingdfco

I wasn't able to archived it though, but I did see something like 100++ downloads prior to Google taking it down. I do hope that those who downloaded it didn't lose any of their precious coins.

███████████████████████
████████████████████
██████████████████
████████████████████
███▀▀▀█████████████████
███▄▄▄█████████████████
██████████████████████
██████████████████████
███████████████████████
█████████████████████
███████████████████
███████████████
████████████████████████
███████████████████████████
███████████████████████████
███████████████████████████
█████████▀▀██▀██▀▀█████████
█████████████▄█████████████
███████████████████████
████████████████████████
████████████▄█▄█████████
████████▀▀███████████
██████████████████
▀███████████████████▀
▀███████████████▀
█████████████████████████
O F F I C I A L   P A R T N E R S
▬▬▬▬▬▬▬▬▬▬
ASTON VILLA FC
BURNLEY FC
BK8?.
..PLAY NOW..
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!