Ledger customers are receiving fake wallets by mail to steal their cryptocurrency. According to a Reddit user, he received a package sent by Ledger with a legit-looking Ledger Nano X. The package included a letter stated that the user needs to substitute the current wallet for safety reasons.
This letter stressed the user needed to replace their current wallet with the new one. It declared:
“For security purposes, we have sent you a new device you must switch to a new device to stay safe. There is a manual inside your new box you can read that to learn how to set up your new device.”
The package reportedly included instructions to set up the new cryptocurrency wallet with the private key.
Mike Grover, a security consultant, talked to Bleepingcomputer about the fake wallet. Grover declared:
“This seems to be a simply flash drive strapped on to the Ledger with the purpose to be for some sort of malware delivery.”
The Ledger web page has updated its phishing campaign page to alert users of this new modus operandi.