Articles
Crypto Market Analysis

Cybersecurity researcher uncovers fake Ledger sold on Chinese marketplace

User Image

익명에 의해

생성됨 April 17, 2026|2 분 독서
Main Image

The researcher said they examined the fake Ledger device’s firmware and found signs pointing to a Chinese semiconductor company named Espressif Systems.

A Brazilian security researcher has warned others of the latest counterfeit Ledger device scam aimed at stealing users’ crypto.

Posting as “Past_Computer2901” on the “ledgerwallet” Reddit channel on Thursday, the security researcher said they purchased what they thought was a legitimate Ledger device for personal use, but soon realized after it arrived that it was a sophisticated counterfeit aimed at stealing user funds. 

“This isn't meant to cause panic, but rather to serve as a serious warning — I’m honestly still a bit shaken by the sheer scale of this operation,” they said. 

Scammers are adopting increasingly sophisticated strategies to target users opting for self-custody, from supply chain attacks to social engineering and approval scams.

Earlier this month, more than 50 victims were tricked into revealing their seed phrases on a fake Ledger Live app that made its way to the Apple App Store via a bait-and-switch strategy. The victims lost a combined $9.5 million before Apple took down the malicious app.

The researcher said he bought the Ledger Nano S Plus from a Chinese marketplace, which was priced the same as the official Ledger store. The packaging and the listing also appeared legitimate at first.

However, when they connected the device to the genuine Ledger Live app — which was luckily already installed on their computer — it failed Ledger’s built-in “Genuine Check.” 

This prompted them to pull apart the device, discovering modified hardware and firmware designed to capture and expose sensitive wallet data.

The security researcher said the scammers target first-time Ledger users, as the QR code that comes in the box would normally direct users to download a malicious version of the Ledger Live app that would show a fake "Genuine Check.”

Users continuing to follow the prompts will eventually allow scammers to obtain a user’s seed phrases and drain funds at any time.

“Stay safe out there. Only download Ledger Live from ledger.com. Only buy hardware from ledger.com,” the security researcher said. 

After pulling apart the device, they discovered clear signs of tampering, including scraped chip markings and a WiFi and Bluetooth antenna embedded inside the unit. 

Legitimate Ledger hardware products are designed to keep private keys fully offline.

Related: Musician loses $420K Bitcoin ‘retirement fund’ via fake Ledger app

The security researcher then looked into the firmware, putting the “chip into boot mode,” which initially identified the device as a Nano S Plus 7704 with an attached serial number.

However, once the boot sequence completed, another manufacturer’s name showed up: Espressif Systems, a publicly listed Chinese semiconductor company based in Shanghai.

Cointelegraph reached out to Espressif for comment but didn’t receive an immediate response.

Magazine:  What’s a ‘Network State’ and are there real-life examples? Big Questions

Source: CoinTelegraph


최근에 발행된 다른 기사들

Bitcoin’s ceasefire boost is starting to fizzle out as investors look for real-world results
Bitcoin’s ceasefire boost is starting to fizzle out as investors look for real-world results

Bitcoin

What you need to know for April 17, 2026Source: CoinDesk...

At least a dozen crypto entities attacked since Drift Protocol hack
At least a dozen crypto entities attacked since Drift Protocol hack

Crypto Market Analysis

Rhea Finance and the Russia-linked Grinex exchange were hacked for a combined $21 million over the p...

Ethereum Foundation-funded program exposes 100 DPRK workers in crypto
Ethereum Foundation-funded program exposes 100 DPRK workers in crypto

Ethereum

The Ketman Project, funded by an Ethereum Foundation stipend, identified 100 North Korean IT workers...

Crypto in sustained winter as CEX volumes drop 39% in Q1: CoinGecko
Crypto in sustained winter as CEX volumes drop 39% in Q1: CoinGecko

Trading Strategies

March was the “weakest month" with $800 billion in centralized crypto exchange trading volume, the...

Texas man in $20M Meta-1 Coin fraud sentenced to 23 years in prison
Texas man in $20M Meta-1 Coin fraud sentenced to 23 years in prison

Crypto Market Analysis

Meta-1 Coin was sold and marketed from 2018 to 2023 as an investment backed by $44 billion in gold a...

Tokenization doesn’t ‘magically’ fix illiquid assets: PBW 2026
Tokenization doesn’t ‘magically’ fix illiquid assets: PBW 2026

Blockchain

Industry speakers at Paris Blockchain Week said tokenization can broaden access and issuance, but it...