A crypto enthusiast recently took to social media platform X to report a devastating loss of 10 Bitcoin (BTC) and $1.5 million worth of NFTs. Despite taking precautions with their Ledger Nano S wallet, the crypto community linked the incident to a phishing attack from 2022.
The Incident: $1.5 Million and 10 BTC Gone
On December 13, 2024, the user, known as "Anchor Drops," revealed their losses on X. They stated:
"Hey @ledger, last night I lost 10 BTC and ~$1.5M of NFTs stored on my Ledger Nano S. The Ledger was purchased directly from you. The seed phrase was stored securely and never entered online. I have never signed any malicious transactions. Can you explain what happened?"
The user emphasized that their seed phrase was kept in a secure location and that the wallet had not been used for over two months. They were searching for answers and clarity regarding the unexpected breach.
Community Investigation: A 2022 Phishing Attack
In response to the post, several members of the crypto community speculated that the loss stemmed from a phishing attack dating back to February 2022. One user, KDean, commented:
"Sorry to hear that. Looks like the phish happened a few years ago and just woke up."
KDean provided evidence tying the compromised Ethereum address to a phishing transaction labeled "Fake_Phishing5443." This transaction, dated February 22, 2022, reportedly involved the theft of sensitive wallet data, including the victim's seed phrase.
How Did the Attack Unfold?
Crypto experts suggest the phishing attack likely captured the seed phrase at the time, granting the hacker access to the victim’s funds across multiple blockchains. The hacker waited nearly three years before draining the wallet, a strategy often employed to evade suspicion.
With Bitcoin currently valued at $105,000, the stolen 10 BTC translates to $1,050,000. Combined with the $1.5 million in NFTs, the total losses amount to over $2.5 million.
Past Ledger Security Breaches
This incident highlights ongoing security challenges for Ledger. Earlier this year, the company faced another attack where approximately $600,000 was stolen. The January 2024 breach involved phishing via the Ledger Connect Kit software, reportedly orchestrated by a former employee.
In that case, malicious code redirected users’ funds to the hacker’s wallet during interactions with decentralized applications (dApps). Ledger reimbursed affected users and implemented tighter security measures following the incident.
Lessons for Crypto Users
This case underscores the importance of vigilance when safeguarding digital assets. While hardware wallets like Ledger Nano S offer enhanced security, phishing attacks targeting seed phrases remain a significant threat. Users must remain cautious, avoid sharing sensitive information, and monitor their wallets for unusual activity.
Security in the crypto world is ever-evolving, and staying informed is key to protecting your assets.
$BTC #MarketNewHype #ETHHits4KAgain #BTCNewATH #ScamAware #scamriskwarning