Crypto Scammers Go Old School: Ledger Users Hit with New Seed Phrase Mail Scam
Owners of Ledger hardware wallets have reported receiving fake physical letters designed to trick them into revealing their wallet seed phrases as part of a new wave of crypto scams.On April 29, tech analyst Jacob Canfie...
Archive context
Older archive item. Useful for background and entity history, but not a fresh market-moving signal.
Owners of Ledger hardware wallets have reported receiving fake physical letters designed to trick them into revealing their wallet seed phrases as part of a new wave of crypto scams.
On April 29, tech analyst Jacob Canfield posted a warning on X, sharing a scam letter that had arrived at his home.
Disguised as official correspondence from Ledger, the letter instructed him to perform a “critical security update” by scanning a QR code and entering his 24-word recovery phrase.
Ledger Scam Letter Mimics Official Mail With Logo and Reference NumberThe professionally designed letter included Ledger’s logo, a return address, and a reference number to lend credibility.
It warned that failure to complete the “validation” could result in restricted access to the user’s funds—an intimidation tactic meant to spur action.
Ledger responded directly to Canfield’s post, confirming the letter was fraudulent and part of a phishing attempt.
“Ledger will never ask for your 24-word recovery phrase,” the company reiterated, advising users not to trust unsolicited messages or individuals claiming to be Ledger representatives.
Seed phrases, often 12 to 24 words long, are the most sensitive component of a crypto wallet. Anyone who gains access to them can take full control of a user’s assets.
Some community members suspect the scam stems from Ledger’s infamous 2020 data breach, when the personal information of over 270,000 customers—including names, emails, and home addresses—was leaked online.
You are correct, this is a scam. We appreciate your efforts to warn others. Please stay vigilant against phishing attempts. Scammers impersonating Ledger and Ledger representatives are unfortunately common. While we actively report and block scammers, we can't control what…
— Ledger (@Ledger) April 29, 2025That incident was followed by numerous phishing campaigns, including one in which tampered Ledger devices were mailed to victims to install malware.
The recent mail scam appears to be another tactic targeting those affected by the breach, showing how long the consequences of data leaks can linger in the crypto world.
Phishing Scam Targets Coinbase, Gemini UsersIn March, several crypto users flagged sophisticated phishing scam emails, which targeted Coinbase and Gemini users with legit-looking fraudulent emails.
The mass email reportedly arrived in various user inboxes on Saturday. The scam mail pointed to a class action lawsuit against Coinbase for allegedly involving in unregistered securities, adding that the court has mandated users to convert their assets into self-custody wallets.
Further, the mail also stressed that the deadline to transfer user assets to a self-custodial wallet is April 1st, 2025.
As reported, in the first three months of 2025, the crypto ecosystem lost a whopping $1,635,933,800 across 39 incidents, according to the blockchain security platform Immunefi.
The report claimed, “Q1 2025 marks the worst quarter for hacks in the history of the crypto ecosystem.”
Most of that was the result of only two hacks of two centralized exchanges. Phemex suffered a $69.1 million loss in January, while Bybit lost $1.46 billion in February.
Subsequently, the total number of losses in the first quarter marks a 4.7x increase compared to Q1 2024. At that time, hackers and fraudsters stole $348,251,217.
Notably, experts assume that the infamous North Korean Lazarus Group is behind the two largest attacks. They stole $1.52 billion, which is 94% of total losses.
The post Crypto Scammers Go Old School: Ledger Users Hit with New Seed Phrase Mail Scam appeared first on Cryptonews.
Why this matters
This security story adds another data point to the current market tape and is useful when read alongside nearby source coverage.
Original source
Read on CryptonewsRelated market context
Ledger Probes Potential Theft of $87M in User Funds Tied to Crypto Wallet Reseller
Ledger asked reseller CryptoBilis to pause sales and urged recent buyers not to set up their devices, as an onchain investigator t...
XRPL’s $1.34 billion stablecoin base doesn’t tell us how much XRP users need
Tracked stablecoins on the XRP Ledger totaled $1.338 billion on Oct. 7. For XRP holders, the critical question is how much activit...
Ledger hack scare nears $90 million as Tether moves to freeze stolen USDT
Suspected Ledger wallet thefts are approaching $90 million as Tether freezes USDT stablecoin linked to the incident, according to...
Tether freezes USDT linked to Ledger user thefts near $90 million
The freeze highlights the need for robust supply chain security and raises concerns about the limitations of centralized control i...
Tether Freezes USDT Linked to Ledger User Thefts, MistTrack Says
MistTrack puts reported losses near $90 million as Ledger asks reseller CryptoBilis to halt device sales and shipments.... Read th...
Ledger investigates potential wallet tampering after reports of $86 million in crypto stolen
The hardware wallet maker said it is investigating devices sold by a Southeast Asian reseller as social posts swirl about crypto a...