{"id":106110,"date":"2020-11-06T07:44:42","date_gmt":"2020-11-06T04:44:42","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/ledger-owners-lose-1-1-million-xrp-to-scam-site\/"},"modified":"2020-11-06T07:44:42","modified_gmt":"2020-11-06T04:44:42","slug":"ledger-owners-lose-1-1-million-xrp-to-scam-site","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/ledger-owners-lose-1-1-million-xrp-to-scam-site\/","title":{"rendered":"# Ledger owners lose 1.1 million XRP to scam site"},"content":{"rendered":"<p>&#8220;<strong># Ledger owners lose 1.1 million XRP to scam site <\/strong>&#8221;<\/p>\n<div data-v-5a136f3a=\"\">Phishing attempts and scams against Ledger wallet owners are on the increase with one such<a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/twitter.com\/xrpforensics\/status\/1323176820368384001\"> scam<\/a> netting more than 1,150,000 XRP from its victims. <\/p>\n<p>The scam used a phishing email that directed users to a fake version of the Ledger website that substituted a <em>homoglyph<\/em> in the URL \u2014 in this case a letter that looked like the letter \u2018e\u2019 but wasn\u2019t. On the fake site, victims were fooled into <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">download<\/a>ing malware posing as a security update which drained the balance from their Ledger wallet.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">I got a txt message last night with my full name saying ledger security alert&#8230;.to download the security update. Deleted it instantly<\/p>\n<p>\u2014 Kris Leslie  (@Krissy1097) <a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/twitter.com\/Krissy1097\/status\/1323182204298604544?ref_src=twsrc%5Etfw\">November 2, 2020<\/a><\/p><\/blockquote>\n<p>According to community run fraud awareness site<a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/xrplorer.com\/\"> xrplorer<\/a>, the XRP collected from the scam was sent to Bittrex across five deposits, but the exchange was \u201cunable to seize [the XRP] in time.\u201d <\/p>\n<p>In a similar ongoing scam, a phishing<a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/twitter.com\/whatxrpdid\/status\/1324333686955847681\/photo\/1\"> email<\/a> that appears to be sent from the official account for \u201cTeam Ripple\u201d appeals to Ledger users by offering an XRP giveaway to \u201cwhitelisted addresses\u201d as part of a \u201cCommunity Support Program.\u201d The registration process involves handing over your Ledger seed phrase or crypto private key in order to qualify for the non-existent program. <\/p>\n<p>In an email to customers sent on Jul. 29th of this year, Ledger acknowledged that it had been the victim of a data breach in which close to a million email addresses were compromised, along with the personal details of a subset of 9,500 customers. Although the vulnerability leading to the leak on the Ledger website was quickly patched, the damage had already been done, and scammers appear to be coming up with creative ways to use the addresses to trick Ledger users into giving up their coins.<\/p>\n<p>The idea of crypto credential phishing via homoglyph-containing URLs is not new and scams employing this tactic have been<a rel=\"nofollow noopener noreferrer\" target=\"_blank\" href=\"https:\/\/coil.com\/p\/xrplorer\/The-homoglyph-heist\/AUieXW_1D\"> targeting<\/a> XRP holders across the course of the entire year, even before the email leak.<\/p>\n<p>In 2018, scammers set up a fake Binance site, complete with an SSL certificate. However eagle eyed users noticed the \u2018n\u2019 had been replaced with a version that included an underdot (\u1e47).<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2020-11\/0dfc7daf-87e1-44e8-829c-09ffa5e3f0af.png\"\/><\/figure>\n<p>In March, creators of a fake Google Chrome extension for Ledger managed to steal 1.4 million XRP in less than a month. <\/p>\n<\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong>\n<\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">News<\/a> articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/general\/\" target=\"_blank\" rel=\"noopener noreferrer\">General category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/cointelegraph.com\/news\/ledger-owners-lose-1-1-million-xrp-to-scam-site\" target=\"_blank\" rel=\"noopener noreferrer\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;# Ledger owners lose 1.1 million XRP to scam site &#8221; Phishing attempts and scams against Ledger wallet owners are on the increase with one such scam netting more than 1,150,000 XRP from its victims. The scam used a phishing email that directed users to a fake version of the Ledger website that substituted a&#8230;<\/p>\n","protected":false},"author":1,"featured_media":106111,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/s3.cointelegraph.com\/uploads\/2020-11\/363fd5f6-a6a0-4030-890c-80b5af1c7f18.jpg","fifu_image_alt":"","footnotes":""},"categories":[1],"tags":[74867,75189,75034,75557,71101],"class_list":["post-106110","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general","tag-altcoin","tag-ledger","tag-ripple","tag-xrp","tag-scams"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/106110","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=106110"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/106110\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/106111"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=106110"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=106110"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=106110"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}