Dark Web Phishing Kit Targets Ledger Wallet Users with Sophisticated Scam Interface
Cybercriminals are distributing a counterfeit Ledger hardware wallet interface designed to steal cryptocurrency from unsuspecting users. SOCRadar's Dark Web Team uncovered a phishing kit marketed as "Ledger Wallet 2025 Smart Scampage Inferno Multichain," which mimics Ledger's official UI with alarming accuracy. The malicious package includes anti-bot protection, mobile-responsive design, and seed phrase capture functionality—effectively weaponizing user trust in hardware wallets.
The threat actors operate through dark web channels, disguising their tools as educational resources while distributing them via anonymized file-sharing services. This incident follows a $13 million exploit on Venus Protocol, where attackers used a compromised Zoom client to manipulate transaction approvals. The parallel emergence of these threats underscores the growing sophistication of crypto-targeted social engineering attacks.