← Back to BrewedIntel
malwarehighCryptocurrency TheftMalicious ApplicationSupply Chain AttackFake Ledger Live

Apr 14, 2026 • Bill Toulas

Fake Ledger Live app on Apple’s App Store stole $9.5M in crypto

A malicious Ledger Live application impersonating the legitimate cryptocurrency wallet software was discovered on Apple's App Store, draining approximately...

Source
Bleeping Computer
Category
malware
Severity
high

Executive Summary

A malicious Ledger Live application impersonating the legitimate cryptocurrency wallet software was discovered on Apple's App Store, draining approximately $9.5 million in cryptocurrency from 50 victims within days. The fake app targeted macOS users and successfully bypassed Apple's app review process. Users are advised to verify app publishers, check reviews, and download software directly from official websites rather than app stores to mitigate such risks. Apple has since removed the malicious application from its store.

Summary

A malicious Ledger Live app for macOS available from Apple's App Store has drained approximately $9.5 million in cryptocurrency from 50 victims in just a few days this month. [...]

Published Analysis

A malicious Ledger Live application impersonating the legitimate cryptocurrency wallet software was discovered on Apple's App Store, draining approximately $9.5 million in cryptocurrency from 50 victims within days. The fake app targeted macOS users and successfully bypassed Apple's app review process. Users are advised to verify app publishers, check reviews, and download software directly from official websites rather than app stores to mitigate such risks. Apple has since removed the malicious application from its store. A malicious Ledger Live app for macOS available from Apple's App Store has drained approximately $9.5 million in cryptocurrency from 50 victims in just a few days this month. [...] A malicious Ledger Live app for macOS available from Apple's App Store has drained approximately $9.5 million in cryptocurrency from 50 victims in just a few days this month. [...]

Linked Entities

  • Fake Ledger Live