No connection

Search Results

Crypto Score 32 Bearish

Apple App Store Security Breach Leads to $9.5 Million Crypto Theft

Apr 14, 2026 14:22 UTC
AAPL
Short term

A fraudulent version of the Ledger Live application bypassed Apple's vetting process to steal millions from cryptocurrency users. On-chain analysis links the stolen funds to a centralized mixing service and the KuCoin exchange.

  • Total losses estimated at $9.5 million
  • Malicious app bypassed Apple App Store security
  • Three victims suffered losses exceeding $1.9 million each
  • Funds routed through KuCoin-linked mixer AudiA6
  • Ledger reiterates that recovery phrases should never be shared

An investigation by on-chain analyst ZachXBT has revealed that a malicious impersonation of the Ledger Live app was hosted on the Apple App Store, resulting in the theft of approximately $9.5 million. The fraudulent application targeted users across multiple networks, including Bitcoin, Ethereum, Solana, Tron, and the XRP Ledger, between April 7 and April 13. The incident highlights critical vulnerabilities in official app distribution platforms and the persistent risk of phishing attacks targeting seed phrases. While Apple removed the app on April 13, the breach has raised questions regarding the platform's liability and the effectiveness of its security screening processes. The theft affected over 50 victims, with three individuals suffering seven-figure losses. Specifically, one user lost $3.23 million in USDT, another lost $2 million in USDC, and a third lost $1.95 million in a mix of BTC, ETH, and stETH. Additionally, musician Garrett Dutton reported a loss of $420,000 through a similar malicious app. The stolen assets were allegedly laundered through more than 150 deposit addresses on the KuCoin exchange, utilizing a centralized mixing service known as AudiA6. This comes amid increased scrutiny of KuCoin, which was recently banned from onboarding new European Union users. Ledger's CTO, Charles Guillemet, emphasized that the company never requests 24-word recovery phrases. He warned that users cannot inherently trust the software environments they operate in, including official app stores and browsers, as attackers operate wherever opportunity exists.

Sign up free to read the full analysis

Create a free account to unlock full AI-curated market articles, personalized alerts, and more.

Share this article

Related Articles

Stay Ahead of the Markets

Join thousands of traders using AI-powered market intelligence. Get personalized insights, real-time alerts, and advanced analysis tools.

Home
Terminal
AI
Markets
Profile