You probably remember multiple Ledger database leaks that exposed private customer information and addresses for millions of ledger customers, and this is still available in public so both fbi and scammers have all those information.
Scammers have been texting customers, sending them threats with sms, fake emails but their latest trick is even more dangerous because they started to send fake replacement Ledger devices to selected customers even if they didn't order anything.
Attackers even created fake ledger bag and sealed ledger box to match original Ledger Nano X wallet with their own instructions, and sent letter explaining why customer need to replace their wallet.
Fake Instructions is asking users connect the Ledger to their computer, than import recovery phrase from their old device, and that is sent to the attackers who imports it on their own devices and steal crypto.
Guy who received this fake ledger opened the device that was later compared with original device and you can see the clear difference inside both front and back as well as some sloppy soldering work.
They added a flash drive inside Ledger case and wired it to the USB connector with the purpose to be used for malware delivery to attackers.
This was first reported on ledger reddit by member
jjrand who was confirmed victim of data breach, but he was not the only one to receive it.
BEWARE that anyone who ordered ledger wallet before and got his address leaked is in danger of receiving one of this fake devices.I have got a package from Ledger although I did not order one. Inside the package, there is a brand new Ledger X and the letter attached. As a victim of the latest Data Breach I have signed up reddit only to post this. Maybe someone from the company can confirm or deny it.
Edit: I am pretty sure it is scam. Here are some more pics. I have also opened the device. You can see the inside of the plastic box. It is definitely tampered !
So beware guys, this is really some next level of scam attempt.
https://www.reddit.com/r/ledgerwallet/comments/o154gz/package_from_ledger_is_this_legit/