Lego website crypto-scam

Updated on 05/10/2024

On the official Lego website on October 4th, a message was posted encouraging users to invest in a fake cryptocurrency called Lego Coin. The attackers had injected malicious code to modify the website and advertise the scam, including links to a malicious website for buying cryptocurrencies.

The company reacted relatively quickly, following a tip-off from users, and by the following day the banner and links previously used had been restored. In a statement, Lego confirmed the removal of the unauthorised content, assuring that the incident had not compromised their users' accounts and that their customers could use their website normally. They also acknowledged that they had identified the cause and were implementing security measures to prevent similar situations from recurring.