Pages:
Author

Topic: Ledger seem compromised again - page 2. (Read 339 times)

legendary
Activity: 3738
Merit: 1708
December 16, 2023, 02:00:33 AM
#12
All over Twitter people are filming themselves destroying their ledgers. This is numerous times that something like this has happened. Do you feel safe storing your crypto this way?

Ledger needs to be open sourced and the chances of this happening will be lower, however since they are for profit they obviously aren’t going to do that.

Best cold storage these days is anything that is open sourced.
hero member
Activity: 1134
Merit: 741
Rollbit - Crypto Futures
December 15, 2023, 05:20:32 AM
#11
Their CEO has explained this hack. And as people here say, as long as users only use Bitcoin, it doesn't matter at all.
CEO Ledger has collaborated with law enforcement to follow up on this process. According to Pascal Gauthier, Ledger will implement a stronger security system in the future after this incident. Gauthier added that Ledger Connect Kit 1.1.8 is secure.

This source comes from Cointelegraph.
https://cointelegraph.com/news/ledger-ceo-explains-hack-calls-it-isolated-incident
mk4
legendary
Activity: 2716
Merit: 3817
Paldo.io 🤖
December 15, 2023, 02:05:09 AM
#10
tl;dr your Ledger hardware wallet is fine. This security issue concerns the Ledger Connect Kit, in which a hacker used malicious code to display a separate wallet connection UI modal on DeFi protocols.

Some facts:

1. You need to confirm a malicious transaction on your Ledger device for your funds to be stolen
2. This was caused by a phished account of an ex-employee hence the hacker was able to push code
3. This security issue is only with concern to EVM(Ethereum Virtual Machine)-related platforms. If you're bitcoin-only, you're totally unaffected.
sr. member
Activity: 1624
Merit: 336
Top Crypto Casino
December 15, 2023, 12:48:22 AM
#9
It's been one shitshow after another for Ledger these past couple of years. They've had a database breach, the Ledger Recover controversy, the Ledger Stax device which remains undelivered after they started accepting pre-orders over a year ago, now there is this hack which compromised any dapp using the ConnectKit library.

After being the most popular hardware wallet for a long time they have now completely destroyed their reputation with all these blunders. I can't imagine anyone who would still trust them enough to store their private keys on one of their devices.
hero member
Activity: 1098
Merit: 534
December 14, 2023, 11:17:25 PM
#8
You can't trust those ledger devices as far as you can throw them nowadays, especially after the stunts they have pulled. Their reputation is completely screwed and it is sad to see it happen but having this happen now on top of all of that? I'm not sure how much longer the company will last if they continue being so vulnerable and going against the best interests of their users.
full member
Activity: 15
Merit: 1
December 14, 2023, 01:18:36 PM
#7
If you are using ledger hardware wallet please do not connect to any dapps right now until futher notice, it seems this hardware wallet is freaking too vulnerable to attacks right now.




The ledger issue is now fixed.



source: > https://twitter.com/Mudit__Gupta/status/1735301007188406681
legendary
Activity: 966
Merit: 1042
#SWGT CERTIK Audited
December 14, 2023, 01:10:59 PM
#6
It's only if you install new software. I don't update to newest versions right away because I've learned over the years that updates often are unstable and you have to install fixes later. It's better to wait for a while.

Also, they're fixing this, so if you still using ledger, wait a few days until it calms down and move it to something better. Their updates that allowed them to access your wallet were the first warning for users that this company is not the best choice. Now there's this little problem. Let's see how many people lose their savings because of this bug.

Well, that's right. I've been trying some testnet nodes and they are frequently sending updates, I was worried about the system security because even after installing all those updates, the system was not behaving smoothly.

Anyway, it's about the ledger, hmm other reliable options are compared to the legder because the update you've mentioned was briefly covered in many topics here, At that time as well people were moving from the ledger. I think Trezor is one of the renowned ones.
legendary
Activity: 2618
Merit: 1103
December 14, 2023, 12:23:12 PM
#5
It's only if you install new software. I don't update to newest versions right away because I've learned over the years that updates often are unstable and you have to install fixes later. It's better to wait for a while.

Also, they're fixing this, so if you still using ledger, wait a few days until it calms down and move it to something better. Their updates that allowed them to access your wallet were the first warning for users that this company is not the best choice. Now there's this little problem. Let's see how many people lose their savings because of this bug.
full member
Activity: 994
Merit: 137
★Bitvest.io★ Play Plinko or Invest!
December 14, 2023, 12:07:50 PM
#4
Ledger's having some problems recently.  Not sure what's going on over there, but seems their hardware wallets are dealing with security vulnerabilities lately and  they used to be the best option for most folks wanting a hardware wallet.  But I've seen a bunch of reports about issues compromising security.  Id hold off linking your Ledger to any decentralized apps until we get an all-clear.  Who knows if connecting it could put your crypto at risk given their ongoing problems.
legendary
Activity: 966
Merit: 1042
#SWGT CERTIK Audited
December 14, 2023, 11:46:00 AM
#3
Yep! I've seen so many community alert posts on social media, indicating the compromise of the Ledger's ConnectKit Library with Revoke. Cash. I've personally taken some actions and disconnected all of my active connections with most of Dapps. Playing safe in such circumstances is good for funds.

I'm not sure why are you creating this thread so late and TBH I've not scrolled any other section yet, maybe there are some of early threads already covering this topic.

legendary
Activity: 1792
Merit: 1296
keep walking, Johnnie
December 14, 2023, 11:02:38 AM
#2
If you are using ledger hardware wallet please do not connect to any dapps right now until futher notice, it seems this hardware wallet is freaking too vulnerable to attacks right now.



The picture says "More details below". Isn’t it just by clicking on such links that fun adventures with hacked wallets and everything else begin? Smiley

It was possible to copy / paste part of the text with the main idea of the article here, right? Of course, with reference to the original source. So that forum users can find out everything regarding this incident right here.
sr. member
Activity: 658
Merit: 384
December 14, 2023, 10:24:33 AM
#1
If you are using ledger hardware wallet please do not connect to any dapps right now until futher notice, it seems this hardware wallet is freaking too vulnerable to attacks right now.

Pages:
Jump to: