Major Security Vulnerability Found in Ledger Software Library, Affecting Multiple Dapps

Major Security Vulnerability Found in Ledger Software Library, Affecting Multiple Dapps

Multiple DApps using Ledger’s connector, including Zapper, SushiSwap, Balancer and Revoke.cash, were compromised on Dec. 14.

The issue is related to a software library from Ledger wallet, the “LedgerHQ” library, that dapps rely on for use with the crypto wallet service. This vulnerability could potentially allow malicious code to be injected into numerous dapps on their front-ends, posing a significant risk to users and their assets.

Front ends to multiple dapps could be vulnerable if used. Projects like Kyber and RevokeCash confirmed on X that they disabled their front-ends.

According to latest announcement from Ledger, the malicious version of the file has been replaced with the genuine version. Ledger emphasiss that users need to always clear sign transactions, the address and the information presented on Ledger screen is the only genuine information. If there is a difference between the screen shown on your Ledger device and your computer screen, stop that transaction immediatly.

Source

Wallet

Security Incidents

Related News
Crypto wallet Phantom confirms it won’t launch a token amid airdrop rumors Crypto wallet Phantom confirms it won’t launch a token amid airdrop rumors
BingX launches ‘ShieldX’ wallet firewall months after $52M hack BingX launches ‘ShieldX’ wallet firewall months after $52M hack
Crypto wallet Exodus donates $1.3M to help ‘mobilize’ US crypto voters Crypto wallet Exodus donates $1.3M to help ‘mobilize’ US crypto voters
MetaMask Wallet Introduces Ethereum Pooled Staking Service MetaMask Wallet Introduces Ethereum Pooled Staking Service
Lending Protocol Sonne Finance Exploited for $20M Lending Protocol Sonne Finance Exploited for $20M
Latest News More More
4 Hours Ago Mantra and Damac sign $1B deal to tokenize Middle Eastern assets
4 Hours Ago Fetch.ai launches $10M accelerator for AI agent startups
1 Day Ago Fidelity’s spot bitcoin, ether ETFs post largest daily net outflows since inception
1 Day Ago Polkadot-based Phala Network launches Ethereum Layer 2 rollup
1 Day Ago Coinbase premium flips positive for first time in weeks, indicating rising bitcoin demand from US investors
delate
Use TokenInsight App All Crypto Insights Are In Your Hands
Open