Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
No Result
View All Result

Ledger Falls Victim To Supply Chain Attack, Over $480,000 Drained

CryptoExpert by CryptoExpert
December 15, 2023
in Altcoin News
0
Ledger DeFi hack
  • Facebook
  • Twitter
  • Pinterest


You might also like

Dogecoin May Rise 20% in May as DOGE Whale Holdings Hit Record Levels

XRP Bearish Sentiment Held Derivatives Hostage for Months: Is The Balance Shifting?

Ripple Prime Clients Gain Access to Bitcoin Options Through Bullish

In yet another significant security breach, unknown malicious agents targeted Ledger, the popular hardware wallet provider, aiming to exploit their LedgerConnect kit. Blockaid, a platform aiming to protect web3 users, was the first to report on the attack.

The Supply Chain Attack Targeting Ledger Connector

Taking to X on December 14, Blockaid said attackers successfully injected a “wallet-draining payload” into the NPM package. Once the payload propagated, attackers hijacked the front end of multiple apps, including Sushi, Hey, and Zapper, crippling operations and reportedly making away with hundreds of thousands of dollars worth of assets. 

The attack wasn’t targeting any dapp or blockchain like Solana or Ethereum, for example. Instead, hackers wanted to exploit all protocols whose users, in one way or another, used the LedgerConnect kit to manage or transfer assets. 

Solana price trending upward on the daily chart | Source: SOLUSDT on Binance, TradingView

To understand how the hack was executed, hackers expressly targeted Ledger’s NPM. The connector is crucial in how typically off-chain Ledger wallet clients can securely connect and manage their assets online. 

okex

While providing a means of accessing wallets, NPM is also an interface. Through this portal, developers can integrate Ledger hardware wallets into apps. In this case, Ledger users can securely engage in non-fungible tokens (NFTs), decentralized finance (DeFi), and other activities. 

Since this attack aimed to exploit a critical Ledger infrastructure that could impact all protocols regardless of blockchain, analysts now say these agents successfully executed a “supply chain attack.” In supply chain attacks on DeFi protocols, hackers can target a trusted service provider, mostly a wallet provider or exchange, to steal funds.

Ledger Responds, Over $480,000 Stolen

Wintermute’s Head of Research, Igor Igamberdiev, reported that a script infected with malware was uploaded to Ledger’s NPM register at 9:44 am UTC. However, Ledger has since responded, saying they deleted the malicious file and replaced it with a genuine version roughly four hours after the script was uploaded at around 1:35 pm UTC. 

Ledger has also reminded users to be keen before signing off on their transactions, emphasizing that all addresses and information displayed on their interface are the “only reliable sources of information.” Earlier, the hardware manufacturer assured clients that their devices were not compromised.

Despite these assurances, Lookonchain, a blockchain analytics platform, said over $480,000 worth of assets were stolen before Ledger patched the error.

Assets stolen from the Ledger attack | Source: Lookonchain on X
Assets stolen from the Ledger attack | Source: Lookonchain on X

To further reinforce ZachXBT’s statement, Paolo Ardoino, the CEO of Tether, the USDT issuer, took to X, saying the platform had blocked the Ledger Exploiter’s address.

Feature image from Canva, chart from TradingView



Source link

  • Facebook
  • Twitter
  • Pinterest
Tags: Ethereum
CryptoExpert

CryptoExpert

Recommended For You

Dogecoin May Rise 20% in May as DOGE Whale Holdings Hit Record Levels

by CryptoExpert
May 1, 2026
0
Cointelegraph

Dogecoin (DOGE) has outpaced the broader crypto market over the past month, rising roughly 18% versus the market’s 10% gain, as whale accumulation and a bullish chart setup...

Read more

XRP Bearish Sentiment Held Derivatives Hostage for Months: Is The Balance Shifting?

by CryptoExpert
May 1, 2026
0
XRP Bearish Sentiment Held Derivatives Hostage for Months: Is The Balance Shifting?

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure XRP is struggling to hold the $1.35 level as the price consolidates within a long-term...

Read more

Ripple Prime Clients Gain Access to Bitcoin Options Through Bullish

by CryptoExpert
May 1, 2026
0
Cointelegraph

Crypto exchange Bullish has expanded its integration with Ripple Prime to give institutional clients direct access to Bitcoin options trading, adding to existing spot, perpetual and futures connectivity...

Read more

Crypto Tops X’s Most-Muted List, and AI Slop May Be Why

by CryptoExpert
April 30, 2026
0
Cointelegraph

Crypto has topped the list of most-muted topics on X since the platform rolled out its snooze feature, with spam and artificial intelligence content, or "AI slop," likely...

Read more

Celsius Founder Lands $10 Million FTC Settlement—And A Crypto Ban For Life

by CryptoExpert
April 30, 2026
0
Celsius

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Alex Mashinsky, the founder of the crypto lender Celsius, has settled with the US Federal...

Read more
Next Post
Crypto

Alarming Crypto Theft: North Korea-Linked Lazarus Group Accounts For 20% Of 2023's Losses

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

Sitemap

  • Market Cap
  • Donations
  • Trading
  • Mining
  • Contact

Legal Information

  • Privacy Policy
  • Anti-Spam Policy
  • Copyright Notice
  • DMCA Compliance
  • Social Media Disclaimer
  • Terms Of Service

Categories

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

© Copyright 2024 InvestInCryptoNews.com

No Result
View All Result
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO

© Copyright 2024 InvestInCryptoNews.com

This website is using cookies to improve the user-friendliness. You agree by using the website further.

Privacy policy
bitcoin
Bitcoin (BTC) $ 78,449.00
ethereum
Ethereum (ETH) $ 2,307.43
tether
Tether (USDT) $ 0.99978
xrp
XRP (XRP) $ 1.40
bnb
BNB (BNB) $ 620.66
usd-coin
USDC (USDC) $ 0.999761
solana
Solana (SOL) $ 84.39
tron
TRON (TRX) $ 0.325985
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.04
staked-ether
Lido Staked Ether (STETH) $ 2,265.05

Pin It on Pinterest

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?