Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO
No Result
View All Result
Invest In Crypto News
No Result
View All Result

Ledger Falls Victim To Supply Chain Attack, Over $480,000 Drained

CryptoExpert by CryptoExpert
December 15, 2023
in Altcoin News
0
Ledger DeFi hack
  • Facebook
  • Twitter
  • Pinterest


You might also like

Crypto Developers Under Siege As ‘TrapDoor’ Malware Hits Supply Chain

Big Shift For Crypto Prediction Markets: Hyperliquid Removes External Oracle Dependency

XRP Price Holds ‘Best Accumulation Zone’ as Whales Pull $170M From Binance

In yet another significant security breach, unknown malicious agents targeted Ledger, the popular hardware wallet provider, aiming to exploit their LedgerConnect kit. Blockaid, a platform aiming to protect web3 users, was the first to report on the attack.

The Supply Chain Attack Targeting Ledger Connector

Taking to X on December 14, Blockaid said attackers successfully injected a “wallet-draining payload” into the NPM package. Once the payload propagated, attackers hijacked the front end of multiple apps, including Sushi, Hey, and Zapper, crippling operations and reportedly making away with hundreds of thousands of dollars worth of assets. 

The attack wasn’t targeting any dapp or blockchain like Solana or Ethereum, for example. Instead, hackers wanted to exploit all protocols whose users, in one way or another, used the LedgerConnect kit to manage or transfer assets. 

Solana price trending upward on the daily chart | Source: SOLUSDT on Binance, TradingView

To understand how the hack was executed, hackers expressly targeted Ledger’s NPM. The connector is crucial in how typically off-chain Ledger wallet clients can securely connect and manage their assets online. 

okex

While providing a means of accessing wallets, NPM is also an interface. Through this portal, developers can integrate Ledger hardware wallets into apps. In this case, Ledger users can securely engage in non-fungible tokens (NFTs), decentralized finance (DeFi), and other activities. 

Since this attack aimed to exploit a critical Ledger infrastructure that could impact all protocols regardless of blockchain, analysts now say these agents successfully executed a “supply chain attack.” In supply chain attacks on DeFi protocols, hackers can target a trusted service provider, mostly a wallet provider or exchange, to steal funds.

Ledger Responds, Over $480,000 Stolen

Wintermute’s Head of Research, Igor Igamberdiev, reported that a script infected with malware was uploaded to Ledger’s NPM register at 9:44 am UTC. However, Ledger has since responded, saying they deleted the malicious file and replaced it with a genuine version roughly four hours after the script was uploaded at around 1:35 pm UTC. 

Ledger has also reminded users to be keen before signing off on their transactions, emphasizing that all addresses and information displayed on their interface are the “only reliable sources of information.” Earlier, the hardware manufacturer assured clients that their devices were not compromised.

Despite these assurances, Lookonchain, a blockchain analytics platform, said over $480,000 worth of assets were stolen before Ledger patched the error.

Assets stolen from the Ledger attack | Source: Lookonchain on X
Assets stolen from the Ledger attack | Source: Lookonchain on X

To further reinforce ZachXBT’s statement, Paolo Ardoino, the CEO of Tether, the USDT issuer, took to X, saying the platform had blocked the Ledger Exploiter’s address.

Feature image from Canva, chart from TradingView



Source link

  • Facebook
  • Twitter
  • Pinterest
Tags: Ethereum
CryptoExpert

CryptoExpert

Recommended For You

Crypto Developers Under Siege As ‘TrapDoor’ Malware Hits Supply Chain

by CryptoExpert
May 26, 2026
0
TrapDoor

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure The attackers behind TrapDoor went after more than wallets and passwords — they embedded hidden...

Read more

Big Shift For Crypto Prediction Markets: Hyperliquid Removes External Oracle Dependency

by CryptoExpert
May 26, 2026
0
Hyperliquid

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Hyperliquid’s new HIP-4 update—unveiled Monday—marks a major shift in how crypto prediction markets could operate,...

Read more

XRP Price Holds ‘Best Accumulation Zone’ as Whales Pull $170M From Binance

by CryptoExpert
May 25, 2026
0
Cointelegraph

XRP (XRP) traded within a key “value zone” where whales recently accumulated $170 million, signaling a tightening liquidity supply.Key takeaways:XRP whales withdrew 122 million XRP, worth $170.8 million,...

Read more

Stablecoin Regulation: FDIC Announces New Proposed AML Rules For Issuers

by CryptoExpert
May 25, 2026
0
stablecoins

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure As crypto regulations continue to take shape in the US, the Federal Deposit Insurance Corporation...

Read more

Ethereum Price Stuck In Downtrend Despite Strong Spot Demand

by CryptoExpert
May 25, 2026
0
Ethereum Price Stuck In Downtrend Despite Strong Spot Demand

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure The Ethereum price resumed its downtrend on Friday, May 22, after consolidating throughout the week....

Read more
Next Post
Crypto

Alarming Crypto Theft: North Korea-Linked Lazarus Group Accounts For 20% Of 2023's Losses

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

Sitemap

  • Market Cap
  • Donations
  • Trading
  • Mining
  • Contact

Legal Information

  • Privacy Policy
  • Anti-Spam Policy
  • Copyright Notice
  • DMCA Compliance
  • Social Media Disclaimer
  • Terms Of Service

Categories

  • Altcoin News
  • Bitcoin News
  • Blockchain News
  • Business
  • Doge News
  • Ethereum News
  • Finance
  • Market Analysis
  • Mining
  • NFT News
  • Politics
  • Regulation
  • Technology
  • Trending Cryptos
  • Video

© Copyright 2024 InvestInCryptoNews.com

No Result
View All Result
  • Home
  • Latest News
    • Bitcoin News
    • Altcoin News
    • Ethereum News
    • Blockchain News
    • Doge News
    • NFT News
    • Video
    • Market Analysis
    • Business
    • Finance
    • Politics
    • Mining
    • Regulation
    • Technology
  • Top 10 Cryptos
  • Market Cap List
  • IC DAO
  • Donations
  • Contact
  • Buy Crypto
  • IC DAO

© Copyright 2024 InvestInCryptoNews.com

This website is using cookies to improve the user-friendliness. You agree by using the website further.

Privacy policy
bitcoin
Bitcoin (BTC) $ 76,965.00
ethereum
Ethereum (ETH) $ 2,115.59
tether
Tether (USDT) $ 0.998822
bnb
BNB (BNB) $ 661.36
xrp
XRP (XRP) $ 1.35
usd-coin
USDC (USDC) $ 0.99974
solana
Solana (SOL) $ 84.93
tron
TRON (TRX) $ 0.375701
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.02
staked-ether
Lido Staked Ether (STETH) $ 2,265.05

Pin It on Pinterest

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?