Categories: MarketsMenafn

Ledger Commits to Full Reimbursement: Promises $600,000 Refund for Hacked Users

Ledger will return $600,000 to users affected by the hack that exploited the blind signatures feature on its hardware wallets.

According to the Ledger’s Dec. 20 announcement, the company is also working to prevent similar signatures in the future and aims to implement a new security standard built around clear signatures. This will increase user protection and improve the transparency of DApps.

By June 2024, Ledger devices will no longer support blind signatures. Instead, there will be a new security standard using clear signatures. This will increase user protection and improve the transparency of DApps.

Ledger also advises users who signed transactions in affected DApps during the hack to cancel authorized transactions. This should minimize the impact of the attacker’s malicious code.

What happened on Dec. 14?

The hack occurred on Dec. 14. A hacker replaced the real Ledger Connect Kit with a fake one, but users’ physical devices and the Ledger Live app were not affected.

The breach involved the hacker gaining access to the NPMJS service account through a phishing attack targeting a former Ledger employee. The attacker used WalletConnect to withdraw funds. This action triggered the deactivation of the scammer’s wallet.

Subsequently, Ledger promptly removed the malicious file from its system, which had been present for approximately 5 hours.

At the time of the incident, Ledger did not disclose the extent of the damage. However, the company stated that it had reached out to affected users to discuss compensation.

Ledger’s other security issues

This isn’t the first time Ledger has faced security issues. Crypto analyst ZachXBT reported a fake Ledger Live app in the Microsoft Store in Nov. It is known that it appeared on Oct. 19.

Three years ago, hackers successfully breached Ledger users’ personal data in an incident that took place on Jun. 25, 2020. The attackers gained unauthorized access to a list of customers’ names, addresses, and phone numbers by exploiting an API key.

The recent breach has led to criticism of Ledger. Many users didn’t understand why a former employee had access to the data, according to comments under the company’s post.

Jerry Rolon

After working for 7 years as a Internet Marketer, Jerry now aims to explore the journalistic side of Internet. With his impeccable knowledge in this domain, he churns out some of the best news articles from the internet niche. With respect to acedamics, Jerry earned a degree in business from California State University.

Recent Posts

Bitcoin Bulls Bet on Fed Rate Cuts to Ignite Next Rally

Bitcoin investors are watching the Federal Reserve closely as speculation grows that a rate cut…

10 hours ago

Al Marwan Developments Leads UAE Economic Diversification With District 11’s Cutting-Edge Commercial Smart City Infrastructure

Dubai, UAE, 14th September 2025, District 11, the visionary 3.5 billion AED smart work resort development by…

1 day ago

Sandford Blair Capital Poised to Capitalize on Oracle’s AI-Cloud Breakthrough

Oracle’s Fiscal Q1 2026: A Landmark Quarter Lier, Flanders, 12th September 2025, ZEX PR WIRE,…

3 days ago

Countdown to Forex Expo Dubai 2025 – Your Chance to Take Home the Jetour X70 FL

Just Weeks Away From the Middle East’s Leading Trading Event, Returning October 6–7 at Dubai…

3 days ago

Dogecoin Pops As First U.S. Memecoin ETF Eyes Friday Debut

Dogecoin (DOGE) extended weekly gains as traders positioned for the REX-Osprey Dogecoin ETF (ticker: DOJE),…

3 days ago

World AI Show Returns to Kuala Lumpur with MDEC as Strategic Partner.

Kuala Lumpur, Malaysia, 12th September 2025, ZEX PR WIRE, The World AI Show is back…

4 days ago