@kitto
A critical vulnerability has been discovered in the Ledger hardware wallet app for the Zilliqa network. According to reports from Cointelegraph and other media, a severe bug has been identified that could allow an attacker to reconstruct a signer's private key by analyzing on-chain data. Users who have signed 5 or more ZIL native transactions on Ledger are at direct risk of asset theft.
Following this news, major domestic exchanges like Upbit and Bithumb have acted quickly, urgently designating ZIL as an investment warning asset to protect investors. The community is quite shocked that a vulnerability has emerged at the app level of a hardware wallet that was trusted as the safest storage method.
The Zilliqa team has stated that they are currently developing an emergency security patch. It is certainly unsettling when the most reliable storage method is compromised. If you have been using Ledger to manage your Zilliqa, it is recommended that you avoid signing any additional transactions until the patch is complete and keep a close eye on official announcements.
Related Links