News

Public · Published

No, Ledger Wasn't Hacked: Vulnerable Ethereum App Was Patched Before Exploit, Company Says

OneKey showed how an outdated Ethereum app could sign a transaction different from what a Ledger device displayed. Ledger said this vulnerability was already patched before any exploit occurred, meaning the wallet maker itself was not hacked.

Published:

Updated:

What happened

OneKey showed how an outdated Ethereum app could sign a transaction different from what a Ledger device displayed. Ledger said this vulnerability was already patched before any exploit occurred, meaning the wallet maker itself was not hacked.

Confirmed

Global impact / market context

This matters because it highlights risks in crypto wallets, which store digital money. If transaction displays can be tricked, users might approve wrong payments. Ledger's quick fix helps protect customer funds, but outdated software remains a danger for investors.

Analyst inference

Ethereum, the asset tied to this app, is widely used for digital payments and contracts. News about wallet security can shake trust in holding crypto. However, since Ledger confirmed the fix, investor confidence may stay stable, avoiding panic selling.

Analyst inference

What to watch

  1. Watch whether Ledger provides more details about which app versions were affected and how users can verify their software is updated to the patched version. Confirmed
  2. Consider checking your own Ledger device and Ethereum app for updates, as using outdated versions could leave you exposed to similar transaction display risks. Proposed
  3. Watch for any reports of actual exploits using this vulnerability, which could signal broader security issues and affect Ethereum's reputation among investors. Analyst inference

Affected assets

  • ETH — Ethereum

Evidence