• bitcoinBitcoin (BTC) $ 74,433.00
  • ethereumEthereum (ETH) $ 2,642.19
  • tetherTether (USDT) $ 1.00
  • solanaSolana (SOL) $ 186.97
  • bnbBNB (BNB) $ 584.66
  • usd-coinUSDC (USDC) $ 0.999797
  • xrpXRP (XRP) $ 0.534905
  • dogecoinDogecoin (DOGE) $ 0.201002
  • staked-etherLido Staked Ether (STETH) $ 2,640.36
  • tronTRON (TRX) $ 0.163940
  • cardanoCardano (ADA) $ 0.359165
  • the-open-networkToncoin (TON) $ 4.71
  • shiba-inuShiba Inu (SHIB) $ 0.000019
  • wrapped-stethWrapped stETH (WSTETH) $ 3,108.36
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 74,330.00
  • avalanche-2Avalanche (AVAX) $ 26.40
  • wethWETH (WETH) $ 2,641.06
  • chainlinkChainlink (LINK) $ 11.84
  • bitcoin-cashBitcoin Cash (BCH) $ 372.75
  • suiSui (SUI) $ 2.30
  • polkadotPolkadot (DOT) $ 4.08
  • leo-tokenLEO Token (LEO) $ 6.20
  • usdsUSDS (USDS) $ 1.00
  • uniswapUniswap (UNI) $ 9.10
  • litecoinLitecoin (LTC) $ 69.93
  • nearNEAR Protocol (NEAR) $ 4.15
  • aptosAptos (APT) $ 9.34
  • wrapped-eethWrapped eETH (WEETH) $ 2,776.60
  • pepePepe (PEPE) $ 0.000010
  • bittensorBittensor (TAO) $ 526.28
  • internet-computerInternet Computer (ICP) $ 7.71
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.39
  • daiDai (DAI) $ 0.999525
  • moneroMonero (XMR) $ 161.52
  • kaspaKaspa (KAS) $ 0.117957
  • stellarStellar (XLM) $ 0.096889
  • ethereum-classicEthereum Classic (ETC) $ 19.21
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • whitebitWhiteBIT Coin (WBT) $ 19.25
  • blockstackStacks (STX) $ 1.66
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.328184
  • aaveAave (AAVE) $ 161.50
  • dogwifcoindogwifhat (WIF) $ 2.39
  • first-digital-usdFirst Digital USD (FDUSD) $ 1.00
  • okbOKB (OKB) $ 38.97
  • crypto-com-chainCronos (CRO) $ 0.085334
  • filecoinFilecoin (FIL) $ 3.62
  • arbitrumArbitrum (ARB) $ 0.531891
  • injective-protocolInjective (INJ) $ 20.92
  • immutable-xImmutable (IMX) $ 1.19
  • mantleMantle (MNT) $ 0.586361
  • celestiaCelestia (TIA) $ 4.76
  • render-tokenRender (RENDER) $ 4.92
  • optimismOptimism (OP) $ 1.54
  • hedera-hashgraphHedera (HBAR) $ 0.049749
  • fantomFantom (FTM) $ 0.661358
  • thorchainTHORChain (RUNE) $ 5.38
  • vechainVeChain (VET) $ 0.021676
  • cosmosCosmos Hub (ATOM) $ 4.44
  • bitget-tokenBitget Token (BGB) $ 1.18
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,642.70
  • sei-networkSei (SEI) $ 0.387420
  • popcatPopcat (POPCAT) $ 1.59
  • bonkBonk (BONK) $ 0.000022
  • the-graphThe Graph (GRT) $ 0.149764
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,943.73
  • jupiter-exchange-solanaJupiter (JUP) $ 1.02
  • flokiFLOKI (FLOKI) $ 0.000140
  • pyth-networkPyth Network (PYTH) $ 0.370962
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,760.97
  • mantra-daoMANTRA (OM) $ 1.37
  • ethenaEthena (ENA) $ 0.420501
  • theta-tokenTheta Network (THETA) $ 1.19
  • worldcoin-wldWorldcoin (WLD) $ 1.91
  • solv-btcSolv Protocol SolvBTC (SOLVBTC) $ 74,420.00
  • gatechain-tokenGate (GT) $ 8.94
  • kucoin-sharesKuCoin (KCS) $ 9.41
  • makerMaker (MKR) $ 1,296.74
  • heliumHelium (HNT) $ 6.21
  • lido-daoLido DAO (LDO) $ 1.16
  • msolMarinade Staked SOL (MSOL) $ 229.91
  • raydiumRaydium (RAY) $ 3.84
  • ondo-financeOndo (ONDO) $ 0.703006
  • algorandAlgorand (ALGO) $ 0.120434
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,709.36
  • bitcoin-svBitcoin SV (BSV) $ 50.70
  • arweaveArweave (AR) $ 15.25
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 74,548.00
  • fasttokenFasttoken (FTN) $ 2.95
  • jasmycoinJasmyCoin (JASMY) $ 0.019799
  • based-brettBrett (BRETT) $ 0.091229
  • beam-2Beam (BEAM) $ 0.017114
  • quant-networkQuant (QNT) $ 61.24
  • aerodrome-financeAerodrome Finance (AERO) $ 1.30
  • matic-networkPolygon (MATIC) $ 0.328151
  • spx6900SPX6900 (SPX) $ 0.904875
  • mog-coinMog Coin (MOG) $ 0.000002
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.009225
  • bittorrentBitTorrent (BTT) $ 0.00000085
  • flowFlow (FLOW) $ 0.532900
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 1.00
  • galaGALA (GALA) $ 0.020484
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 74,666.00
  • coredaoorgCore (CORE) $ 0.874127
  • pendlePendle (PENDLE) $ 4.93
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 2,635.60
  • starknetStarknet (STRK) $ 0.379508
  • tokenize-xchangeTokenize Xchange (TKX) $ 9.74
  • usddUSDD (USDD) $ 1.00
  • neiro-3Neiro (NEIRO) $ 0.001780
  • goatseus-maximusGoatseus Maximus (GOAT) $ 0.746780
  • axie-infinityAxie Infinity (AXS) $ 4.80
  • apecoinApeCoin (APE) $ 1.01
  • solv-protocol-solvbtc-bbnSolv Protocol SolvBTC.BBN (SOLVBTC.BB) $ 74,240.00
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 196.54
  • ordinalsORDI (ORDI) $ 34.13
  • kaiaKaia (KAIA) $ 0.121822
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 74,527.00
  • gigachad-2Gigachad (GIGA) $ 0.072995
  • neoNEO (NEO) $ 9.83
  • dydx-chaindYdX (DYDX) $ 1.05
  • elrond-erd-2MultiversX (EGLD) $ 24.89
  • flare-networksFlare (FLR) $ 0.013418
  • ecasheCash (XEC) $ 0.000034
  • eosEOS (EOS) $ 0.447919
  • conflux-tokenConflux (CFX) $ 0.148335
  • tether-goldTether Gold (XAUT) $ 2,707.15
  • tezosTezos (XTZ) $ 0.649698
  • nexoNEXO (NEXO) $ 1.02
  • notcoinNotcoin (NOT) $ 0.006325
  • fraxFrax (FRAX) $ 0.995803
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,640.75
  • mina-protocolMina Protocol (MINA) $ 0.531436
  • superfarmSuperVerse (SUPER) $ 1.37
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,708.22
  • arkhamArkham (ARKM) $ 2.05
  • axelarAxelar (AXL) $ 0.723603
  • the-sandboxThe Sandbox (SAND) $ 0.252327
  • gnosisGnosis (GNO) $ 230.63
  • wormholeWormhole (W) $ 0.218828
  • zcashZcash (ZEC) $ 38.92
  • akash-networkAkash Network (AKT) $ 2.37
  • turboTurbo (TURBO) $ 0.008425
  • book-of-memeBOOK OF MEME (BOME) $ 0.008197
  • ethereum-name-serviceEthereum Name Service (ENS) $ 17.09
  • nervos-networkNervos Network (CKB) $ 0.012565
  • decentralandDecentraland (MANA) $ 0.297152
  • chilizChiliz (CHZ) $ 0.060805
  • safeSafe (SAFE) $ 1.08
  • paypal-usdPayPal USD (PYUSD) $ 1.00
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,641.78
  • pax-goldPAX Gold (PAXG) $ 2,686.58
  • beldexBeldex (BDX) $ 0.078753
  • eigenlayerEigenlayer (EIGEN) $ 2.77
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 2,862.67
  • aioz-networkAIOZ Network (AIOZ) $ 0.444018
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000091
  • zksyncZKsync (ZK) $ 0.134432
  • true-usdTrueUSD (TUSD) $ 0.996357
  • roninRonin (RON) $ 1.36
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.76
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000023
  • havvenSynthetix Network (SNX) $ 1.46
  • dydxdYdX (ETHDYDX) $ 1.05
  • dexeDeXe (DEXE) $ 8.13
  • grassGrass (GRASS) $ 1.89
  • oasis-networkOasis (ROSE) $ 0.065962
  • binance-staked-solBinance Staked SOL (BNSOL) $ 189.07
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.004376
  • frax-etherFrax Ether (FRXETH) $ 2,619.31
  • fwogFwog (FWOG) $ 0.434571
  • super-oethSuper OETH (SUPEROETHB) $ 2,641.44
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 74,524.00
  • blurBlur (BLUR) $ 0.210953
  • apenftAPENFT (NFT) $ 0.00000042
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.417785
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.990739
  • xdce-crowd-saleXDC Network (XDC) $ 0.027530
  • astarAstar (ASTR) $ 0.055190
  • usdbUSDB (USDB) $ 0.998310
  • iotaIOTA (IOTA) $ 0.115272
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.06
  • hashnote-usycHashnote USYC (USYC) $ 1.07
  • quantixaiQuantixAI (QAI) $ 96.06
  • bitcoin-goldBitcoin Gold (BTG) $ 22.56
  • l2-standard-bridged-weth-blastL2 Standard Bridged WETH (Blast) (WETH) $ 2,643.84
  • baby-doge-coinBaby Doge Coin (BABYDOGE) $ 0.00000000
  • compound-governance-tokenCompound (COMP) $ 43.57
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 2,642.07
  • stepnGMT (GMT) $ 0.130090
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.200847
  • livepeerLivepeer (LPT) $ 10.47
  • layerzeroLayerZero (ZRO) $ 3.35
  • iotexIoTeX (IOTX) $ 0.039094
  • binance-peg-busdBinance-Peg BUSD (BUSD) $ 1.00
  • kavaKava (KAVA) $ 0.338672
  • echelon-primeEchelon Prime (PRIME) $ 7.36
  • theta-fuelTheta Fuel (TFUEL) $ 0.053510
  • woo-networkWOO (WOO) $ 0.190863
  • usual-usdUsual USD (USD0) $ 0.999752

Ledger CEO says attack was an ‘unfortunate isolated incident’

0 153

Ledger CEO says attack was an ‘unfortunate isolated incident’

  blockworks.co 2 h

Ledger CEO says attack was an ‘unfortunate isolated incident’

Ledger CEO Pascal Gauthier addressed the “supply chain attack” on its Ledger ConnectKit in a post on Thursday.

“The standard practice at Ledger is that no single person can deploy code without review by multiple parties. We have strong access controls, internal reviews and multi-signature code when it comes to most parts of our development. This is the case in 99% of our internal systems. Any employee who leaves the company has their access revoked from every Ledger system,” Gauthier said.

However, that was not the case on Thursday morning when a former employee was the subject of a phishing attack, giving the hacker an open door to Ledger’s package manager. It’s still unclear how the employee had maintained access to the system. Ledger did not immediately return a request for comment asking for clarification.

“This was an unfortunate isolated incident,” Gauthier continued. “It is a reminder that security is not static, and Ledger must continuously improve our security systems and processes. In this area, Ledger will implement stronger security controls, connecting our build pipeline that implements strict software supply chain security to the NPM distribution channel.”

Gauthier also said that Ledger would increase security around dapps that enable browser-based signing. Throughout communications on its X account on Thursday, Ledger’s official account promoted clear-signing transactions.

According to Ledger’s site, “with Transparent and Clear-signing, you are given a transformed version of the original data,” making it easier for the user to understand what they’re signing.

The incident was first reported Thursday morning, with decentralized exchange SushiSwap raising a red flag. The exchange took its front-end web app offline after the warnings, and told users to refrain from engaging with unexpected “Connect Wallet” pop-ups.

Revoke.cash, which also took its front-end offline, was also impacted according to cybersecurity firm BlockAid.

Soon after, Ledger said that it had deployed the genuine ConnectKit and worked with WalletConnect to take down the malicious code “within 40 minutes of discovery.” According to a timeline from the firm earlier Thursday, the exploit was active for roughly 5 hours.

Tether CEO Paolo Ardoino also posted on X that the attacker’s address was frozen.

“Ledger has engaged with authorities and is doing all we can to help as this investigation unfolds. Ledger will support affected users in helping to find this bad actor, bring them to justice, track the funds and work with law enforcement to help recover stolen assets from the hacker,” Gauthier said.

Source

Leave A Reply

Your email address will not be published.