A supply chain attack on Ledger devices purchased from Southeast Asian reseller CryptoBilis resulted in approximately $90 million in stolen cryptocurrency. Attackers implanted a hardware module to capture seed phrases displayed on-screen, targeting high-value wallets with an average loss of $890,000 each across roughly 98 victims who followed security best practices.
A post discusses a $93 million theft from Ledger involving a compromised supply chain. The incident was shared on X (formerly Twitter) by GREED Academy on October 10, 2026.
Ethereum discussions from October 10, 2026 cover price predictions from Fundstrat's Tom Lee ($7,500 year-end target), exploitation vulnerabilities in Paper Trade protocol, and a security incident where a user lost 59 ETH after switching to Ledger wallet storage.
A security researcher flagged a fake Ledger wallet phishing website ranking high on Google Search, reportedly attracting over 1 million visits monthly by targeting users' recovery phrases. Former Mt. Gox CEO Mark Karpelès discovered a hidden implant in a tampered Ledger device, and Ledger is investigating $86M+ in losses linked to Southeast Asian reseller CryptoBilis. Separately, Velo Protocol launched a content creator bounty campaign offering 600 USDT in prizes for original content about the Velo × Zebec Card partnership.
A major cryptocurrency theft occurred on October 8, 2026, when approximately $91 million was stolen from users of Ledger hardware wallets sold through a Malaysian authorized reseller. The theft was facilitated by compromised devices containing hidden LTE modems that transmitted users' private keys, following the secret acquisition of the reseller by a Chinese owner under an NDA.
Fake Ledger websites ranked high in Google search results, accumulating over 1 million visits in 30 days by deceiving users into sharing their recovery phrases. Security researchers identified malicious ads and phishing sites impersonating Ledger, while the company investigates a suspected $86 million wallet theft linked to Southeast Asian dealer CryptoBilis.
A user details common scams targeting hardware wallet users, including pregenerated seeds, malware-infected devices, keyloggers, malicious firmware, clipboard substitution, blind signing exploits, and social engineering attacks. The post emphasizes that self-custody requires purchasing from official sources and personal responsibility for security.
An estimated $92.9 million was stolen from 311 crypto wallets in a suspected supply-chain attack involving an authorized Ledger reseller. The incident highlights risks of hardware wallet compromise before reaching users, even when proper security practices are followed.
A crypto protocol warns of unusual website activity and a possible attack while investigating, advising users to avoid connecting wallets. The alert follows a reported $86 million theft linked to Ledger hardware wallets sold through a Southeast Asian reseller.
XRP Ledger disclosed an overflow bug that could have created excess XRP beyond total supply, sparking discussion about the need for formal verification and code audits in L1 networks handling real-world assets. Meanwhile, RWA projects like Hazels and Plume Network are expanding tokenization strategies, with focus on execution and tangible delivery over announcements.
A Chinese company secretly acquired CryptoBilis, an authorized Ledger reseller in Southeast Asia, and implanted spy chips in hardware wallets before shipping them, allowing attackers to steal private keys and drain cryptocurrency wallets across multiple blockchains. Hundreds of users were affected, with one victim losing $5.3 million despite following security best practices.
OneKey founder Yishi suggests a supply chain attack involving malicious components may have caused a recent theft targeting Ledger users, potentially through interception of unencrypted recovery phrase data. Ledger is investigating a theft linked to devices sold via Southeast Asian retailer CryptoBilis, with estimated losses around $90 million. OneKey plans security improvements including encrypted recovery phrase backup and stronger vendor oversight.
A Ledger hardware wallet reseller in Southeast Asia (CryptoBilis) was sold to an individual in China's Heilongjiang Province in March 2026 under a secrecy agreement. In October, compromised Ledger Nano X devices with spy-inserted components were discovered by former Mt. Gox CEO Mark Karpelès, leading to a coordinated $86–93 million theft across multiple blockchains affecting hundreds of users. Ledger confirmed the breach was limited to the CryptoBilis distribution channel and recommended affected customers move assets to new signers.
Ledger reported that stolen funds appear limited to devices sold by Southeast Asian distributor CryptoBilis, with no evidence of compromise to its security infrastructure, systems, or services. The company is investigating the incident and directing affected users to official customer support channels.
A supply chain attack on Ledger hardware wallets has resulted in $91 million in theft across nearly 500 addresses, with the Tron network suffering the most at $64.5 million. The compromise allegedly involved tampered Ledger Nano X and Nano S Plus devices sold through Southeast Asian reseller CryptoBillis, which contained spyware to capture seed phrases, raising concerns about the viability of cryptocurrency self-custody.
Twitter users discuss cryptocurrency security concerns, with one questioning seed phrase safety and another criticizing Ledger hardware wallet for multiple security exploits over five years, arguing that vendor-side faults cannot justify protocol breaches.
A user lost 59 ETH (worth approximately $146,800) from a Ledger wallet following a security incident. The dormant wallet, inactive for over 4 years, was compromised after the user transferred assets to a new wallet, allowing an attacker to steal the remaining ETH.
Bitcoin market shows signs of recovery 100 days after bottoming, with traders discussing historical patterns suggesting potential upside. A major supply chain attack on Ledger Nano X hardware wallets resulted in tens of millions in stolen Bitcoin, prompting security recommendations including purchases from authorized resellers and diversification of holdings.
X posts discuss DeFi security and innovation. Topics include zkTLS technology for private data verification in crypto apps, hardware wallet security concerns following a Ledger breach, Binance's strategy of following market trends rather than leading, and new swap-and-send functionality from Tangem for simplified token transfers.