Scammers Stole Personal Data of Ledger Crypto Wallet Users

RBK-cryptoPublished on 2026-01-05Last updated on 2026-01-05

Abstract

Summary: Cryptocurrency hardware wallet manufacturer Ledger has suffered another data breach, this time through its e-commerce payment partner, Global-e. According to crypto investigator ZachXBT, the incident compromised users' personal data, including names and contact information. An email shared by ZachXBT, reportedly sent to affected users, stated that Global-e detected suspicious activity and that an unauthorized party had accessed certain personal data. At the time of reporting, Ledger had not yet released an official statement with details of the incident. This is not Ledger's first breach; in 2020, the data of over 270,000 customers was compromised, which led to years of targeted phishing attempts against users. The summary also notes that the American exchange Coinbase faced a major data breach in 2025, causing an estimated hundreds of millions of dollars in damage.

Another data breach of users of the popular crypto wallet manufacturer Ledger has occurred through the payment system Global-e. As reported by crypto detective ZachXBT, the incident resulted in the disclosure of customers' personal data, including names and contact information.

ZachXBT shared a fragment of an email received by some users:

"Suspicious activity was detected in a part of our network at Global-e. We took steps to isolate and secure our systems. We engaged independent digital forensics experts to investigate the incident and determined that there was unauthorized access to some personal data, including name and contact information."

No official statement from Ledger with details of the incident has been published at the time of writing.

As stated on the crypto wallet manufacturer's website, Global-e offers e-commerce solutions. Since October 9, 2023, Ledger has been using the Global-e platform to sell Ledger products through the official Ledger website.

In 2020, the company already reported a data compromise of over 270 thousand wallet buyers, including delivery addresses, their phone numbers, and email addresses. It was reported that after the incident, the personal information of 4,865 users from Russia, among others, became publicly available.

After the incident, for several years, Ledger users received phishing mailings electronically and even in paper form. The goal of these letters was to obtain additional information that could lead to the theft of cryptocurrency.

A major user data leak in 2025 also affected the American crypto exchange Coinbase, where, according to expert estimates, the damage amounted to several hundred million dollars.

What will happen to the regulation of the cryptocurrency market in Russia in 2026

Bitcoin turned 17 years old

Bitcoin as 'digital gold': what an investor should know

Related Questions

QWhat company experienced a recent data breach affecting users of its crypto wallet?

ALedger, the manufacturer of a popular crypto wallet, experienced a data breach through its payment system, Global-e.

QWhich payment system was the source of the Ledger user data leak?

AThe data leak occurred through the Global-e payment system, which Ledger uses for e-commerce and product sales on its official website.

QWhat type of user information was compromised in the Ledger data breach according to the email shared by ZachXBT?

AThe compromised information included users' names and contact information.

QHad Ledger experienced a similar data security incident prior to this one?

AYes, in 2020, Ledger reported a data breach that compromised the information of over 270,000 customers, including delivery addresses, phone numbers, and email addresses.

QWhat was a long-term consequence for users after Ledger's 2020 data breach?

AFor several years after the 2020 incident, Ledger users received phishing messages via email and even physical mail, aimed at stealing additional information to facilitate cryptocurrency theft.

Related Reads

Near Returns to the AI Stage: Transformation into a Public Chain Due to 'Payroll Difficulties,' Agent and Privacy Emerge as New Growth Narratives

NEAR Returns to AI Origins: From Payroll Struggles to Blockchain, Now Focusing on AI Agents and Privacy NEAR Protocol's journey began not with grand blockchain ambitions, but from a practical hurdle: its AI startup founders, including Transformer paper co-author Illia Polosukhin, couldn't efficiently pay international developers in 2017. This led them to pivot and build a high-performance, scalable blockchain. After years navigating various crypto narratives like sharding and cross-chain interoperability, NEAR is now leveraging its AI roots to re-enter the AI arena. A key driver is its "NEAR Intents" layer, which abstracts complex cross-chain transactions. Users simply state their goal (e.g., swap BTC for ETH), and a solver network finds the optimal route. This system has processed over $20B in cross-chain volume, generating significant fee revenue. A major growth area is private transactions via "Confidential Intents/Swaps," which hide trade details until settlement to protect against MEV and front-running. Remarkably, private swaps recently accounted for over 40% of NEAR's transaction volume, highlighting strong demand but also potential regulatory scrutiny. With its AI-founder pedigree, NEAR is positioning itself at the intersection of blockchain, AI agents, and privacy, aiming to become infrastructure for the emerging agent economy while navigating the challenges of its rapid adoption.

marsbit35m ago

Near Returns to the AI Stage: Transformation into a Public Chain Due to 'Payroll Difficulties,' Agent and Privacy Emerge as New Growth Narratives

marsbit35m ago

From Ethereum to AI's 'CROPS': What Exactly is This Set of 'Slow Variables' That Vitalik Repeatedly Emphasizes?

In recent discussions, Vitalik Buterin has frequently emphasized the concept of "CROPS," a framework defining core values for Ethereum's development. CROPS stands for Censorship Resistance, Capture Resistance, Open Source, Privacy, and Security. Initially outlined in the Ethereum Foundation's "EF Mandate," it represents a commitment to user sovereignty, ensuring that the network resists external control, remains open, protects privacy, and prioritizes security. The relevance of CROPS extends beyond Ethereum's foundational principles, becoming crucial in the context of AI integration. As AI agents begin handling wallet operations and automated transactions, the risk increases that users may cede control over their digital assets, privacy, and intentions to centralized AI service providers. A "CROPS AI" would therefore emphasize local execution where possible, privacy-preserving remote model calls (e.g., using zero-knowledge proofs), and transparent, verifiable processes to maintain user agency. Vitalik highlights a significant convergence between "CROPS Ethereum access layer" and "CROPS AI." Both address the same fundamental challenge: how users can access powerful services—be it blockchain data via RPCs or AI models—without exposing sensitive information or relinquishing ultimate control. This intersection points toward a future digital entry point that is more private, secure, and user-controlled. Ultimately, CROPS is not merely an abstract ideal but a practical guidepost. It steers development—from protocol resilience and wallet design to AI agent safety—towards a future where users retain self-sovereignty even as digital systems grow more complex and powerful. In an era of accelerating AI adoption, these "slow variables" of censorship resistance, openness, privacy, and security may define Ethereum's enduring value.

marsbit45m ago

From Ethereum to AI's 'CROPS': What Exactly is This Set of 'Slow Variables' That Vitalik Repeatedly Emphasizes?

marsbit45m ago

Silicon Valley 'Startup Guru' Steve Hoffman: Web3 + AI Could Be a Trap

Silicon Valley investor and "Godfather of Startups" Steve Hoffman warns that combining Web3 with AI is likely a trap, not a promising venture. In an interview, Hoffman argues that while AI is a foundational technology touching all industries, Web3 adds complexity, friction, and regulatory risk without solving mainstream consumer or business needs. He advises founders to focus on deep, specialized applications where startups can out-iterate giants, rather than on generic features easily replicated by large tech companies. Hoffman observes that Silicon Valley will lead foundational AI research, while China excels at rapid, large-scale application and commercialization, particularly in robotics. He stresses that AI-driven autonomous agents capable of collaborative, multi-step tasks are 2-4 years away, which will cause significant job displacement. The solution is not to slow AI but to redesign business models around human-AI collaboration and reform social systems like education and retraining. For startups, Hoffman recommends focusing on vertical, expertise-heavy domains to build defensibility. He sees major opportunities in AI fraud detection and cybersecurity. Key founder mindsets include systemic thinking over feature-focus, relentless customer centricity, building adaptive teams, and deeply understanding AI's capabilities and limits. Hoffman is also leading a non-profit initiative to establish university centers aimed at training future leaders in responsible, human-value-aligned AI innovation.

marsbit2h ago

Silicon Valley 'Startup Guru' Steve Hoffman: Web3 + AI Could Be a Trap

marsbit2h ago

Token Inefficient, Economy Tokenless

The article "Tokens Aren't Economical, Economics Aren't Tokenized" analyzes a pivotal shift in the AI industry from a technology-driven narrative to one dominated by capital efficiency. It highlights two concurrent trends: a severe capital shortage due to the exorbitant and recurring costs of compute (e.g., OpenAI's high burn rate) and a wave of corporate spin-offs where major tech companies are separating their AI units (like Kuaishou's Kling and Baidu's Kunlunxin). The core argument is that AI's "anti-internet" business model, where user growth increases costs rather than profits, has created a disconnect between high valuations and actual cash flow. Spin-offs address this by allowing AI assets to be valued independently. Within a parent company, they are seen as cost centers, but as standalone entities, they are priced based on their growth potential and scarcity in the primary market, leading to massive valuation premiums (e.g., Kling's estimated value tripling post-spin-off). The industry is at an inflection point, moving from "model worship" to "value realization." The competition is evolving from a pure compute (GPU) race to a broader focus on systemic efficiency and full-stack engineering (involving CPUs and orchestration) to achieve viable commercialization. The year 2026 is framed as a critical moment where the industry must definitively answer how to economically translate AI capability into tangible business value, reshaping the sector's future power structure.

marsbit2h ago

Token Inefficient, Economy Tokenless

marsbit2h ago

Trading

Spot
Futures
活动图片