ZachXBT Calls Hardware Wallets “Complete Garbage,” Labels Ledger the ‘Worst’ Crypto Wallet

TheNewsCryptoPublished on 2026-07-16Last updated on 2026-07-16

Abstract

Blockchain researcher ZachXBT criticizes hardware wallets, labeling them "complete garbage" and specifically targeting Ledger as the worst, arguing their frequent software updates increase security risks rather than enhancing safety. He points to major hacks, like a fake Ledger app stealing $9.5 million and a social engineering attack costing over $282 million, as evidence that threats often target user behavior, not the hardware itself. As an alternative for experienced users, ZachXBT suggests using a dedicated, factory-reset iPhone for crypto storage, citing Apple's Secure Enclave and app sandboxing. However, he acknowledges that smartphones, as online devices, cannot match the isolation of traditional cold wallets.

This week, the topic of crypto security became a relevant one because of blockchain researcher ZachXBT’s remarks on the reliability of hardware wallets in relation to self-custody of funds. In fact, his views were in contrast to the current practices and drew attention to the issue of crypto wallets’ protection in general, rather than that of hardware only. ZachXBT recommended using an iPhone instead of a hardware wallet for experienced users.

Source: ZachXBT (Telegram)

Security Threats Extend Beyond Hardware Wallets

Ledger transitioned from Ledger Live to Ledger Wallet, adding buying, swapping, staking, and yield management features. ZachXBT noted that the most serious accusation was against Ledger. Too many software updates complicate normal activities while posing additional security threats. Critics argue that every new feature expands the attack surface. It poses security threats owing to software vulnerabilities, while making no addition to the security of transactions.

These positions were justified by hacking events in which attacks did not take place on hardware but on its users. The fake Ledger application available in the Apple App Store is claimed to have stolen about $9.5 million from the accounts of its users who have revealed their recovery phrases. Another case of a social engineering attack resulted in the loss of more than $282 million by one cryptocurrency holder while interacting socially during the security procedure of a hardware wallet. Other cases involved losing USDC in an air-gapped Ledger and phishing letters with references to quantum computing breakthroughs.

Dedicated iPhones Join the Discussion about Self-Custody

ZachXBT claimed that a factory-reset iPhone specifically for storing cryptocurrencies is very safe due to the use of Secure Enclave, biometrics, and app sandboxing by Apple. Also, anonymous purchase of such a phone does not allow user data to be exposed after previous database breaches at Ledger. Yet, smartphones are online devices that will never be able to compete in terms of isolation from the Internet with traditional cold wallets. The researchers mentioned the existence of phishing crypto apps in the Apple App Store.

Highlighted Crypto News:
Stanford Research Warns Polymarket’s 5-Minute Bitcoin Contracts May Enable Price Manipulation

TagsAppleBlockchainCrypto WalletCrypto WalletsCryptocurrencyUSDCzachbxtZachXBT

Trending Cryptos

Related Questions

QWhat did blockchain researcher ZachXBT call hardware wallets, and what wallet did he label as the worst?

AZachXBT called hardware wallets 'complete garbage' and specifically labeled Ledger as the 'worst' crypto wallet.

QAccording to ZachXBT, what alternative method did he recommend for experienced users instead of using a hardware wallet?

AZachXBT recommended that experienced users use a factory-reset iPhone specifically for storing cryptocurrencies, instead of a hardware wallet.

QWhat are some of the security threats mentioned in the article that extend beyond the hardware wallet devices themselves?

AThe article mentions threats like fake wallet applications in app stores (e.g., a fake Ledger app stealing funds), social engineering attacks on users, loss of funds in air-gapped wallets, and phishing emails.

QWhy did ZachXBT argue that Ledger's shift to Ledger Wallet and the addition of new features posed security risks?

AZachXBT argued that too many software updates and new features (like buying, swapping, staking) complicate normal activities and expand the attack surface, introducing software vulnerabilities without adding to transaction security.

QWhat advantages of using a dedicated iPhone for crypto storage were highlighted by ZachXBT?

AZachXBT highlighted the safety of using a factory-reset iPhone due to Apple's Secure Enclave, biometrics, and app sandboxing. He also noted that an anonymous purchase prevents exposure from previous database breaches like those suffered by Ledger.

Related Reads

Thanks to Dice Rolls, Bitcoin Keys Are Stored Offline, But Not Everyone Will Do It

The article discusses using dice rolls to generate secure Bitcoin wallet seeds, providing entropy independent of potentially flawed hardware random number generators. It explains that each fair dice roll offers about 2.585 bits of entropy, with around 50 rolls needed for a standard 12-word seed phrase and 99+ recommended for higher security. This method gained attention after a vulnerability was revealed in some Coldcard hardware wallets, where a faulty firmware RNG (dating back to 2021) compromised generated keys. The analysis notes that while a dice-generated main seed was safe from this specific flaw, other Coldcard functions (like creating paper wallets, backup keys, or passwords) could still be vulnerable if they used the defective RNG. The piece argues that while dice-based entropy is technically robust, the manual process is error-prone, tedious, and unrealistic for most new users, who might make mistakes in recording or inputting rolls. It concludes that while manual entropy generation should remain an option for advanced users, the long-term goal is to develop reliable, user-friendly hardware and software that securely generates randomness without requiring specialized knowledge. Coldcard users are advised to check their firmware version and replace any secondary secrets (like paper wallet keys) created with vulnerable devices, while also considering multi-signature setups with devices from different manufacturers for added security.

cryptonews.ru4h ago

Thanks to Dice Rolls, Bitcoin Keys Are Stored Offline, But Not Everyone Will Do It

cryptonews.ru4h ago

Trading

Spot

Hot Articles

How to Buy ONE

Welcome to HTX.com! We've made purchasing Harmony (ONE) simple and convenient. Follow our step-by-step guide to embark on your crypto journey.Step 1: Create Your HTX AccountUse your email or phone number to sign up for a free account on HTX. Experience a hassle-free registration journey and unlock all features.Get My AccountStep 2: Go to Buy Crypto and Choose Your Payment MethodCredit/Debit Card: Use your Visa or Mastercard to buy Harmony (ONE) instantly.Balance: Use funds from your HTX account balance to trade seamlessly.Third Parties: We've added popular payment methods such as Google Pay and Apple Pay to enhance convenience.P2P: Trade directly with other users on HTX.Over-the-Counter (OTC): We offer tailor-made services and competitive exchange rates for traders.Step 3: Store Your Harmony (ONE)After purchasing your Harmony (ONE), store it in your HTX account. Alternatively, you can send it elsewhere via blockchain transfer or use it to trade other cryptocurrencies.Step 4: Trade Harmony (ONE)Easily trade Harmony (ONE) on HTX's spot market. Simply access your account, select your trading pair, execute your trades, and monitor in real-time. We offer a user-friendly experience for both beginners and seasoned traders.

4.7k Total ViewsPublished 2024.03.29Updated 2026.06.02

How to Buy ONE

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of ONE (ONE) are presented below.

活动图片