Scammers Stole Personal Data of Ledger Crypto Wallet Users

RBK-cryptoPublicado a 2026-01-05Actualizado a 2026-01-05

Resumen

Summary: Cryptocurrency hardware wallet manufacturer Ledger has suffered another data breach, this time through its e-commerce payment partner, Global-e. According to crypto investigator ZachXBT, the incident compromised users' personal data, including names and contact information. An email shared by ZachXBT, reportedly sent to affected users, stated that Global-e detected suspicious activity and that an unauthorized party had accessed certain personal data. At the time of reporting, Ledger had not yet released an official statement with details of the incident. This is not Ledger's first breach; in 2020, the data of over 270,000 customers was compromised, which led to years of targeted phishing attempts against users. The summary also notes that the American exchange Coinbase faced a major data breach in 2025, causing an estimated hundreds of millions of dollars in damage.

Another data breach of users of the popular crypto wallet manufacturer Ledger has occurred through the payment system Global-e. As reported by crypto detective ZachXBT, the incident resulted in the disclosure of customers' personal data, including names and contact information.

ZachXBT shared a fragment of an email received by some users:

"Suspicious activity was detected in a part of our network at Global-e. We took steps to isolate and secure our systems. We engaged independent digital forensics experts to investigate the incident and determined that there was unauthorized access to some personal data, including name and contact information."

No official statement from Ledger with details of the incident has been published at the time of writing.

As stated on the crypto wallet manufacturer's website, Global-e offers e-commerce solutions. Since October 9, 2023, Ledger has been using the Global-e platform to sell Ledger products through the official Ledger website.

In 2020, the company already reported a data compromise of over 270 thousand wallet buyers, including delivery addresses, their phone numbers, and email addresses. It was reported that after the incident, the personal information of 4,865 users from Russia, among others, became publicly available.

After the incident, for several years, Ledger users received phishing mailings electronically and even in paper form. The goal of these letters was to obtain additional information that could lead to the theft of cryptocurrency.

A major user data leak in 2025 also affected the American crypto exchange Coinbase, where, according to expert estimates, the damage amounted to several hundred million dollars.

What will happen to the regulation of the cryptocurrency market in Russia in 2026

Bitcoin turned 17 years old

Bitcoin as 'digital gold': what an investor should know

Preguntas relacionadas

QWhat company experienced a recent data breach affecting users of its crypto wallet?

ALedger, the manufacturer of a popular crypto wallet, experienced a data breach through its payment system, Global-e.

QWhich payment system was the source of the Ledger user data leak?

AThe data leak occurred through the Global-e payment system, which Ledger uses for e-commerce and product sales on its official website.

QWhat type of user information was compromised in the Ledger data breach according to the email shared by ZachXBT?

AThe compromised information included users' names and contact information.

QHad Ledger experienced a similar data security incident prior to this one?

AYes, in 2020, Ledger reported a data breach that compromised the information of over 270,000 customers, including delivery addresses, phone numbers, and email addresses.

QWhat was a long-term consequence for users after Ledger's 2020 data breach?

AFor several years after the 2020 incident, Ledger users received phishing messages via email and even physical mail, aimed at stealing additional information to facilitate cryptocurrency theft.

Lecturas Relacionadas

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

Coldcard Hardware Wallet Hacked: Losses Mount Due to Vulnerable Seed Generation A critical vulnerability in Coldcard hardware wallets has led to a continued wave of fund thefts. According to Galaxy Research, the total stolen has reached 1,367.05 BTC (approx. $88.6 million) from 4,585 addresses, a significant increase from the initial 594.5 BTC reported on July 30, 2026. Most of the stolen funds remain on the attackers' addresses. The issue is not with the current firmware, which Coinkite has updated, but with seed phrases generated on vulnerable devices between March 2021 and the release of fixed firmware versions. Due to a programmer error, devices switched from using a hardware random number generator to the software-based Yasmarang generator, which was initialized with publicly accessible data like the chip's serial number. This made the seed phrases predictable through offline brute-force attacks, meaning wallets remain at risk until funds are moved to a new wallet generated with the patched firmware. Affected devices include Mk2/Mk3 with firmware 4.0.1–4.1.9 (and up to 5.0.3), Mk4/Mk5 up to version 5.6.0, and Q models up to 1.5.0Q. The only exceptions are seeds created with a high-entropy method like at least 50 independent dice rolls or a strong unique BIP-39 passphrase. All other owners must generate a new seed on the fixed firmware and transfer their assets. A case highlighting the human impact involves a 39-year-old long-term investor who lost 2 BTC (approx. $130,000) in minutes. He had accumulated the Bitcoin over eight years through physical labor, viewing it as a financial lifeline and a retirement plan in a country suffering from hyperinflation. His story underscores that even conservative "buy and hold in cold storage" strategies can be compromised by such underlying technical flaws. From a technical perspective, this incident echoes historical failures where weak random number generators undermined cryptographic security, challenging the assumption that offline storage is automatically foolproof.

cryptonews.ruHace 1 hora(s)

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

cryptonews.ruHace 1 hora(s)

Trading

Spot
活动图片