Bitcoin Forum
November 12, 2024, 02:06:22 PM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: Ledger Nano S security issues  (Read 587 times)
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 07, 2018, 01:14:07 PM
Last edit: February 09, 2018, 01:57:34 PM by krogothmanhattan
Merited by ChiBitCTy (2), mprep (1), burner2014 (1), Baltman (1)
 #1

I would read this article about the man in the middle attack!

https://news.bitcoin.com/ledger-addresses-man-in-the-middle-attack-that-threatens-millions-of-hardware-wallets/

https://ledgerwallet.us2.list-manage.com/track/click?u=bcc2126fb4bf3e02256d6c188&id=271fdbe596&e=d0d7444049




Dear Ledger user,

Protecting your security is of paramount importance to us. The Ledger Wallet Bitcoin Chrome application has just been updated to give you more control over the security of your transactions. The update is automatic and enables an essential new feature: verification of the reception address directly on the device.
  
 

This new feature is addressing a specific issue known in the crypto-community as the "Man in the Middle Attack". There has been a recent announcement of a malware proof of concept that could potentially infect the user’s computer - including, the Ledger Chrome application. In this scenario, an attacker could theoretically change the ‘receive’ address displayed on the (infected) computer’s screen within the Ledger Chrome application.

By enabling you to verify the receive address on your device (the only source you can trust), the updated Chrome app provides an additional peace-of-mind.  Always verify the receive address on your device before communicating it to a third party.

Your current funds are not at risk and do not require any action.

Besides this important software update, we are taking 3 specific actions to make sure our users are safe and secure, while remaining alert:  
•   Software updates: the Ledger Wallet Bitcoin Chrome application is the first to benefit from the on device receive address verification feature. It is available for Bitcoin and all other coins managed by the Chrome app. ETH and XRP apps will benefit from that new feature in the upcoming desktop global release.
•   Upgraded Bug Bounty program: we are growing quickly - and we are still developing and strengthening some of our behind the scenes processes. We value contributions from security researchers and the community, and will be making our Bug Bounty programs faster and more efficient.
•   Prevention: we are continuously working on developing resources and materials to help our user base better understand the threats they face and how they can best secure their assets. If not done already, we urge you to read our basic security principles ruleset.
Security is an arms race. We’re in it for the long haul and are prepared for it. At Ledger, we take our mission seriously and that mission is to protect you.

Thank you for your trust.

Eric Larcheveque
Ledger, CEO
ChiBitCTy
Legendary
*
Offline Offline

Activity: 2436
Merit: 3438



View Profile
February 09, 2018, 02:25:27 AM
 #2

If Ledger happens to stop by this post I'd like to say hello.  Now I'd like to request a piece of technology not from the 1990's.  My YakBak and TalkBoy are both more impressive pieces of technology and I'm pretty sure I didn't even know what a computer was then.  To anyone reading this and considering buying I highly suggest Trezor as I've heard much better things and I've tested Ledger and it's poo poo..  It does suck that that Trezor doesn't hold as many Alts but besides that I can promise it's better.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 01:57:10 PM
 #3

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 04:57:07 PM
 #4

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 05:43:43 PM
 #5

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 05:48:17 PM
 #6

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 06:08:26 PM
Merited by BTCMILLIONAIRE (1)
 #7

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 06:18:55 PM
 #8

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
So pretty much what I've been doing alright, gotcha. What was that talk about a new Trezor by the way? I can't find it on their website.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 06:24:02 PM
 #9

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
So pretty much what I've been doing alright, gotcha. What was that talk about a new Trezor by the way? I can't find it on their website.


Here ya go. https://preorder.trezor.io
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 06:28:04 PM
 #10

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
So pretty much what I've been doing alright, gotcha. What was that talk about a new Trezor by the way? I can't find it on their website.


Here ya go. https://preorder.trezor.io
Derp, I thought that was for the next batch of old Trezors. Thanks!
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 06:29:29 PM
 #11

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
So pretty much what I've been doing alright, gotcha. What was that talk about a new Trezor by the way? I can't find it on their website.


Here ya go. https://preorder.trezor.io
Derp, I thought that was for the next batch of old Trezors. Thanks!

Lol..the first batch of around 2000 sodl out in a few hours.
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 06:31:41 PM
 #12

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
So pretty much what I've been doing alright, gotcha. What was that talk about a new Trezor by the way? I can't find it on their website.


Here ya go. https://preorder.trezor.io
Derp, I thought that was for the next batch of old Trezors. Thanks!

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 06:36:57 PM
 #13

I agree Ty! 

Trezor is the best hardware out there IMO.

Cannot wait until the new one comes out by the end of this month.
Didn't Trezor have some issue where it basically exposed all vital information with minimal effort? Of course that would require it being stolen, but still.

Totally different when stolen. And I believe if that happens you can use your seed to reclaim your btc hopefully before thief can crack it
Do you know if Ledger had that issue as well? I've got both just for the heck of it, but I'm not sure which would make the most sense to use for larger stacks.

Not sure bro...for large amount of btc cold storage i use paper wallets...for the rest i use trezor. I use ledger only for alts
So pretty much what I've been doing alright, gotcha. What was that talk about a new Trezor by the way? I can't find it on their website.


Here ya go. https://preorder.trezor.io
Derp, I thought that was for the next batch of old Trezors. Thanks!

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.

Yeah...I hear ya..lots of people bought them as collectable items just like i did
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 07:10:01 PM
 #14

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.

Yeah...I hear ya..lots of people bought them as collectable items just like i did
I mostly ended up buying both Trezor and Ledger to support the industry.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 08:06:23 PM
 #15

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.

Yeah...I hear ya..lots of people bought them as collectable items just like i did
I mostly ended up buying both Trezor and Ledger to support the industry.

Nice gesture..i bought the ledger nano and blue..both trezor in black and white..left them all wrapped never to be used. Then bought nano and trezor again to be used. Now i am awaiting 6 new batch one Trezor T models
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 09, 2018, 08:52:59 PM
 #16

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.

Yeah...I hear ya..lots of people bought them as collectable items just like i did
I mostly ended up buying both Trezor and Ledger to support the industry.

Nice gesture..i bought the ledger nano and blue..both trezor in black and white..left them all wrapped never to be used. Then bought nano and trezor again to be used. Now i am awaiting 6 new batch one Trezor T models
Maybe I should pickup some backups in case I need to restore. How is the blue?
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 09, 2018, 08:57:33 PM
 #17

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.

Yeah...I hear ya..lots of people bought them as collectable items just like i did
I mostly ended up buying both Trezor and Ledger to support the industry.

Nice gesture..i bought the ledger nano and blue..both trezor in black and white..left them all wrapped never to be used. Then bought nano and trezor again to be used. Now i am awaiting 6 new batch one Trezor T models
Maybe I should pickup some backups in case I need to restore. How is the blue?

I never used...still wrapped up. I only have it as a collectable
ChiBitCTy
Legendary
*
Offline Offline

Activity: 2436
Merit: 3438



View Profile
February 10, 2018, 10:55:58 PM
 #18

Lol..the first batch of around 2000 sodl out in a few hours.
I subscribed for the notification, hope the next batch won't be sodl out just as fast.

Yeah...I hear ya..lots of people bought them as collectable items just like i did
I mostly ended up buying both Trezor and Ledger to support the industry.

Nice gesture..i bought the ledger nano and blue..both trezor in black and white..left them all wrapped never to be used. Then bought nano and trezor again to be used. Now i am awaiting 6 new batch one Trezor T models
Maybe I should pickup some backups in case I need to restore. How is the blue?

I've talked to a techy about Blue and they said they were extremely unimpressed. It looks cool as hell and I almost bought it for more than I should have at one point but thankfully I decided to hold off.  I didn't buy the ledger Nano direct from the manufacturer (like my boy Krogo here taught me to only do) so I won't keep anything on it but I did open it up to play with just for fun and to test out.  I think why I dislike the Nano is why my buddy didn't like the blue and it's just the software and hardware combined.  Ledger needs one platform and not these stupid apps.  The nano hardware, two buttons, doesn't hold a charge..it's just sloppy manufacturing.  I keep 90% on paperwallets and 10% between hardware wallets and hot wallets personally.
BTCMILLIONAIRE
Hero Member
*****
Offline Offline

Activity: 1358
Merit: 834



View Profile
February 11, 2018, 08:48:34 AM
 #19

Nice gesture..i bought the ledger nano and blue..both trezor in black and white..left them all wrapped never to be used. Then bought nano and trezor again to be used. Now i am awaiting 6 new batch one Trezor T models
Maybe I should pickup some backups in case I need to restore. How is the blue?

I never used...still wrapped up. I only have it as a collectable
Ah, I misread that since you used the nano and trezor.

Maybe I should pickup some backups in case I need to restore. How is the blue?

I've talked to a techy about Blue and they said they were extremely unimpressed. It looks cool as hell and I almost bought it for more than I should have at one point but thankfully I decided to hold off.  I didn't buy the ledger Nano direct from the manufacturer (like my boy Krogo here taught me to only do) so I won't keep anything on it but I did open it up to play with just for fun and to test out.  I think why I dislike the Nano is why my buddy didn't like the blue and it's just the software and hardware combined.  Ledger needs one platform and not these stupid apps.  The nano hardware, two buttons, doesn't hold a charge..it's just sloppy manufacturing.  I keep 90% on paperwallets and 10% between hardware wallets and hot wallets personally.
That really puts me on the fence. On one hand I want to support the industry even if I'm not going to use the hardware wallet. But on the other hand I don't want to support unimaginative products. What a dilemma.
krogothmanhattan (OP)
Cypher Hodl LLC
Legendary
*
Offline Offline

Activity: 2702
Merit: 3583


The Stone the masons rejected was the cornerstone.


View Profile WWW
February 11, 2018, 03:52:21 PM
 #20

Quote
That really puts me on the fence. On one hand I want to support the industry even if I'm not going to use the hardware wallet. But on the other hand I don't want to support unimaginative products. What a dilemma.

 Aye I hear you.

  But as a collector...I buy anything btc history related. I bought hardware wallets that are known to have been breached with bad reputation...will never use and load..but are part of Bitcoins journey.
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!