Bitcoin Forum
November 12, 2024, 07:36:13 AM *
News: Check out the artwork 1Dq created to commemorate this forum's 15th anniversary
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Sending BTC with old Ledger Nano Firmware  (Read 230 times)
o_e_l_e_o
In memoriam
Legendary
*
Offline Offline

Activity: 2268
Merit: 18746


View Profile
January 05, 2021, 06:30:06 PM
 #21

It used a change address with a weird derivation path, which would result in your coins being "lost" until you know which exact derivation path has been used. Afterwards the attacker would blackmail you with that information he has.
It was actually worse than that. If the attacker set the derivation path to null, then the Ledger would accept any address as the change address, whether it was part of an account from that wallet or not. The attacker could send all the change from that transaction to himself.

But, as I said above, this has been long patched and the software versions that OP is using are not susceptible to this vulnerability.
Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!