Ledger Wallet Tampering Suspected in Crypto Thefts
Ledger crypto wallet users lose over $86 million after spy hardware implants are discovered inside devices linked to reseller CryptoBillis.

Stock photo for illustration only, not from the actual event
- Ledger hardware wallets compromised in a massive $86 million crypto theft
- Hidden spy chips and embedded SIM cards intercept user seed phrases
- Attacks traced back to supply chain tampering via reseller CryptoBillis
The cryptocurrency community is facing a severe security scare as reports mount regarding Ledger hardware wallet users finding their accounts systematically drained. Suspicion has intensified around a supply chain vulnerability linked to a reseller named CryptoBillis, prompting Ledger to formally request that the vendor suspend all sales while an ongoing internal investigation takes place.
Photographs and video clips shared widely across social platforms like X and Threads reveal a disturbing hardware modification: a miniature circuit board is covertly sandwiched directly beneath the device display screen. This unauthorized implant is designed to intercept any visual data shown on the screen, most critically capturing the seed passphrase generated during the initial device setup process.

Stock photo for illustration only, not from the actual event
Beyond simply recording display data, the integrated hardware utilizes a built-in SIM card to transmit the stolen information back to the attacker in real time. This mechanism enables perpetrators to effortlessly siphon funds directly from victim accounts. Current estimates indicate that the bad actors behind this operation have successfully stolen over 86 million dollars worth of cryptocurrency from hundreds of distinct wallets.
This incident highlights the persistent dangers of supply chain attacks within the hardware security sector. Rather than exploiting digital software flaws in the manufacturer core infrastructure, malicious actors physically intercepted the devices during distribution channels. Users purchasing hardware-based digital asset storage must remain vigilant and exclusively rely on authorized direct-sale channels.
To date, Ledger maintains that there is no evidence indicating its corporate systems have been breached or that wallets purchased directly from the company have been compromised. Instead, the breach appears isolated to a supply chain attack primarily impacting users in Southeast Asia who purchased through the CryptoBillis reseller. Ledger has since released official guidelines to help customers inspect their hardware for signs of tampering.
Source: The Verge
Found something wrong in this article? Report an issue with this article
Comments
Leave a Comment