Ledger CTO Responds to 'Vulnerability' FUD: Issue Fixed Before Disclosure, Users Can Safely Use by Updating in Time

律动BlockBeats
律动BlockBeats|Aug 27, 2026 03:06
BlockBeats News, August 27 — Charles Guillemet, Chief Technology Officer of hardware wallet manufacturer Ledger, published a statement addressing recent 'FUD' targeting Ledger. A smart contract security company claimed to have discovered a vulnerability in Ledger's Ethereum application. Guillemet clarified that while the Ethereum application previously had a vulnerability related to certain Clear Signing processes, the issue was identified by Ledger's in-house security research team, Donjon, using AI-driven vulnerability research tools. The vulnerability was fixed and deployed two weeks ago. Users simply need to update their Ledger device firmware and applications promptly to ensure protection. The security company contacted Ledger's bug bounty program only after the fix was completed and did not follow responsible disclosure protocols. They failed to communicate with the bug bounty team and later implied in their public statements that the issue remained unresolved. Such actions are not genuine security research but rather attempts to create panic for attention. AI is transforming the cybersecurity landscape, enabling both attackers and defenders to enhance efficiency. However, AI-driven security research can only truly improve the ecosystem's safety when basic security principles like responsible disclosure and pre-publication verification are followed. Guillemet concluded by reminding Ledger users to keep their device firmware, Ledger applications, and related software up to date to automatically receive the latest security fixes and research advancements. Users should not be influenced by related 'FUD'; simply updating software and maintaining good security practices will ensure safety. [Original Link]
+4
Mentioned
Share To

Timeline

HotFlash

APP

X

Telegram

Facebook

Reddit

CopyLink

Hot Reads