Ledger Debunks FUD, Users Already Protected with Firmware Updates
Charles Guillemet, Ledger's Chief Technology Officer (CTO), has addressed recent 'FUD' (Fear, Uncertainty, and Doubt) circulating online about the company's security.
A smart contract security firm had claimed to have discovered a vulnerability in Ledger's Ethereum app. However, Guillemet revealed that the issue was indeed present, but it was already identified and fixed by Ledger's security research team, Donjon, using AI-driven tools two weeks prior to the announcement.
The fix has been deployed, and users can protect themselves by updating their device firmware and app to the latest versions. The security company in question contacted Ledger only after the issue had been resolved and did not follow responsible disclosure procedures, Guillemet stated.
Guillemet emphasized that this behavior was not genuine security research but rather an attempt to create panic for attention. He highlighted the growing importance of AI in network security, which can be used by both attackers and defenders to enhance their capabilities.
To ensure continued safety, Ledger users are advised to keep their device firmware, app, and related software up-to-date, receiving automatic security patches and research findings.