Outdated Ledger App Vulnerable to Transaction Replacement Attacks
OneKey, a cryptocurrency wallet provider, has reportedly reproduced a transaction replacement attack on an outdated version of Ledger's Ethereum app. According to reports, this vulnerability allowed hackers to manipulate transactions and replace legitimate ones with fake ones.
The issue was first discovered in March 2022, but it seems that some users are still using the affected software. OneKey claims to have successfully replicated the attack on an outdated version of Ledger's Ethereum app.
It is worth noting that OneKey has not specified whether any user data or funds were compromised during the test. However, this vulnerability highlights the importance of keeping software up-to-date and secure in order to prevent potential losses.