The post Ledger confirms data breach exposing customer information appeared on BitcoinEthereumNews.com. Ledger says there was a data breach at its payment processorThe post Ledger confirms data breach exposing customer information appeared on BitcoinEthereumNews.com. Ledger says there was a data breach at its payment processor

Ledger confirms data breach exposing customer information

3 min read

Ledger says there was a data breach at its payment processor Global-e, announced on January 5, 2026.

Ledger emailed customers whose information was affected to say personal data, such as names and contact information, had been accessed improperly. Global-e took action upon noticing unusual activity on the part of its network and hired independent forensic experts to investigate.

Ledger announces a third-party processor breach

Ledger told customers that Global-e, which processes its payments, had noticed suspicious activity in part of its network. Global-e took immediate action to block the relevant systems when it became aware of suspicious activity in its cloud environment. Independent forensic experts have been hired to investigate.

The investigations concluded that some personal data, involving names and contact information, were breached. Ledger has refused to divulge the total number of users affected or the exact reason behind the breach.

It is the second time that customers have been affected by unauthorized access at Ledger, after the first in April 2025. Ledger relies on Global-e to process payments and maintain contact information. Relying on third-party vendors creates more avenues for data to be accessed.

Global-e breach leaks customer contact information

The exposed data includes customer names and contact information. Ledger did not specify whether the breach included email addresses, phone numbers, physical addresses, or other types of contact information. Previous breaches have exposed various combinations of these.

It does not involve wallet recovery seed phrases, private keys, or any cryptocurrency holdings. No user funds were directly taken during the Global-e breach.

Past Ledger data breaches have aided phishing efforts. For instance, a breach in an e-commerce database in 2020 exposed approximately one million email addresses and detailed contact information of about 9,500 customers.

Ledger’s security history since 2020

Its first major incident was in June 2020, when an unauthorized person accessed the e-commerce and marketing database via a third-party API that had been misconfigured. Approximately one million email addresses were leaked with detailed contact information for 9,500 customers, including postal addresses, phone numbers, and names.

It drained between $484,000 and $600,000 in cryptocurrency from the users who were affected during a period of five hours. SushiSwap, Zapper, MetalSwap, and Harvest Finance were among the dApps affected by the compromised library being loaded. Within 40 minutes from the time it noticed the bug, Ledger’s team was able to pinpoint and fix the issue.

ZachXBT warns against trusting hardware wallet companies

Following Ledger’s latest disclosure, blockchain researcher ZachXBT posted a community alert. In response to a user asking where to safely store one’s funds, ZachXBT concluded that none of these hardware wallet companies can be trusted.

He suggested using fake information when purchasing hardware wallets in order to protect privacy. The idea is that giving false information can make it harder for the attackers to link the real identities to cryptocurrency holdings. If hackers breach a customer database, fake contact details dilute targeted phishing.

Get seen where it counts. Advertise in Cryptopolitan Research and reach crypto’s sharpest investors and builders.

Source: https://www.cryptopolitan.com/ledger-discloses-customer-data-leak/

Market Opportunity
Particl Logo
Particl Price(PART)
$0.2519
$0.2519$0.2519
-2.51%
USD
Particl (PART) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.
Tags:

You May Also Like

eurosecurity.net Expands Cryptocurrency Asset Recovery Capabilities Amid Rising Investor Losses

eurosecurity.net Expands Cryptocurrency Asset Recovery Capabilities Amid Rising Investor Losses

New York, NY/ GlobePRWire / Feb 6, 2026 – eurosecurity.net announces the expansion of its cryptocurrency asset recovery services, reflecting increased demand from
Share
CryptoReporter2026/02/06 17:24
Ethereum to boost scalability and roll out Fusaka upgrade on Dec 3

Ethereum to boost scalability and roll out Fusaka upgrade on Dec 3

Ethereum's Fusaka update may happen on December 3, based on the date set in the latest developer call.
Share
Cryptopolitan2025/09/19 17:00
Google Cloud taps EigenLayer to bring trust to agentic payments

Google Cloud taps EigenLayer to bring trust to agentic payments

The post Google Cloud taps EigenLayer to bring trust to agentic payments appeared on BitcoinEthereumNews.com. Two days after unveiling AP2 — a universal payment layer for AI agents that supports everything from credit cards to stablecoins — Google and EigenLayer have released details of their partnership to bring verifiability and restaking security to the stack, using Ethereum. In addition to enabling verifiable compute and slashing-backed payment coordination, EigenCloud will support insured and sovereign AI agents, which introduce consequences for failure or deviation from specified behavior. Sovereign agents are positioned as autonomous actors that can own property, make decisions, and execute actions independently — think smart contracts with embedded intelligence. From demos to dollars AP2 extends Google’s agent-to-agent (A2A) protocol using the HTTP 402 status code — long reserved for “payment required” — to standardize payment requests between agents across different networks. It already supports stablecoins like USDC, and Coinbase has demoed an agent checkout using its Wallet-as-a-Service. Paired with a system like Lit Protocol’s Vincent — which enforces per-action policies and key custody at signing — Google’s AP2 with EigenCloud’s verifiability and cross-chain settlement could form an end-to-end trust loop. Payments between agents aren’t as simple as they are often made to sound by “Crypto x AI” LARPs. When an AI agent requests a payment in USDC on Base and the payer’s funds are locked in ETH on Arbitrum, the transaction stalls — unless something abstracts the bridging, swapping and delivery. That’s where EigenCloud comes in. Sreeram Kannan, founder of EigenLayer, said the integration will create agents that not only run on-chain verifiable compute, but are also economically incentivized to behave within programmable bounds. Through restaked operators, EigenCloud powers a verifiable payment service that handles asset routing and chain abstraction, with dishonest behavior subject to slashing. It also introduces cryptographic accountability to the agents themselves, enabling proofs that an agent actually executed the task it…
Share
BitcoinEthereumNews2025/09/19 03:52