|

ZenGo identifies “double-spending” vulnerability in major cryptocurrency wallets

  • ZenGo has discovered a vulnerability to double-spend attacks in some of the most popular cryptocurrency wallets. 
  • The vulnerability, dubbed “BigSpender” was discovered in wallets like Ledger Live, Bread (BRD) and Edge. 
  • Ledger and BRD have confirmed that they have fixed the issue. 

ZenGo, a mobile wallet company, stated that most of the cryptocurrency wallets in the market are vulnerable to double-spending attacks. The vulnerability, dubbed “BigSpender” was discovered in wallets like Ledger Live, Bread (BRD), and Edge. 

Double-spending is a potential exploit in digital assets that allows bad actors to spend the same coins more than once. It works by exploiting a flaw in Bitcoin’s replace-by-fee (RBF) feature, a failsafe that lets users swap an unconfirmed transaction with one that has a higher fee. ZenGo CEO, Ouriel Ohayon, said that the BigSpender vulnerability can cause significant financial losses and make a victim’s wallet completely unusable. 

ZenGo disclosed the vulnerability to Edger, BRD and Ledger about three months ago and received Bug Bounty rewards from Ledger and BRD. Both companies have already fixed the issue. Ledger’s VP of Marketing, Benoît Pellevoizin, said: 

Everything has been fixed in the most recent update that was released two days ago.

Pellevoizin noted that unconfirmed transactions will now be highlighted and users will be informed of them. He added that Ledger Live does not use funds from unconfirmed transactions when sending funds.

Author

Rajarshi Mitra

Rajarshi Mitra

Independent Analyst

Rajarshi entered the blockchain space in 2016. He is a blockchain researcher who has worked for Blockgeeks and has done research work for several ICOs. He gets regularly invited to give talks on the blockchain technology and cryptocurrencies.

More from Rajarshi Mitra
Share:

Markets move fast. We move first.

Orange Juice Newsletter brings you expert driven insights - not headlines. Every day on your inbox.

By subscribing you agree to our Terms and conditions.

Editor's Picks

Crypto Today: Bitcoin, Ethereum, XRP trade under pressure amid mixed technical signals 

Bitcoin is trading above $90,000 at the time of writing on Tuesday amid sticky risk-off sentiment in the broader crypto market. Altcoins, including Ethereum and Ripple, are paring losses, holding above key support levels.

Bitcoin steadies above $90,000 as Fed rate-cut optimism lifts market sentiment

Bitcoin price holds above $90,000 on Tuesday after finding support around this key level. Firm expectations that the Fed will cut interest rates on Wednesday boosts investors' appetite for riskier assets such as BTC.

Pepe stalls as on-chain, derivatives data flash bullish signals

Pepe (PEPE) trades in the red on Tuesday after failing to secure a daily close above the $0.00000500 psychological level on Monday. The technical outlook remains mixed as the meme coin consolidates. 

Chainlink Price Forecast: LINK holds firm as reserves hit 16-month low

Chainlink price steadies near $13.70 on Tuesday, finding support around the key level. On-chain data signals bullish sentiment, as LINK exchange reserves fall to their lowest level since August 2024.

Orange Juice Newsletter – Smart insights by real people. Every day.

A free newsletter highlighting key market trends to help traders stay a step ahead. Daily insights on the most relevant trading topics, compiled by our experts in an easy-to-read format so you never miss an important move.

Crypto Today: Bitcoin, Ethereum, XRP pare gains despite increasing hopes of upcoming Fed rate cut

Bitcoin (BTC) is steadying above $91,000 at the time of writing on Friday. Resistance at $94,150 capped recovery on Wednesday, but in the meantime, bulls have contained downside risks above $90,000.