|

ZenGo identifies “double-spending” vulnerability in major cryptocurrency wallets

  • ZenGo has discovered a vulnerability to double-spend attacks in some of the most popular cryptocurrency wallets. 
  • The vulnerability, dubbed “BigSpender” was discovered in wallets like Ledger Live, Bread (BRD) and Edge. 
  • Ledger and BRD have confirmed that they have fixed the issue. 

ZenGo, a mobile wallet company, stated that most of the cryptocurrency wallets in the market are vulnerable to double-spending attacks. The vulnerability, dubbed “BigSpender” was discovered in wallets like Ledger Live, Bread (BRD), and Edge. 

Double-spending is a potential exploit in digital assets that allows bad actors to spend the same coins more than once. It works by exploiting a flaw in Bitcoin’s replace-by-fee (RBF) feature, a failsafe that lets users swap an unconfirmed transaction with one that has a higher fee. ZenGo CEO, Ouriel Ohayon, said that the BigSpender vulnerability can cause significant financial losses and make a victim’s wallet completely unusable. 

ZenGo disclosed the vulnerability to Edger, BRD and Ledger about three months ago and received Bug Bounty rewards from Ledger and BRD. Both companies have already fixed the issue. Ledger’s VP of Marketing, Benoît Pellevoizin, said: 

Everything has been fixed in the most recent update that was released two days ago.

Pellevoizin noted that unconfirmed transactions will now be highlighted and users will be informed of them. He added that Ledger Live does not use funds from unconfirmed transactions when sending funds.

Author

Rajarshi Mitra

Rajarshi Mitra

Independent Analyst

Rajarshi entered the blockchain space in 2016. He is a blockchain researcher who has worked for Blockgeeks and has done research work for several ICOs. He gets regularly invited to give talks on the blockchain technology and cryptocurrencies.

More from Rajarshi Mitra
Share:

Markets move fast. We move first.

Orange Juice Newsletter brings you expert driven insights - not headlines. Every day on your inbox.

By subscribing you agree to our Terms and conditions.

Editor's Picks

XRP steadies above $1.90 support as fund inflows and retail demand rise

Ripple (XRP) is stable above support at $1.90 at the time of writing on Monday, after several attempts to break above the $2.00 hurdle failed to materialize last week. Meanwhile, institutional interest in the cross-border remittance token has remained steady.

Cardano struggles to extend gains as retail interest wanes despite Midnight's NIGHT token launch

Cardano ticks higher after a bearish weekend, struggling to extend an upcycle within a descending wedge pattern. On-chain data shows an increase in trading volume and user activity after the Midnight side chain token launch.

Crypto Today: Bitcoin, Ethereum recover as XRP remains supported by ETF inflows

Bitcoin is trending up toward the pivotal $90,000 level at the time of writing on Monday, which marks four consecutive days of gains. Altcoins, including Ethereum and Ripple, are also rebounding above key short-term support levels.

Bitcoin nears $90,000 as recovery hopes clash with institutional outflows

Bitcoin is approaching the $90,000 resistance level at the time of writing on Monday, raising hopes of a short-term recovery. However, the bullish recovery is being challenged by weakening institutional demand, as evidenced by outflows from Spot ETFs.

Orange Juice Newsletter – Smart insights by real people. Every day.

A free newsletter highlighting key market trends to help traders stay a step ahead. Daily insights on the most relevant trading topics, compiled by our experts in an easy-to-read format so you never miss an important move.

Bitcoin: Fed delivers, yet fails to impress BTC traders

Bitcoin (BTC) continues de trade within the recent consolidation phase, hovering around $92,000 at the time of writing on Friday, as investors digest the Federal Reserve’s (Fed) cautious December rate cut and its implications for risk assets.