First the coldcard retirement attack, now the ledger supply chain attack. Hearts go out to the folks who used these devices.
In the case of coinkite, we learned how outspoken, arrogant, and duplicitous the founder rodolfo novak acted regularly. Including how he used many fake accounts on social media to prop up the image of "the best" and controlled several websites which acted like friendly guides and pointed users at his own compromised products.
What will we learn about ledger?
This seems like a more sophisticated attack that took a lot of money or expertise. Before today I would have laughed if someone mentioned a screen reading wire, esim, and supply chain attack. Surprised.
submitted by /u/intnsity[link] [comments]