The situation
If you copped a Ledger from CryptoBilis in the last 90 days, stop everything. The hardware wallet OG, Ledger, is currently investigating a serious situation involving this Southeast Asian reseller. They’ve asked the partner to halt all sales and shipments while they look into reports that users are getting their bags drained.
The fallout
While Ledger hasn’t dropped a specific number on how many people are affected, the on-chain data is looking pretty grim. Independent investigators like tanuki42 and Specter estimate that between $72 million and $86 million worth of crypto across Bitcoin, Ethereum, and Tron might be involved in these thefts. Even though the official connection between these specific thefts and the CryptoBilis reseller is still being unpacked, the vibes are definitely off.
Security firm SEAL is already stepping in to help victims, and Binance co-founder Changpeng Zhao suggested this could be a classic supply-chain attack where the devices were tampered with before they even hit the customer's mailbox. Recent activity shows some of the stolen funds moving to Binance, so the chase is on.
Stay safe
Real talk: Ledger says their internal infrastructure wasn't compromised and that this seems isolated to this specific reseller. If you bought from them recently, Ledger is telling you not to set up the device. If you already have, it’s highkey time to move your assets to a brand-new wallet with a fresh recovery phrase. Don’t sleep on this—your security is the main character.
Why it matters
Supply-chain attacks are a nightmare because they bypass the security of the actual software. Always buy hardware wallets directly from the manufacturer’s official site to ensure no one has touched your device before you do. As always, none of this is financial advice; just stay alert and keep your assets on-chain safely.






