{"id":102291,"date":"2023-05-31T21:00:44","date_gmt":"2023-05-31T21:00:44","guid":{"rendered":"https:\/\/dripp.zone\/news\/index.php\/2023\/05\/31\/ledgers-new-wallet-recovery-feature-sparks-community-backlash-crypto-news\/"},"modified":"2023-05-31T21:00:45","modified_gmt":"2023-05-31T21:00:45","slug":"ledgers-new-wallet-recovery-feature-sparks-community-backlash-crypto-news","status":"publish","type":"post","link":"https:\/\/dripp.zone\/news\/ledgers-new-wallet-recovery-feature-sparks-community-backlash-crypto-news\/","title":{"rendered":"Ledger&#8217;s New Wallet Recovery Feature Sparks Community Backlash\n &#8211; Crypto News"},"content":{"rendered":"<p><\/p>\n<div>\n<p>Ledger, the leading provider of hardware wallets, is mired in controversy over its recently-launched Ledger Recover feature. <\/p>\n<p>The optional service allows users to recover their seed phrase \u2013 the string of words that grants access to a crypto wallet \u2013 by verifying their identities with the Ledger.  Initially available to residents of the European Union, the United Kingdom, Canada, and the United States, users are required to submit their passport or national identity card for verification.<\/p>\n<p>The process involves encrypting the seed phrase into three fragments, which are then sent to Coincover, Ledger, and an independent backup service provider.  To regain access to their wallets, users must pass ID verification, and two out of the three companies will send the fragments back to the user&#8217;s Ledger device.  Once combined and decrypted, the seed phrase is revealed.<\/p>\n<p>However, concerns have been raised regarding potential risks, including collusion between the companies involved, identity theft, and the creation of a system with access to users&#8217; personal identification information akin to a traditional bank.<\/p>\n<h4>Community Reactions<\/h4>\n<p>Mudit Gupta, Polygon&#8217;s chief information security officer, called it a <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/Mudit__Gupta\/status\/1658368265687556097\">&#8220;horrible idea&#8221;<\/a>,<\/p>\n<p>Another user said that Ledger has essentially created a <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/maxdesalle\/status\/1658377103560040448\">bank account<\/a> With extra steps, as any entity with access to users&#8217; identity documents could potentially access people&#8217;s wallets.<\/p>\n<p>&#8220;The firmware always had full access to the secret key &#8212; the Secure Element is for passive storage, the firmware retrieves the key and uses it. Glad to see a dangerous firmware update being rejected by the community,&#8221; said <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/el33th4xor\/status\/1658609026626646023\">Emin Gun Sirer<\/a>founder and CEO of Ava Labs.<\/p>\n<p>Ethereum advocate Eric Conner <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/econoar\/status\/1658574140612423681\">questioned<\/a> why Ledger did not create two different firmware updates \u2013 one with the backup recovery option, and one without it.<\/p>\n<h4>Privacy Concerns<\/h4>\n<p>Privacy advocates have also voiced concerns about the exposure of private keys through Ledger&#8217;s API.<\/p>\n<p>Anton Bukov, the co-founder of DEX aggregation protocol 1inch, <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/k06a\/status\/1658375564154089478\">said<\/a> that Ledger is &#8220;breaking the main hardware wallet security assumption&#8221; by having an API which exposes users private keys.<\/p>\n<p>The sentiment was echoed by Binance CEO Changpeng Zhao, who <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/cz_binance\/status\/1658453341339283457\">expressed<\/a> his dismay at private keys being sent out of the hardware wallet.<\/p>\n<p>The service is currently limited to Ledger&#8217;s Nano X devices, with future plans to support the Nano S Plus and Stax, while the Nano S will not be supported.  Users will be limited to three monthly and ten annual access attempts.<\/p>\n<p>The company defended the feature on a Twitter Space attended by its top management.<\/p>\n<p>\u201cThis is the way that the next hundreds of millions of people will actually onboard crypto,\u201d said Ledger CEO Pascal Gauthier.  \u201cI&#8217;m sorry, but the piece of paper is a thing of the past and Ledger Recover is a thing of the future.\u201d<\/p>\n<\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ledger, the leading provider of hardware wallets, is mired in controversy over its recently-launched Ledger Recover feature. The optional service allows users to recover their seed phrase \u2013 the string of words that grants access to a crypto wallet \u2013 by verifying their identities with the Ledger. Initially available to residents of the European Union, [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":102292,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[274,273,272,244,266,271,268,270,269,267],"class_list":["post-102291","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-de-fi","tag-crypto-finance","tag-decentralized-finance","tag-liquidity","tag-metamask","tag-pancake","tag-slippage","tag-sushiswap","tag-tronlink","tag-trust-wallet","tag-uniswap"],"_links":{"self":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/102291","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/comments?post=102291"}],"version-history":[{"count":1,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/102291\/revisions"}],"predecessor-version":[{"id":102293,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/posts\/102291\/revisions\/102293"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media\/102292"}],"wp:attachment":[{"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/media?parent=102291"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/categories?post=102291"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dripp.zone\/news\/wp-json\/wp\/v2\/tags?post=102291"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}