Incident case file
Sign in to watchZilliqa — Ledger app Schnorr nonce-generation flaw (HNP private key recovery)
1 views
Estimated loss
Victims identified
Investigation
Facts and investigation
Attacker: MISSING — not publicly disclosed by Zilliqa or exchange partner
Timeline: The signing flaw existed in every version of the Zilliqa Ledger application since its first release in 2019. The nonce generation routine allocated 40 bytes of randomness, correctly reduced them modulo the secp256k1 curve order to produce a 256-bit value, but then copied the wrong 32-byte segment into the nonce buffer — retaining 8 zero-padding bytes from the modular reduction and discarding 8 bytes of entropy. This fixed the 64 most significant bits of every nonce at zero (k < 2^192). With as few as 5 affected signatures available on-chain, an attacker can reconstruct the private key in seconds via lattice reduction (Hidden Number Problem). On July 19, 2026, on-chain activity consistent with active exploitation was observed. On July 20, Zilliqa disclosed a security incident involving an exchange partner's cold wallet and requested all exchanges to pause ZIL deposits and withdrawals. On July 21, the root cause was isolated to the Ledger app nonce-handling code and confirmed by reproducing key recovery against on-chain signatures — with KuCoin credited for this technical breakthrough. On July 22, Zilliqa published a full technical advisory. On July 24, Zilliqa published a dedicated Ledger Incident Hub (https://zilliqa.com/ledger-incident/) with user guidance; a zero-knowledge recovery path for affected accounts was under development. As of reporting, the amount stolen and the attacker identity remain undisclosed. All legacy (non-EVM) Zilliqa transactions remain suspended.
Sources and coverage
- Articlezilliqa.comhttps://zilliqa.com/ledger-incident/
- Articlecryptopolitan.comhttps://www.cryptopolitan.com/zilliqa-reports-theft-partner-cold-wallet/
- Articlecryptotimes.iohttps://www.cryptotimes.io/2026/07/20/zilliqa-reports-security-breach-zil-tokens-stolen-from-exchange-partners-cold-wallet/
- Articleground.newshttps://ground.news/article/zilliqa-suspends-zil-transfers-after-exchange-partner-cold-wallet-theft
- Articlekucoin.comhttps://www.kucoin.com/news/flash/zilliqa-security-incident-at-cex-partner-zil-stolen-from-cold-wallet
- Articlehacked.slowmist.iohttps://hacked.slowmist.io/
- Articlexcancel.comhttps://xcancel.com/zilliqa
Victim testimonies
No testimonies yet.
+ Add my testimony → (coming soon)