AI is disrupting book publishing--are you using it tactfully? Learn the good, the bad, and the scary at the Get Published Summit AI Edition (June 22-26). 35+ expert sessions + a FREE copy of Book Marketing Secrets 6th Ed! Claim your free ticket: https://t.co/r22KbRBQiv 📚✍️
2025 Children’s Book Mastery Summit is Back! The BEST ideas for planning, writing, editing, publishing and marketing your children’s books. Register for FREE. https://t.co/J8HMS8szH5 #CBM2025
#BookLaunch@JonMilligan's book: "Validate Your Offer" officially launches today! Learn how to sell your message before you create it! Grab ur copy now (it's available in three different formats: Kindle, Paperback, and Hardcover). https://t.co/SjKD9dV4qY #ValidateYourOfferBook
Celebrate w/ me the launch of #AmberV's book: "Infinite Impact". If u are able, share this w/ ur audience. Purchase the book (and don't forget to sign up to receive the bonuses): https://t.co/Ft1kbYipzx #BookLaunch, #booksandbusiness, #ngngteam, #womeninbusiness, #AmberV
#BookLaunch Alert! Mark your calendars for May 7th! Why? #AmberV is launching her book: "Infinite Impact". Stay tuned for more launch alerts because bonuses will be given away 4 free when you decide to purchase the book on launch day! #booksandbusiness#ngngteam#womeninbusiness
Have you marked your calendars for May 7th yet? #AmberV is launching her book: "Infinite Impact". Stay tuned for more launch alerts because bonuses will be given away for free when you decide to purchase the book on launch day! #booksandbusiness#ngngteam#womeninbusiness
On May 7, by dear friend Amber Vilhauer (a mother & extraordinary businesswoman), is launching her book: "Infinite Impact: The Entrepreneur's Strategic Guide To Books & Business Success". This book is unique (authored by a unique, strong, genuine, earnest & inspirational woman).
Releasing a book without first cultivating an audience sets the stage for potential failure. I'll share with you why in next week's List Building Summit (April 29 to May 3). Learn effective List Building techniques at the: https://t.co/v1JfV3jiiE
Calling all authors! Join me at the Book Sales School Summit from Mar 18-22. Learn how to increase your royalties and build a profitable book business. Don't miss out - register now! https://t.co/ZYllFufxs9 #SalesSchoolSummit#BookBusiness
We are 100% focused on following up to last week’s security incident, making sure incidents like this are prevented in the future, and that the ecosystem remains safe.
We are aware of approximately $600k in assets impacted, stolen from users blind signing on EVM DApps.
Ledger will make sure victims affected will be made whole, and are committing to work with the DApp ecosystem to allow Clear Signing, and no longer allow Blind Signing with Ledger devices by June 2024.
Read more:
We affirm our CEO & Chairman @_pgauthier’s promise https://t.co/6ScBNshwvV to make sure victims who had their assets stolen on Dec 14th, 2023 by the attacker together with angel drainer are made whole, including users who are not Ledger customers.
We commit, by any way possible, including gestures of goodwill, to make sure this is done by the end of February, 2024. We are already in contact with many impacted users and are actively working through the specifics with them.
We remind users that if you signed a transaction on affected DApps Dec 14th, 2023, best security practices would recommend revoking any authorized transactions to further reduce impact from the malicious code.
We are announcing that by June 2024, users will no longer be able to Blind Sign with Ledger devices. Our commitment is to work with the community and DApp ecosystem to allow Clear Signing so users can verify all transactions on Ledger devices before signing. This will lead to a new standard to protect users and encourage Clear Signing across DApps.
Front-end attacks have happened many times before and will continue to plague our ecosystem. The only foolproof countermeasure for this type of attack is to always verify what you consent to on your device.
This is only possible with Clear Signing: meaning you can see and verify exactly what you sign on a secure display.
If the ecosystem continues to allow Blind Signing, users remain at risk.
We ask DApp developers to support the Clear Signing security brick. Please reach out to us through our Developer portal (https://t.co/KGfFIuQFAs) or Discord (https://t.co/wAsoun1Xlh) so we can work together to add Clear Signing to your DApp.
We have detailed the cause of this hack and our security team’s response to this in a Ledger Connect Kit Incident Report on our Ledger tech and security blog:
https://t.co/pqrhAxGl28
We remind you your Ledger devices and Ledger Live have always been secure to use, and were not made vulnerable by this exploit.
If you believe you may have been affected by the attack, please reach out via our Ledger Help Center to find out more:
https://t.co/g4YV2inCDL
Thank you again, stay safe and Happy Holidays.
FINAL TIMELINE AND UPDATE TO CUSTOMERS:
4:49pm CET:
Ledger Connect Kit genuine version 1.1.8 is being propagated now automatically. We recommend waiting 24 hours until using the Ledger Connect Kit again.
The investigation continues, here is the timeline of what we know about the exploit at this moment:
- This morning CET, a former Ledger Employee fell victim to a phishing attack that gained access to their NPMJS account.
- The attacker published a malicious version of the Ledger Connect Kit (affecting versions 1.1.5, 1.1.6, and 1.1.7). The malicious code used a rogue WalletConnect project to reroute funds to a hacker wallet.
- Ledger’s technology and security teams were alerted and a fix was deployed within 40 minutes of Ledger becoming aware. The malicious file was live for around 5 hours, however we believe the window where funds were drained was limited to a period of less than two hours.
- Ledger coordinated with @WalletConnect who quickly disabled the the rogue project.
- The genuine and verified Ledger Connect Kit version 1.1.8 is now propagating and is safe to use.
- For builders who are developing and interacting with the Ledger Connect Kit code: connect-kit development team on the NPM project are now read-only and can’t directly push the NPM package for safety reasons.
- We have internally rotated the secrets to publish on Ledger’s GitHub.
- Developers, please check again that you’re using the latest version, 1.1.8.
- Ledger, along with @Walletconnect and our partners, have reported the bad actor’s wallet address. The address is now visible on @chainalysis. @tether has frozen the bad actor’s USDT.
- We remind you to always Clear Sign with your Ledger. What you see on the Ledger screen is what you actually sign. If you still need to blind sign, use an additional Ledger mint wallet or parse your transaction manually.
- We are actively talking with customers whose funds might have been affected, and working proactively to help those individuals at this time.
- We are filing a complaint and working with law enforcement on the investigation to find the attacker.
- We’re studying the exploit in order to avoid further attacks. We believe the attacker’s address where the funds were drained is here: 0x658729879fca881d9526480b82ae00efc54b5c2d
Thank you to @WalletConnect, @Tether_io, @Chainalysis, @zachxbt, and the whole community that helped us and continue to help us identify and solve this attack.
Security will always prevail with the help of the whole ecosystem.
UPDATE: The genuine Ledger Connect Kit 1.1.8 is now fully propagated. Ledger and WalletConnect can confirm that the malicious code was deactivated. You are now safe to use your Ledger Connect Kit. Reminder that that we always encourage clear signing.
Discover the principles, practices, and insider secrets of professional services sales pros in 77 instant-access “microchapters” that will help you market your smarts, monetize your message, and expand your reach and revenue. Great new book by @dnewman: https://t.co/gLZx6q24PI
So many great ideas packed into @dnewman’s new book https://t.co/H47IaFzMG0 Grab a copy today and then head over to https://t.co/gLZx6q24PI for all the bonuses #marketing#sales#selling#consulting
New book from my friend & mentor @dnewman is launching today - it will help you land better clients, bigger deals, and higher fees. Check out all the free bonuses at https://t.co/gLZx6q24PI and order now: https://t.co/Vb6DK5rwZ6
Discover the principles, practices, and insider secrets of professional services sales pros in 77 instant-access “microchapters” that will help you market your smarts, monetize your message, and expand your reach and revenue. @dnewman's new book: https://t.co/gLZx6q24PI