avenvale.Breach library
Historical report · 2020English edition

Ledger 2020 breach: what to do next

Start here

Keep your recovery phrase private

Ledger warns that its support will never need your recovery phrase. Reject messages asking you to enter it into a website, share it, or move assets as part of a supposed security check.

Read the action guide

What was reported

HIBP records a 2020 Ledger breach involving email addresses and, for some records, names, phone numbers and physical addresses. The information later circulated publicly.

Email addressesNamesPhone numbersPhysical addresses

Selected reported fields. This is not confirmation that your information was involved.

What matters here

The source lists customer contact data, not wallet recovery phrases. Someone knowing that you bought a wallet can still use that fact to impersonate support.

Understand the informationHome address exposed online?

Related reports

Sources & context

Report metadata: Have I Been Pwned · CC BY 4.0. Avenvale provides the explanation and suggested response.

By Avenvale · Published · Updated

Public information, not a personal exposure check. A historical record does not establish current account access or a completed removal.