According to Zilliqa's official statement, a critical vulnerability in the Ledger application was discovered affecting ZIL transactions, with active exploitation observed on July 19th. The flaw impacts all Ledger app versions from 2019 to 2026 and makes private keys vulnerable to recovery attacks. In response, Zilliqa suspended ZIL transactions, though EVM transactions remain unaffected.
Following the disclosure, South Korea-based exchanges Upbit and Bithumb classified ZIL as a "warning asset" and suspended deposits and withdrawals for the token. Both exchanges warned that trading support for ZIL could be terminated if the security issue is not resolved within a reasonable timeframe or if adequate investor protection measures are not implemented.