Zilliqa

Zilliqa

Blockchain platform enabling safe, efficient dApps

Overview

Zilliqa is a blockchain platform that lets developers build decentralized applications with a focus on safety and efficiency. It uses the ZIL token to power transactions and smart contract executions and earns revenue from transaction fees, staking, and mining rewards. Smart contracts run in Scilla, a peer-reviewed language designed to reduce vulnerabilities and improve security. It targets developers, enterprises, and creators by offering extensive developer resources and an ecosystem that includes financial products and NFT marketplaces to monetize dApps.

About Zilliqa

Simplify's Rating
Why Zilliqa is rated
C
Rated C on Competitive Edge
Rated B on Growth Potential
Rated D+ on Differentiation

Industries

Crypto & Web3

Financial Services

Company Size

11-50

Company Stage

Private

Total Funding

$1M

Headquarters

Singapore, Singapore

Founded

2017

Get referred to Zilliqa

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • The August 2026 address checker and migration audit show active incident containment and recovery execution.
  • Several exchanges already confirmed migration support, with first batch targeted for end-August 2026.
  • ZIL gained OKX X-Perps access on August 2, 2026, widening derivatives liquidity.

What critics are saying

  • The July 2026 Ledger flaw exposed private keys; legacy transactions are paused, crushing utility.
  • Upbit flagged ZIL as cautionary on July 22, 2026, threatening Korean liquidity and listings.
  • If exchanges refuse migration, Zilliqa 1.0 dies with trapped balances and abandoned users.

What makes Zilliqa unique

  • Zilliqa 2.0 keeps EVM compatibility while preserving Scilla tooling and developer infrastructure.
  • Its original sharding architecture and x-shard roadmap still target parallel execution at scale.
  • The migration program can rebase legacy holders onto one EVM production stack.

Help us improve and share your feedback! Did you find this helpful?

Funding

Total Funding

$1M

Above

Industry Average

Funded Over

0 Rounds

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

-9%

2 year growth

0%
CoinTrust.com
Aug 12th, 2026
Zilliqa launches address checker ahead of August migration.

Zilliqa launches address checker ahead of August migration. Exchange migrations planned as Ledger incident recovery continues. Reading Time: 3 mins read Zilliqa has activated an address checker as part of its ongoing recovery efforts following a Ledger-related security incident and the transition toward Zilliqa EVM. The new tool is intended to give users a way to verify relevant wallet information as the network prepares for a broader migration process. The move comes as an audit of Zilliqa's migration tool is set to begin. The audit is expected to provide an additional security review before the tool is used more widely to facilitate the transfer of assets and accounts during the recovery process. Zilliqa is also coordinating with several cryptocurrency exchanges, with the first group of exchange migrations targeted for completion by the end of August. The staged approach is designed to allow the network and participating platforms to validate the migration process before expanding it to a larger number of users. The address checker is now live, while an independent audit of the migration tool is being initiated to strengthen safeguards before the recovery and migration process expands. Address checker supports user verification. The launch of the address checker represents an early step in Zilliqa's recovery strategy. Users affected by the Ledger incident can use the tool to check address-related information connected with the migration process. Such verification is particularly important during a network recovery because users need confidence that their assets and wallet details are being associated with the correct addresses before migration activity begins. The checker also provides a mechanism for users to review information before taking further action. This can help reduce the risk of errors during a period when blockchain infrastructure and account records are being transitioned. The latest development follows Zilliqa's efforts to recover from the Ledger incident and restore normal operations involving Zilliqa EVM. The incident has required the network to introduce additional controls while examining the movement and status of potentially affected funds. Migration tool undergoing security review. Zilliqa said an audit of its migration tool is about to get underway. The review is an important component of the recovery process because the tool will play a central role in moving users and assets through the planned migration framework. A formal audit can help identify weaknesses before the migration tool is used at scale. It can also provide additional assurance to exchanges and users that the process has been reviewed for potential security issues. Several exchanges have already been confirmed as participants in the migration process. The first batch is being targeted for completion by the end of August, although the broader migration is expected to proceed in stages. The phased exchange migration is intended to provide a controlled path for platforms to transition while Zilliqa continues its security checks and recovery work. Stolen funds investigation continues. The migration effort is taking place alongside an investigation into funds associated with the Ledger incident. The continued probe is expected to remain an important part of Zilliqa's recovery strategy as the network works to establish the status of affected assets. The stolen funds investigation adds another layer of complexity to the migration. Any transition involving affected addresses must account for the possibility that assets connected with the incident may have moved through different wallets or transactions. By introducing an address verification system, auditing the migration tool and coordinating with exchanges before wider deployment, Zilliqa is taking a staged approach to the recovery process. The first exchange migrations planned for the end of August will provide an important test of the system under real operating conditions. Their progress could help determine how quickly additional platforms and users can participate in subsequent stages. Zilliqa's recovery strategy combines address verification, a security audit and phased exchange migrations as it works to restore confidence following the Ledger incident. The developments mark a significant step toward normalizing activity around Zilliqa EVM. However, the ongoing stolen-funds investigation means the recovery process is not yet complete. Further updates are expected as the migration audit progresses, exchange participation expands and investigators continue to assess the affected funds.

Crypto Fig
Jul 24th, 2026
Zilliqa halts native transactions after Ledger app flaw exposes private keys.

Zilliqa halts native transactions after Ledger app flaw exposes private keys. 17 hours ago Zilliqa has halted native ZIL transactions following the discovery of a critical vulnerability in the network's Ledger application, which allows the private keys of certain accounts to be recovered from public signatures on the blockchain. The incident was disclosed after an undisclosed amount of ZIL was stolen from an exchange partner's cold wallet, forcing the project to request centralized platforms to pause ZIL deposits and withdrawals to curb the movement of funds. According to Zilliqa, the flaw lies in the native transaction signing process using the Ledger app and does not affect EVM transactions or official SDKs. The project stated that the vulnerability had existed in app versions dating back to 2019, with on-chain exploitation signs detected on July 19, 2026, two days before the root cause was isolated. Exchange theft and initial response. Zilliqa publicly disclosed the incident on July 20, stating that an undisclosed amount of ZIL had been stolen from an exchange partner's cold wallet. At the time, the project did not specify the technical cause or the scale of damages, noting that an investigation was ongoing to determine the root cause and the scope of impact. CryptoFig has been made aware of a security incident involving one of its exchange partners, in which ZIL was stolen from a cold wallet. The incident is under active investigation, and CryptoFig is working with the relevant parties to establish the root cause and full scope. As a... - Zilliqa (@zilliqa) July 20, 2026 Exchanges were subsequently notified and requested to pause ZIL deposits and withdrawals as a precautionary measure to prevent the stolen funds from being transferred or sold through centralized platforms while the verification process continued. On July 21, Zilliqa updated that it found no evidence suggesting the incident originated from wallet management procedures or operational activities of the exchange. The investigation then shifted to a technical issue affecting transaction signing in a group of legacy ZIL1 wallets, before the project disclosed detailed information about the vulnerability in the Zilliqa Ledger app a day later. Affected wallets and transaction scope. Zilliqa limited the scope of impact to private keys that had been used to sign native Zilliqa transactions via a Ledger device. According to the project's advisory, accounts that have broadcast approximately 5 or more native transactions using the Zilliqa Ledger app should be considered compromised. This risk applies to signatures already publicly recorded on-chain, meaning subsequent software updates cannot reverse the exposure level of affected private keys. Users with accounts in this group must stop using the compromised keys, rather than merely updating the transaction-signing app. EVM transactions are unaffected, while transactions signed through official SDKs such as zilliqa-js, gozilliqa-sdk, and pyzil are also outside the scope of the flaw. The incident is therefore isolated to the native signing path of the Zilliqa Ledger app. Zilliqa has not disclosed the amount of ZIL stolen, the number of affected accounts, or the total value of assets held in vulnerable addresses. As a result, the overall financial extent of the incident remains unclear. Ledger app vulnerability. The root cause lies in how the Zilliqa Ledger app generates nonces for EC-Schnorr signatures on the secp256k1 curve. For each signature, the app needs to generate a fresh, random, and unpredictable 256-bit nonce; if the nonce is biased or lacks entropy, multiple signatures can expose the private key. The app's signing routine generates 40 bytes of randomness and then reduces this value modulo the order of the curve to produce a 256-bit number. However, when copying the result into the nonce buffer, the code mistakenly extracted 32 bytes from the 40-byte output, retaining 8 bytes of zero-padding while discarding 8 bytes of entropy. This flaw leaves the 64 most significant bits of each nonce fixed at zero. With approximately 5 or more affected signatures, the private key can be recovered in seconds on commodity hardware using Hidden Number Problem solving and lattice reduction techniques. Native transaction halt. Zilliqa halted native non-EVM transactions as a protective measure while finalizing a remediation plan. The move aims to prevent further asset losses from vulnerable accounts while restricting the movement of stolen ZIL through the native transaction flow. Affected accounts cannot be protected by a standard transfer transaction either. If a private key can already be recovered from on-chain data, an attacker holding the same key can detect and front-run the user's asset transfer transaction. Therefore, attempting to move funds independently may be ineffective and increase risk, while EVM transactions continue to remain unaffected. Remediation plan and user guidance. A fixed build of the Ledger app is being prepared in coordination with Ledger. This fix will restore the full nonce generation process to prevent the app from creating further weakened signatures in the future. However, the patch cannot reverse the risk for private keys that have already signed the required number of affected native transactions previously. Keys belonging to the affected group ultimately need to be retired from use. Zilliqa is finalizing a remediation plan to safeguard balances in associated accounts and will publish separate instructions for users who have signed native Zilliqa transactions using Ledger. Until official guidance is provided, users are advised not to act independently and to monitor only the project's official channels. KuCoin was credited by Zilliqa for assisting in identifying the root cause within the Ledger app's nonce generation process, recovering affected private keys from on-chain data, and confirming ongoing exploitation activity. However, Zilliqa has not publicly confirmed whether KuCoin was the exchange partner that lost ZIL in the initial announcement.

Crypto News Flash
Jul 22nd, 2026
Zilliqa faces fallout from critical Ledger wallet flaw.

Zilliqa faces fallout from critical Ledger wallet flaw. All news is rigorously fact-checked and reviewed by leading blockchain experts and seasoned industry insiders. * Zilliqa suspended native transactions after identifying a critical vulnerability in its Ledger wallet application. * The flaw could allow attackers to reconstruct private keys from transaction signatures generated over several years. * Exchanges have restricted ZIL transfers while the network prepares recovery instructions for affected users. * The issue is limited to Zilliqa's native Ledger application and does not affect Ledger hardware or the EVM network. Zilliqa has suspended all native (non-EVM) transactions after confirming a critical security vulnerability in its Ledger hardware wallet application, a flaw that could allow attackers to recover users' private keys from publicly available blockchain signatures. The emergency measure comes as the project works with security researchers and exchanges to contain the incident and develop a recovery process for potentially affected users. According to the announcement in X, the vulnerability is limited to Zilliqa's native blockchain and does not impact its EVM-compatible network. Ledger hardware devices themselves also remain unaffected, with the issue confined to the software implementation of the Zilliqa Ledger application. Investigation traced the flaw to a years-old cryptographic bug. According to Zilliqa, the vulnerability originated from an implementation error in its use of Schnorr signatures, the cryptographic scheme used to authorize native transactions. Rather than generating fully random nonces for each signature, a buffer-copy mistake caused the highest 64 bits of every nonce to be overwritten with zeros. That significantly reduced the randomness protecting each signature, creating conditions under which attackers could reconstruct private keys using lattice reduction techniques after observing enough transactions on-chain. The project said the vulnerable code had existed in every version of the Zilliqa Ledger application since its initial release in 2019, meaning the flaw remained undiscovered for nearly six years. The investigation accelerated after suspicious on-chain activity was detected on July 19. Working alongside exchange partners, including KuCoin, engineers traced the attacks to the Ledger application's signing process before publicly confirming the vulnerability on July 21. One day later, Zilliqa suspended all native transactions while mitigation efforts began. Only a specific group of users is considered at risk. The vulnerability does not affect every ZIL holder equally. Based on the project's guidance, the highest-risk group includes users who: * Used a Ledger device for native (non-EVM) ZIL transactions. * Signed transactions between 2019 and July 2026. * Generated approximately five or more signatures with the same private key. The project emphasized that several parts of its ecosystem remain unaffected: * Ledger hardware devices were not compromised. * Zilliqa's EVM-compatible blockchain continues operating normally. * Software wallets are not impacted by the vulnerability. Zilliqa has urged potentially affected users not to move funds or attempt independent recovery until official migration instructions are published, warning that premature action could complicate the recovery process. Exchanges move quickly to contain potential fallout. The disclosure prompted immediate action across cryptocurrency trading platforms. South Korea's Upbit classified ZIL as a cautionary asset, suspended deposits and withdrawals, and placed the token under a delisting review through mid-August under the country's investor protection framework. Other centralized exchanges also temporarily restricted native ZIL transfers while evaluating the potential impact of both the Ledger application vulnerability and reports of a separate theft involving ZIL held in an offline cold wallet managed by one of the ecosystem's exchange partners. Although the incidents are distinct, their close timing intensified concerns across the market. Investor sentiment deteriorated following the disclosure. ZIL declined roughly 5% over the previous 24 hours and about 17% over the past week, falling to around $0.0024 as traders assessed the scale of the security incident. Recovery now depends on replacing exposed wallets. Unlike many software vulnerabilities, this incident extends beyond deploying a patched application. Because the vulnerable transaction signatures have already been permanently recorded on the blockchain, updating the Ledger app cannot eliminate the exposure associated with signatures created over the past six years. The next phase of the response will therefore focus on migrating affected users to newly generated wallets rather than restoring the compromised ones. That process is expected to require coordination between Zilliqa, Ledger, cryptocurrency exchanges and wallet holders before native network activity can fully normalize.

SpendNode
Jul 22nd, 2026
Zilliqa Ledger app flaw exposes private keys, Upbit flags ZIL.

Zilliqa Ledger app flaw exposes private keys, Upbit flags ZIL. Key analysis. A vulnerability in Zilliqa's Ledger app could expose private keys, prompting Upbit to flag ZIL as a cautionary asset. Here is what holders need to know. 4m 50s audio AI narration. Useful for scanning on the move. Names and tickers may be mispronounced. Zilliqa disclosed a security flaw in its Ledger application that could expose users' private keys, and South Korean exchange Upbit responded by flagging ZIL as a cautionary asset. The disclosure was reported by WuBlockchain on July 22, 2026, and it puts a spotlight on a risk many holders assume hardware wallets remove entirely. The core issue is not the Ledger device itself but the software layer that lets it sign Zilliqa transactions. A hardware wallet keeps the private key isolated on a secure chip. The companion app is the bridge between that chip and the blockchain. If that bridge is built wrong, the isolation that makes a hardware wallet worth buying can leak. The flaw sits in the app, not the silicon. Ledger devices are designed so the private key never leaves the secure element. Every coin or token needs its own app to format transactions in the way that chain expects. For Zilliqa, that app is what carries the defect. According to the disclosure, the flaw could expose private keys rather than simply mishandling a signature, which is the more severe of the two outcomes a wallet bug can produce. This distinction matters. A bug that produces a bad signature costs you a failed transaction. A bug that can surface the private key costs you the wallet. Once a private key is exposed, an attacker can drain every asset that key controls, and no amount of device security recovers it after the fact. Zilliqa's own guidance in cases like this is direct: stop using the affected app, and if there is any chance a key was exposed, move funds to a fresh address generated on unaffected software. That is the same playbook the industry has followed after past app-layer incidents, because a compromised key cannot be patched, only abandoned. Upbit's cautionary flag carries weight in Korea. Upbit is the largest exchange in South Korea and one of the highest-volume venues in the world. Its cautionary or investment-warning designations are watched closely by Korean retail traders, who make up a large share of ZIL's spot activity. A flag from Upbit is not a delisting, but it signals that the exchange sees elevated risk and wants users to trade with care. The timing tells its own story. Upbit acted quickly after the disclosure, which suggests the exchange treated the key-exposure angle as material rather than routine. For a token whose liquidity leans heavily on Korean order books, an Upbit warning can move price and volume on its own, separate from the technical severity of the bug. The trust chain behind every hardware wallet. The Zilliqa case is a reminder that a hardware wallet is a system, not a single object. The device protects the key. The firmware controls the device. The coin app formats transactions. The desktop or mobile client relays them. A weak link anywhere in that chain can undo the strength of the chip. Recent months have made the point repeatedly. Consensys disclosed that a North Korea-linked developer touched MetaMask code, and SecondFi announced it would wind down after a $2.6M ADA theft tied to a wallet flaw. Different projects, same lesson: the software surface around your keys is where most real-world losses begin. For anyone spending crypto directly from their own wallet, this is not abstract. Self-custody cards and non-custodial Ledger CL style setups put the user in full control, which is the point, but that control includes responsibility for the app layer. The counterparty risk of a custodial provider is traded for the operational risk of your own signing stack. Neither is zero. Steps for ZIL holders now. Holders who use the Zilliqa Ledger app should treat the disclosure as a prompt to act, not wait. The conservative path is to stop signing with the affected app, confirm the latest guidance from Zilliqa's official channels before doing anything on-chain, and if there is any doubt about exposure, generate a new address on trusted software and move funds there. Traders relying on Upbit should read the cautionary flag as a live signal. It does not mean ZIL is worthless, and it does not mean the token itself is broken. It means the exchange has judged the situation risky enough to warn its base, and thin summer liquidity can amplify whatever comes next. Overview. Zilliqa disclosed a flaw in its Ledger app that could expose private keys, the most severe class of wallet bug, and Upbit responded by flagging ZIL as a cautionary asset on July 22, 2026. The device chip is not the weak point; the companion app is. Holders should stop using the affected app and, where exposure is possible, move funds to a fresh address. The broader takeaway is that a hardware wallet is only as safe as the full software chain around it. Recommended reading. Sources. Disclaimer This article is provided for informational purposes only and does not constitute financial advice. All fee, limit, and reward data is based on issuer-published documentation as of the date of verification. Discuss this analysis with the community on X. Recommended cards. Search. Quick Filters. Country. Advanced Filters

Inmediate Pte Ltd
Dec 18th, 2025
Zilliqa Technical Analysis & Price Forecast - December 2025

Zilliqa technical analysis & Price forecast - December 2025. Zilliqa has been quietly working through its development roadmap, but the market hasn't exactly rewarded those efforts yet. With ZIL/USDT hovering around $0.0045785 and down nearly 6% in the past day, traders are watching closely to see whether this is just another dip or something more concerning. What's Been Happening With Zilliqa November brought the network's 0.19.0 hard fork - probably the most significant update in recent months. The big change? Staking unbonding periods dropped from 14 days down to 7. That might not sound revolutionary, but for anyone who's had their funds locked up, it's a welcome breath of fresh air. Liquidity improves, and there's less friction for stakers who want flexibility. Validator penalties also got stricter, which should theoretically tighten network security and performance. In theory, that's great. In practice, the price action has been underwhelming. Broader crypto market weakness has overshadowed these technical wins, leaving ZIL stuck in the mud despite genuine progress under the hood. There's also been movement on the ecosystem front. Zilliqa partnered with Rarible to launch an incentive pool aimed at driving NFT engagement and stress-testing network capacity. It's the kind of move that could pay dividends down the road, but right now it's not moving the needle. And there are still some staking bugs that need ironing out - fixes are expected late December, which could help restore validator confidence if executed smoothly. The Technical Picture Isn't Pretty Let's be honest - the charts are looking rough. On the 4-hour timeframe, the RSI is sitting around 21.40. That's deeply oversold territory, the kind of level that usually precedes either a bounce or complete capitulation. The Simple Moving Average is at $0.00499, and the Exponential Moving Average is at $0.004947. Both are well above current price, which tells you everything you need to know about momentum: it's bearish, and it's strong. The MACD histogram is negative, though the signal and MACD lines are starting to converge. That's not a reversal signal yet, but it hints that things might be stabilizing - or at least slowing down the bleeding. Support and resistance zones matter a lot right now. Immediate resistance is clustered around $0.00465 to $0.00480, with stronger resistance up near $0.00522 to $0.00538. On the downside, support is fragile but present around $0.00463 and $0.00454. These are levels where buyers showed up before, however briefly. Short-term, there's a chance for a bounce toward $0.00470 or $0.00480 if buyers step in to take advantage of oversold conditions. But if there's no catalyst - no news, no momentum shift - price could easily retest support near $0.00454. Break below that, and Inmediate Pte Ltd is looking at $0.00440 or lower. Looking into early 2026, the picture doesn't get much brighter. Multiple forecasts point to further downside, with some analysts eyeing a drop toward $0.00444 by mid-January. Trading ranges between $0.00380 and $0.00490 keep coming up, suggesting a prolonged consolidation phase with limited upside unless something fundamental changes. There are a few things that could shift sentiment. If the staking and validator issues get resolved cleanly later this month, that removes a layer of operational risk. News of fresh partnerships or increased institutional adoption - especially tied to compliant infrastructure like smart account modules - could also spark renewed interest. On the flip side, risks are plentiful. Continued downward pressure without reclaiming key resistance levels could trigger more selling. Broader market weakness, regulatory headwinds, or thin liquidity in trading pairs would all make things worse. And if there are delays or stumbles in executing the roadmap, investor confidence could evaporate quickly. Here's how things might play out, with rough probabilities attached: Bearish Continuation ( | 55-65%): Price drops below $0.00454 and heads toward $0.00440 or lower. Low volume and negative sentiment persist. Consolidation & Gradual Recovery ( | 25-35%): Price stabilizes between $0.00460 and $0.00500, reclaiming near-term resistance as RSI drifts back toward neutral. Bullish Breakout ( | 10-15%): Price breaks above $0.00520 with strong volume, likely driven by positive news or protocol developments. Zilliqa's technical setup is defensively bearish right now, but oversold conditions leave the door open for a bounce or short squeeze. If you're thinking about entering, it might be wise to wait for confirmation - watch for support to hold near $0.00460 and a reclaim of $0.00500 before committing. On the other hand, a breakdown below $0.00450 could lead to further slides until something external shifts the narrative. Keep an eye on those staking updates in late December - they could be the spark that determines which direction this thing goes.

Recently Posted Jobs

Sign up to get curated job recommendations

There are no jobs for Zilliqa right now.

Find jobs on Simplify and start your career today

We update Zilliqa's jobs every few hours, so check again soon! Browse all jobs →