OneKey demonstrated how an outdated Ethereum app could sign a transaction different from the one shown on a Ledger device, but the wallet maker says the vulnerability had already been fixed.
Source: [Decrypt](https://decrypt.co/376750/no-ledger-wasnt-hacked-ethereum-app-exploit)