Hi, we just want to add that this is an old vulnerability that has been already fixed. All new devices are shipped with a fixed bootloader.
Learn more about our Security approach and our responsible disclosure program👇
https://trezor.io/security/
Trezor already fixed part of the problem Grand exploited in later versions of its firmware. The wallets no longer copy or move the key and PIN into RAM at all. Pavol Rusnak, co-founder and CTO of SatoshiLabs, which makes Trezor wallets, said it now stores them in a protected part of flash that isn’t affected during firmware upgrades.
deleted by author
Corresponding article:
https://www.theverge.com/2022/1/24/22898712/crypto-hardware-wallet-hacking-lost-bitcoin-ethereum-nft
Posted here:
Cracking a $2 million crypto wallet #10903 https://www.theverge.com/2022/1/24/22898712/crypto-hardware-wallet-hacking-lost-bitcoin-ethereum-nft
deleted by author
deleted by author
deleted by author