TLDR: Ledger uncovered a physical attack path that enables full control over MediaTek’s Dimensity 7300 chip. The flaw cannot be patched because the vulnerable boot ROM is hard-coded into the processor. Attackers with physical access can dump memory and run custom code at the chip’s highest privilege level. Mobile wallets face elevated risk because compromised [...] The post Research Shows MediaTek Phones Exposed to Weakness Threatening Wallets: Ledger appeared first on Blockonomi.TLDR: Ledger uncovered a physical attack path that enables full control over MediaTek’s Dimensity 7300 chip. The flaw cannot be patched because the vulnerable boot ROM is hard-coded into the processor. Attackers with physical access can dump memory and run custom code at the chip’s highest privilege level. Mobile wallets face elevated risk because compromised [...] The post Research Shows MediaTek Phones Exposed to Weakness Threatening Wallets: Ledger appeared first on Blockonomi.

Research Shows MediaTek Phones Exposed to Weakness Threatening Wallets: Ledger

TLDR:

  • Ledger uncovered a physical attack path that enables full control over MediaTek’s Dimensity 7300 chip.
  • The flaw cannot be patched because the vulnerable boot ROM is hard-coded into the processor.
  • Attackers with physical access can dump memory and run custom code at the chip’s highest privilege level.
  • Mobile wallets face elevated risk because compromised devices expose private keys to hardware-level attacks.

Smartphone security has long centered on software threats, but new findings show a deeper risk inside the silicon. Ledger researchers revealed an “unpatchable” flaw in a recent MediaTek chip used widely across Android devices.

The issue allows full device compromise when attackers gain physical access to a lost or stolen phone. This raises new concerns for users who rely on mobile wallets for crypto self-custody.

Ledger Research Details Hardware Attack Path in MediaTek Chips

Ledger’s Donjon team evaluated the MediaTek Dimensity 7300 chip, which appears in many popular smartphones. 

The group focused on early boot stages where security controls enforce strict memory protections before Android loads. These controls are critical, since private keys stored on compromised devices could be exposed during low-level execution. 

According to Ledger’s blog, researchers found that attackers could bypass these safeguards with fault-injection techniques.

The Donjon team used electromagnetic fault injection to disrupt the boot ROM’s security checks. This approach targets instructions running at the chip’s highest privilege levels. 

Ledger’s blog reports that the attack let researchers read memory regions normally blocked by hardware filtering. The method produced full dumps of the boot ROM and associated system memory during startup.

With this information, the researchers explored paths to gain code execution inside the boot ROM. They targeted a WRITE command that restricts access to protected RAM. 

By timing electromagnetic pulses at precise intervals, the team bypassed the security filters and modified the return address on the boot ROM stack. This step allowed Return Oriented Programming, a technique often used in advanced exploitation.

Further testing showed that disabling the memory management unit let them execute custom code on the chip. Ledger noted that the attack succeeded once every few minutes due to rapid reboot cycles. This level of access granted full control at EL3, the processor’s highest privilege tier.

Mobile Wallets Face Elevated Risk From Physical Compromise

The flaw matters because smartphones remain central to everyday crypto use. Ledger’s blog highlights that lost or stolen phones expose users to hardware attacks beyond malware or remote exploits. 

Many mobile wallets rely on a phone’s secure execution environment, yet the discovery shows hardware defenses are still vulnerable to chip-level interference.

The MediaTek boot ROM cannot receive software patches because it is hard-coded into the processor. Ledger disclosed the issue to MediaTek in May 2025, and the company notified affected smartphone vendors. 

Devices using the Dimensity 7300 remain susceptible if attackers can open the phone and access the board directly.

The findings reinforce Ledger’s long-standing argument that critical private keys should reside in dedicated hardware wallets. The research also shows that even modern chips built on advanced process nodes remain exposed to physical manipulation. 

Wallet developers may need to reassess how mobile environments fit into their threat models.

The post Research Shows MediaTek Phones Exposed to Weakness Threatening Wallets: Ledger appeared first on Blockonomi.

Market Opportunity
Helium Mobile Logo
Helium Mobile Price(MOBILE)
$0.0001842
$0.0001842$0.0001842
+1.26%
USD
Helium Mobile (MOBILE) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Trust Wallet issues security alert: It will never ask users for their mnemonic phrase or private key.

Trust Wallet issues security alert: It will never ask users for their mnemonic phrase or private key.

PANews reported on January 17 that Trust Wallet issued a security warning on its X platform, stating that it will never ask users for their mnemonic phrases or
Share
PANews2026/01/17 21:10
Trust Wallet Alerts Users After Security Incident

Trust Wallet Alerts Users After Security Incident

The post Trust Wallet Alerts Users After Security Incident appeared on BitcoinEthereumNews.com. Key Points: Trust Wallet issues alert after $7 million theft from
Share
BitcoinEthereumNews2026/01/17 21:43
Tokenized Assets Shift From Wrappers to Building Blocks in DeFi

Tokenized Assets Shift From Wrappers to Building Blocks in DeFi

The post Tokenized Assets Shift From Wrappers to Building Blocks in DeFi appeared on BitcoinEthereumNews.com. RWAs are rapidly moving on-chain, unlocking new opportunities for investors and DeFi protocols, according to a new report from Dune and RWAxyz. Tokenized real-world assets (RWAs) are moving beyond digital versions of traditional securities to become key building blocks of decentralized finance (DeFi), according to the 2025 RWA Report from Dune and RWAxyz. The report notes that Treasuries, bonds, credit, and equities are now being used in DeFi as collateral, trading instruments, and yield products. This marks tokenization’s “real breakthrough” – composability, or the ability to combine and reuse assets across different protocols. Projects are already showing how this works in practice. Asset manager Maple Finance’s syrupUSDC, for example, has grown to $2.5 billion, with more than 30% placed in DeFi apps like Spark ($570 million). Centrifuge’s new deJAAA token, a wrapper for Janus Henderson’s AAA CLO fund, is already trading on Aerodrome, Coinbase and other exchanges, with Stellar planned next. Meanwhile, Aave’s Horizon RWA Market now lets institutional users post tokenized Treasuries and CLOs as collateral. This trend underscores a bigger shift: RWAs are no longer just copies of traditional assets; instead, they are becoming core parts of on-chain finance, powering lending, liquidity, and yield, and helping to close the gap between traditional finance (TradFi) and DeFi. “RWAs have crossed the chasm from experimentation to execution,” Sid Powell, CEO of Maple Finance, says in the report. “Our growth to $3.5B AUM reflects a broader shift: traditional financial services are adopting crypto assets while institutions seek exposure to on-chain markets.” Investor demand for higher returns and more diversified options is mainly driving this growth. Tokenized Treasuries proved there is strong demand, with $7.3 billion issued by September 2025 – up 85% year-to-date. The growth was led by BlackRock, WisdomTree, Ondo, and Centrifuge’s JTRSY (Janus Henderson Anemoy Treasury Fund). Spark’s $1…
Share
BitcoinEthereumNews2025/09/18 06:10