PANews reported on December 4th that, according to The Block, Ledger has discovered a vulnerability in a widely used Android smartphone processor chip. Users relying on software-based Web3 wallets are at risk if their devices are physically accessed by attackers. Ledger's Donjon team discovered that hardware fault injection can bypass core security checks and gain control of the chip. While this discovery does not affect Ledger's hardware wallet, it highlights the dangers of relying solely on smartphone hot wallets for digital asset security. The team tested MediaTek's Dimensity 7300 chip manufactured by TSMC to determine whether electromagnetic fault injection could disrupt the earliest stages of the boot process. Using open-source tools, they injected timely electromagnetic pulses into the chip's boot ROM to obtain its operational information and identify the attack path. Subsequently, the team bypassed the filtering mechanism in the chip's write commands and overwrote the return address on the boot ROM stack, enabling arbitrary code execution at EL3 (the processor's highest privilege level), and the attack could be repeated within minutes. Ledger stated that even the most advanced smartphone chips are vulnerable to physical attacks and are unsuitable as environments for protecting private keys, reiterating that secure elements are crucial for the self-custody of digital assets. The vulnerability was notified to MediaTek in May, and the supplier has notified affected manufacturers.PANews reported on December 4th that, according to The Block, Ledger has discovered a vulnerability in a widely used Android smartphone processor chip. Users relying on software-based Web3 wallets are at risk if their devices are physically accessed by attackers. Ledger's Donjon team discovered that hardware fault injection can bypass core security checks and gain control of the chip. While this discovery does not affect Ledger's hardware wallet, it highlights the dangers of relying solely on smartphone hot wallets for digital asset security. The team tested MediaTek's Dimensity 7300 chip manufactured by TSMC to determine whether electromagnetic fault injection could disrupt the earliest stages of the boot process. Using open-source tools, they injected timely electromagnetic pulses into the chip's boot ROM to obtain its operational information and identify the attack path. Subsequently, the team bypassed the filtering mechanism in the chip's write commands and overwrote the return address on the boot ROM stack, enabling arbitrary code execution at EL3 (the processor's highest privilege level), and the attack could be repeated within minutes. Ledger stated that even the most advanced smartphone chips are vulnerable to physical attacks and are unsuitable as environments for protecting private keys, reiterating that secure elements are crucial for the self-custody of digital assets. The vulnerability was notified to MediaTek in May, and the supplier has notified affected manufacturers.

Ledger researchers have discovered a vulnerability in an Android chip that exposes mobile Web3 wallets to physical attack risks.

2025/12/04 22:28

PANews reported on December 4th that, according to The Block, Ledger has discovered a vulnerability in a widely used Android smartphone processor chip. Users relying on software-based Web3 wallets are at risk if their devices are physically accessed by attackers. Ledger's Donjon team discovered that hardware fault injection can bypass core security checks and gain control of the chip. While this discovery does not affect Ledger's hardware wallet, it highlights the dangers of relying solely on smartphone hot wallets for digital asset security.

The team tested MediaTek's Dimensity 7300 chip manufactured by TSMC to determine whether electromagnetic fault injection could disrupt the earliest stages of the boot process. Using open-source tools, they injected timely electromagnetic pulses into the chip's boot ROM to obtain its operational information and identify the attack path. Subsequently, the team bypassed the filtering mechanism in the chip's write commands and overwrote the return address on the boot ROM stack, enabling arbitrary code execution at EL3 (the processor's highest privilege level), and the attack could be repeated within minutes. Ledger stated that even the most advanced smartphone chips are vulnerable to physical attacks and are unsuitable as environments for protecting private keys, reiterating that secure elements are crucial for the self-custody of digital assets. The vulnerability was notified to MediaTek in May, and the supplier has notified affected manufacturers.

Market Opportunity
Helium Mobile Logo
Helium Mobile Price(MOBILE)
$0.0001839
$0.0001839$0.0001839
+1.09%
USD
Helium Mobile (MOBILE) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Trust Wallet issues security alert: It will never ask users for their mnemonic phrase or private key.

Trust Wallet issues security alert: It will never ask users for their mnemonic phrase or private key.

PANews reported on January 17 that Trust Wallet issued a security warning on its X platform, stating that it will never ask users for their mnemonic phrases or
Share
PANews2026/01/17 21:10
Crypto Market Cap Edges Up 2% as Bitcoin Approaches $118K After Fed Rate Trim

Crypto Market Cap Edges Up 2% as Bitcoin Approaches $118K After Fed Rate Trim

The global crypto market cap rose 2% to $4.2 trillion on Thursday, lifted by Bitcoin’s steady climb toward $118,000 after the Fed delivered its first interest rate cut of the year. Gains were measured, however, as investors weighed the central bank’s cautious tone on future policy moves. Bitcoin last traded 1% higher at $117,426. Ether rose 2.8% to $4,609. XRP also gained, rising 2.9% to $3.10. Fed Chair Jerome Powell described Wednesday’s quarter-point reduction as a risk-management step, stressing that policymakers were in no hurry to speed up the easing cycle. His comments dampened expectations of more aggressive cuts, limiting enthusiasm across risk assets. Traders Anticipated Fed Rate Trim, Leaving Little Room for Surprise Rally The Federal Open Market Committee voted 11-to-1 to lower the benchmark lending rate to a range of 4.00% to 4.25%. The sole dissent came from newly appointed governor Stephen Miran, who pushed for a half-point cut. Traders were largely prepared for the move. Futures markets tracked by the CME FedWatch tool had assigned a 96% probability to a 25 basis point cut, making the decision widely anticipated. That advance positioning meant much of the potential boost was already priced in, creating what analysts described as a “buy the rumour, sell the news” environment. Fed Rate Decision Creates Conditions for Crypto, But Traders Still Hold Back Andrew Forson, president of DeFi Technologies, said lower borrowing costs would eventually steer more money toward digital assets. “A lower cost of capital indicates more capital flows into the digital assets space because the risk hurdle rate for money is lower,” he noted. He added that staking products and blockchain projects could become attractive alternatives to traditional bonds, offering both yield and appreciation. Despite the cut, crypto markets remained calm. Open interest in Bitcoin futures held steady and no major liquidation cascades followed the Fed’s decision. Analysts pointed to Powell’s language and upcoming economic data as the key factors for traders before building larger positions. Powell’s Caution Tempers Immediate Impact of Fed Rate Move on Crypto Markets History also suggests crypto rallies after rate cuts often take time. When the Fed eased in Dec. 2024, Bitcoin briefly surged 5% cent before consolidating, with sustained gains arriving only weeks later. This time, market watchers are bracing for a similar pattern. Powell’s insistence on caution, combined with uncertainty around inflation and growth, has kept short-term volatility muted even as sentiment for risk assets improves. BitMine’s Tom Lee this week predicted that Bitcoin and Ether could deliver “monster gains” in the next three months if the Fed continues on an easing path. His view echoes broader expectations that liquidity-sensitive assets will outperform once the cycle gathers pace. For now, the crypto sector has digested the Fed’s move with restraint. Traders remain focused on signals from the central bank’s October meeting to determine whether Wednesday’s step marks the beginning of a broader policy shift or just a one-off adjustment
Share
CryptoNews2025/09/18 13:14
Trust Wallet Alerts Users After Security Incident

Trust Wallet Alerts Users After Security Incident

The post Trust Wallet Alerts Users After Security Incident appeared on BitcoinEthereumNews.com. Key Points: Trust Wallet issues alert after $7 million theft from
Share
BitcoinEthereumNews2026/01/17 21:43