Ledger researchers have discovered a vulnerability in a certain Android chipset, putting mobile Web3 wallets at risk of physical attacks.

By: theblockbeats.news|2025/12/04 22:45:56
0
Share
copy

BlockBeats News, December 4th. According to The Block, Ledger has stated that a recently discovered vulnerability in a widely used Android smartphone processor chip could pose a risk to users relying on Web3 wallets. If the device is physically accessed by an attacker, they could exploit a hardware fault injection to bypass core security checks and take control of the chip. While this discovery does not affect Ledger hardware wallets, it highlights the risks of relying solely on a smartphone hot wallet to secure digital assets. The team tested MediaTek's Dimensity 7300 chip manufactured by TSMC to determine if electromagnetic fault injection could disrupt the earliest stages of the boot process.

Using open-source tools, they injected timely electromagnetic pulses to interfere with the chip's boot ROM, extract its runtime information, and identify the attack path. Subsequently, the team bypassed the chip's write command filtering mechanisms, overwrote the return address on the boot ROM stack, and executed arbitrary code in EL3 (the processor's highest privilege level), with the attack repeatable within minutes. Ledger stated that even the most advanced smartphone chips are vulnerable to physical attacks and are not suitable for safeguarding private keys, emphasizing the criticality of secure elements in self-custody of digital assets. The vulnerability was reported to MediaTek in May, and affected manufacturers have been notified.

-- Price

--

You may also like

What Is Futures Trading? Hours, Platforms, and How to Start Trade Futures(2026 Guide)

Learn how to start futures trading, understand trading hours, and choose the best futures trading platform. Includes real data, strategies, and ways to maximize returns with rebates.

The Rise of Composable RWA

27 billion RWA funds are undergoing a major reshuffle: U.S. Treasury bonds are "cooling off," while high-yield credit assets are quietly dominating the DeFi lending market with permissionless designs. This article reveals the explosive logic behind composable RWA.

MAGA Up 350% in 24 Hours, PEPE Up 46% in One Day: Which Memecoins Are Next in 2026?

MAGA +350% in 24hrs. PEPE +46% in one day. RAVE +4,500% then -90%. In 2026's memecoin market, the gains are real. So are the traps? Here's how to tell the difference before you buy.

RCD Espanyol vs Real Madrid: Can the Pericos Delay the Inevitable?

RCD Espanyol vs Real Madrid lineups, standings, and stats for May 3, 2026. Real Madrid visits RCDE Stadium as Barcelona closes in on the LALIGA title. Full preview inside.

MegaETH goes live with an FDV exceeding 2 billion USD. Which ecological projects are worth paying attention to?

The financing and team backgrounds of many projects in the MegaETH ecosystem are rich, making it the most prosperous ecosystem among unlaunched public chains, and it is currently the focus of attention for profit-seekers.

Dialogue with "Wood Sister" Cathie Wood: The next bull market is about to arrive

The correlation coefficient between gold and Bitcoin is only 0.14. In the past two cycles, gold started before Bitcoin, and this time is no different.

Contents

Popular coins

Latest Crypto News

Read more
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com