Trezor has revealed a vulnerability in the TROPIC01 secure element chip used in its Safe 7 hardware wallet. The company said the issue does not put user funds at risk.
Trezor and its sister company Tropic Square disclosed the flaw after an audit by Ledger's Donjon security team. The vulnerability affects one security layer in the device but leaves others intact. An attacker would need physical access to the wallet along with specialized laboratory equipment and advanced expertise to exploit the issue. Trezor reported no evidence of real-world attacks or compromised devices. The disclosure came from a collaboration between the rival hardware wallet makers. Trezor CEO Matej Žák said the open process sets a model for the industry. No action is required from users, the company stated, because the Safe 7 relies on multiple independent security measures rather than any single chip.