Close-up of Trezor Safe 7 wallet highlighting TROPIC01 chip vulnerability without fund risk
Close-up of Trezor Safe 7 wallet highlighting TROPIC01 chip vulnerability without fund risk
Gambar dihasilkan oleh AI

Trezor discloses TROPIC01 chip flaw in Safe 7 wallet

Gambar dihasilkan oleh AI

Trezor has revealed a vulnerability in the TROPIC01 secure element chip used in its Safe 7 hardware wallet. The company said the issue does not put user funds at risk.

Trezor and its sister company Tropic Square disclosed the flaw after an audit by Ledger's Donjon security team. The vulnerability affects one security layer in the device but leaves others intact. An attacker would need physical access to the wallet along with specialized laboratory equipment and advanced expertise to exploit the issue. Trezor reported no evidence of real-world attacks or compromised devices. The disclosure came from a collaboration between the rival hardware wallet makers. Trezor CEO Matej Žák said the open process sets a model for the industry. No action is required from users, the company stated, because the Safe 7 relies on multiple independent security measures rather than any single chip.

Apa yang dikatakan orang

Initial reactions on X highlight Trezor's disclosure of the TROPIC01 chip vulnerability in the Safe 7 wallet, discovered by Ledger's Donjon team, with emphasis that it requires physical access and specialized equipment, posing no risk to user funds due to multi-layer security. Official Trezor accounts urged against FUD and stressed independent protection layers, while Ledger-affiliated voices praised the collaborative disclosure process. Some users expressed skepticism about Trezor's hardware reliability and shipping practices, but most posts remained neutral, confirming no real-world exploits and funds' safety.

Artikel Terkait

Illustration of a cryptocurrency wallet hack on SecondFi draining 2.4 million ADA
Gambar dihasilkan oleh AI

SecondFi wallet exploit drains 2.4 million in ADA

Dilaporkan oleh AI Gambar dihasilkan oleh AI

SecondFi, the Cardano wallet formerly known as Yoroi, confirmed losses of 16 million ADA worth about 2.4 million dollars from 374 user wallets in three attacks. The firm secured an additional 129 million ADA before further drains occurred. A flaw in its proprietary wallet generation software caused the breach.

Zcash token ZEC dropped sharply after developers disclosed a vulnerability in the Orchard shielded pool that could have allowed undetected counterfeiting of tokens. The flaw, present since 2022, was found on May 29 using an AI model and patched by June 1. No evidence of exploitation was found, though privacy features prevent cryptographic proof.

Dilaporkan oleh AI

Security engineer Taylor Hornby used an AI model to identify a critical vulnerability in the Zcash cryptocurrency that had remained undetected since 2022. The flaw could have permitted unlimited creation of counterfeit tokens. Hornby has now added Monero to his list of planned audits.

New analysis reveals that over 30 percent of Bitcoin's supply sits in wallets vulnerable to future quantum attacks, with exchanges holding a disproportionate share of the exposure. A startup has proposed a soft-fork solution to protect even dormant holdings, including Satoshi Nakamoto's estimated 1.1 million coins.

Dilaporkan oleh AI

SecondFi says forensic investigations into a $2.4 million Cardano wallet exploit are complete. Users could begin receiving recovered assets in about two weeks.

Zcash has recovered about 45 percent from its recent low after developers proposed the Ironwood upgrade to address a supply verification issue. The privacy-focused cryptocurrency traded near $437 on Monday, though it remains down 22 percent for the week. The move comes after a patched bug in the Orchard pool triggered last week's sell-off.

Dilaporkan oleh AI

Para eksekutif di West Pharmaceutical Services mengungkapkan detail mengenai pelanggaran keamanan siber baru-baru ini dalam sebuah diskusi santai di Bank of America Global Healthcare Conference. Perusahaan tersebut menerbitkan laporan 8-K pada malam sebelumnya setelah mendeteksi adanya penyusup di dalam sistem mereka. Pihak pejabat menjelaskan bahwa mereka telah mematikan operasional global untuk menilai situasi tersebut.

Situs web ini menggunakan cookie

Kami menggunakan cookie untuk analisis guna meningkatkan situs kami. Baca kebijakan privasi kami untuk informasi lebih lanjut.
Tolak