Blockchain
Ledger Finds Chip Flaw Allowing Complete Phone Takeover – Crypto News
A chip widely used in smartphones, including the crypto-focused Solana Seeker, has an unfixable vulnerability that could allow attackers to gain complete control and steal private keys stored on the device, says crypto wallet maker Ledger.
Ledger said in a report on Wednesday that it tested an attack on the MediaTek Dimensity 7300 (MT6878), and bypassed its security measures to gain “full and absolute control over the smartphone, with no security barrier left standing.”
Ledger security engineers Charles Christen and Léo Benito explained that they took control of the chip using electromagnetic pulses during the chip’s initial boot process.
Crypto wallets often rely on private keys, which some users store on their phones, meaning bad actors can extract private keys from a device to steal from a crypto wallet.
“There is simply no way to safely store and use one’s private keys on those devices,” Christen and Benito said.
Smartphone chip vulnerability can’t be fixed
The fault injection vulnerability can’t be fixed through a software update or patch, because the issue is coded into the silicon of the smartphone’s system on chip (SOC), meaning “users stay vulnerable even if the vulnerability is disclosed,” according to Christen and Benito.
Ultimately, the attack success rate is low, between 0.1% to 1%, but the duo said the speed at which it can be repeatedly initiated means that eventually an attacker will gain access in “only a matter of a few minutes.”
“Given that we can try to inject a fault every 1 second or so, we repeatedly boot up the device, try to inject the fault, and if the fault does not succeed, we simply power up the SoC and repeat the process.”
Chip maker says its product isn’t meant for finance
MediaTek told Ledger that electromagnetic fault injection attacks are “out of scope” for the MT6878 chip.
Related: Cloudflare blames database error for outage that took down 20% of the internet
“Like many standard microcontroller circuits, the MT6878 chipset is designed for use in consumer products, not for applications such as finance or HSMs (Hardware Security Modules),” they said.
“It is not specifically hardened against EMFI hardware physical attacks. For products with higher hardware security requirements, such as hardware crypto wallets, we believe that they should be designed with appropriate countermeasures against EMFI attacks.”
Christen and Benito said they started working on the experiment in February and successfully exploited the chip’s vulnerability in the first days of May, at which point they disclosed the issue to Mediatek’s security team, who informed all the affected vendors.
Magazine: Ethereum’s Fusaka fork explained for dummies: What the hell is PeerDAS?
-
Blockchain1 week agoKlarna Debuts First Stablecoin, KlarnaUSD, on Tempo Blockchain – Crypto News
-
Technology3 days agoMulticloud Agility Comes to Financial Services – Crypto News
-
Blockchain1 week agoBitcoin Rises Above $90,000 as Investors Expect Interest Rate Cuts – Crypto News
-
Blockchain1 week agoMacroeconomic Pressures, Legislative Slowdown Drive Bitcoin Price Decline – Crypto News
-
others1 week agoNew Zealand’s RBNZ set to trim interest rate to 2.25% in November – Crypto News
-
Cryptocurrency1 week agoFirst signs of Ethena’s recovery? ENA aligns for possible macro breakout – Crypto News
-
Cryptocurrency7 days agoInterpol Elevates Scam-Compound Network to Global Threat as Crypto Fraud Spreads – Crypto News
-
Cryptocurrency7 days agoRaoul Pal: Bitcoin Is ‘2017 Google’ in Network Growth – Crypto News
-
Cryptocurrency6 days agoBitcoin price prediction: Can a bear trap help push BTC to $100K? – Crypto News
-
Blockchain5 days agoEther Eyeing $3.2K As Stablecoin Yields Remain Low: Santiment – Crypto News
-
Business1 week ago
Solana Price Prediction as ETF Inflows Hit $621M After 21 Days – Crypto News
-
Technology1 week agoStablecoin issuer Paxos acquires Fordefi to strengthen institutional DeFi access – Crypto News
-
Cryptocurrency1 week agoDogecoin Pump Ahead? Breakout Targets Double-Digit Move – Crypto News
-
Technology1 week ago
Is Tether’s Stability at Risk? S&P Downgrades USDT Amid BTC Exposure Concerns – Crypto News
-
Blockchain1 week agoBitcoin Rises Above $90,000 as Investors Expect Interest Rate Cuts – Crypto News
-
Cryptocurrency6 days agoBitcoin ATMs appear in Nairobi malls as Kenya’s new crypto law faces early compliance test – Crypto News
-
Blockchain6 days agoEthereum Fusaka Will Be ‘The Most Bullish Upgrade’ Ever – Crypto News
-
Cryptocurrency5 days agoOpenAI Confirms Data Breach—Here’s Who Is Impacted – Crypto News
-
Blockchain1 week agoCrypto Diversification Becomes Top Investment Driver in 2025: Sygnum – Crypto News
-
Technology1 week agoA new Android trojan could bypass WhatsApp, Signal and Telegram encryption steal your money: Here’s how it works – Crypto News
-
Blockchain1 week agoDogecoin Coils For A Monster 90% Breakout, Analyst Predicts – Crypto News
-
Technology1 week agoStablecoin issuer Paxos acquires Fordefi to strengthen institutional DeFi access – Crypto News
-
Cryptocurrency6 days agoAmundi, Europe’s biggest asset manager, tokenises money market fund on Ethereum – Crypto News
-
Technology6 days ago
Bitcoin Maximalist Max Keiser Predicts ZEC Crash To $55 as Zcash Extends Decline – Crypto News
-
Blockchain6 days agoUK Expands Crypto Reporting Rules as Global Tax Oversight Tightens – Crypto News
-
Cryptocurrency5 days agoZcash, Monero in Tight Ranking Race: Who Wins? – Crypto News
-
Cryptocurrency1 week agoMonad ships mainnet, while markets rebound – Crypto News
-
Technology1 week agoIndia’s first private PSLV is about to take off – Crypto News
-
others1 week agoAustralian Dollar gains as CPI beats forecasts, Fed rate cut bets grow – Crypto News
-
Cryptocurrency1 week ago
NYSE Arca Clears Bitwise Dogecoin ETF for Trading Today After Grayscale’s Slow Start – Crypto News
-
Technology1 week agoGoogle Meet down in India: Top alternatives you can consider for your important meetings – Crypto News
-
Technology6 days agoCME Group halts futures trading as cooling system breaks down – Crypto News
-
Cryptocurrency6 days agoADA price forecast: Cardano proposes a 70 million budget for key upgrades – Crypto News
-
Blockchain6 days agoThe Truth Behind Canton’s Tokenomics – Crypto News
-
Business6 days ago
Crypto Exchange Bitget Donates $1.54M To Hong Kong Fire Victims – Crypto News
-
Cryptocurrency6 days agoWhy CoinShares Just Quit the $600M XRP and SOL ETF Battle – Crypto News
-
Blockchain6 days agoUpbit $30 Million Hack Update: Authorities Link Breach To North Korean Hackers – Crypto News
-
others5 days ago
Why Crypto Market Down Today? (29 Nov) – Crypto News
-
others5 days ago
Solana Price Outlook as CoinShares Withdraws SEC Filing for Staked Solana ETF – Crypto News
-
Cryptocurrency5 days agoCrypto market mixed as Bitcoin tests $93K, Ethereum and XRP hit major resistance – Crypto News
-
Blockchain5 days agoEther Eyeing $3.2K As Stablecoin Yields Remain Low: Santiment – Crypto News
-
others1 week ago
Fed’s Chris Waller Advocates for December Rate Cut, Citing Labor-Market Weakness – Crypto News
-
Cryptocurrency1 week agoXRP bounces back above $2.0 as the $1.9 support holds – Crypto News
-
Blockchain1 week agoSolana Rebounds Strong as Massive ETF Inflows Reinforce $128 Support Zone – Crypto News
-
others1 week ago
Is Bitcoin Price at Risk of Crash as Treasury Companies Plan Fire Sale? – Crypto News
-
Cryptocurrency1 week agoWhy Is Bitcoin Down? Blame Trump, Says Economist Paul Krugman – Crypto News
-
Technology6 days agoWhat to Stream: George Clooney, Tom Cruise, Zac Brown Band, Michelle Pfeiffer and Metroid Prime 4 – Crypto News
-
Business6 days ago
Cardano News: ADA Ecosystem Proposes ‘Critical Integrations Budget’ To Advance Network Growth – Crypto News
-
Technology6 days agoYou’re using Gemini wrong: 7 Viral AI prompts that will instantly transform your presentations – Crypto News
-
Blockchain6 days agoBitcoin Must Break Key Supply Clusters To Regain ATH Momentum – Watch These Levels – Crypto News
