سیکیورٹی فرم نے Trezor T والیٹ کو ہیک کرنے کے قابل ہونے کا دعویٰ کیا ہے۔

سیکیورٹی فرم نے Trezor T والیٹ کو ہیک کرنے کے قابل ہونے کا دعویٰ کیا ہے۔

Cybersecurity firm Unciphered posted a video where it claims to have successfully hacked a Trezor T wallet after dismantling the hardware and extracting the seed phrase.

Security Firm Unciphered Claims To Be Able to Hack Trezor T Wallet PlatoBlockchain Data Intelligence. Vertical Search. Ai.

Unsplash پر regularguy.eth کے ذریعہ تصویر

پوسٹ کیا گیا 25 مئی 2023 کو صبح 12:56 بجے EST۔ 25 مئی 2023 کو صبح 5:46 بجے EST پر اپ ڈیٹ کیا گیا۔

Unciphered, a company that specializes in recovering lost cryptocurrency, demonstrated how it broke into the Satoshi Labs’ Trezor T hardware wallet using specialized equipment.

ایک ویڈیو posted to Youtube on Wednesday, Unciphered co-founder Eric Michaud dismantles the hardware on the device and connects it to an exploit that was developed in-house. Using specialized software, he claims to have extracted the seed phrase, or private keys, to get into the wallet.

“The exploit for the Trezor T is unfixable with firmware updates,” said Michaud.

“In order to fix this, Satoshi Labs will have to recall all their products, which they’re likely not going to do,” he added.

Some users suggested that the exploit demonstrated in the video was just a showcase of a known vulnerability, but Unciphered claims that the previous attack had already been patched by Trezor years ago.

The Trezor T wallet that appears in the video demonstration was reportedly provided by سکےڈسک, after an extensive series of conversations about a supposedly “unpatchable hardware vulnerability” with the wallet’s STM32 chip. 

Trezor told CoinDesk that the attack performed by Unciphered resembled an RDP downgrade attack that required physical theft of a device, extreme technical knowledge and advanced equipment to execute. 

The hardware wallet manufacturer claims that it has already taken significant steps to resolve the issue by ترقی the world’s first auditable and transparent secure element through its sister company Tropic Square.

Hardware wallet security has been a trending topic among industry watchers over the last few weeks, most of which has centered around Ledger and its controversial بازیافت upgrade. The firm announced an upcoming optional feature that shards encrypted seed phrases and stores them with three different parties, giving users the option to recover their crypto in the event of a lost seed phrase. 

Following a significant amount of community backlash, Ledger has now تاخیر کا شکار the release of the new recovery feature, pledging to make as much of the code open source before the official launch.

ٹائم اسٹیمپ:

سے زیادہ اجنبی