logo

ChainThink

Stay ahead, master crypto insights

Ledger Security Team Discloses Android Vulnerability That Could Lead to Wallet Mnemonic Theft

Ledger Security Team Discloses Android Vulnerability That Could Lead to Wallet Mnemonic Theft

2026-03-11 21:06

View Original

ChainThink report, March 11: The Donjon security research team under crypto wallet provider Ledger has discovered a vulnerability in the secure boot chain of MediaTek processors. Attackers with physical access to a smartphone can extract encryption keys via USB connection before the operating system loads, decrypt device storage, and retrieve the device PIN and encrypted wallet mnemonic within approximately 45 seconds. Proof-of-concept tests successfully extracted sensitive data from wallet applications including Trust Wallet, Kraken Wallet, and Phantom.


Researchers indicate the vulnerability may affect around 25% of Android devices, specifically those equipped with MediaTek chipsets and Trustonic Trusted Execution Environment (TEE). Ledger's Chief Technology Officer Charles Guillemet stated that smartphones were never designed as vaults, and although this vulnerability can be patched, it underscores the inherent risk of storing cryptographic keys on non-secure devices, urging users to promptly apply available security patches.

Disclaimer: Contains third-party opinions, does not constitute financial advice

Recommended Reading
SlowMist CISO: LiteLLM Suffers PyPI Supply Chain Attack, Exposing Sensitive Information Including Cryptocurrency Wallets and Cloud Credentials
SlowMist CISO: LiteLLM Suffers PyPI Supply Chain Attack, Exposing Sensitive Information Including Cryptocurrency Wallets and Cloud Credentials
Ledger Hires Former Circle Executive as CFO Amid Market Volatility, IPO May Be Delayed
Ledger Hires Former Circle Executive as CFO Amid Market Volatility, IPO May Be Delayed
DeFi protocol Neutrl frontend suspected of being attacked, official urges users to pause interactions and revoke authorization
DeFi protocol Neutrl frontend suspected of being attacked, official urges users to pause interactions and revoke authorization
OKX Star Clarification: The Wuhan Ansun Technology Attack Incident Was Not Due to a Security Vulnerability in OKX Web3 Wallet
OKX Star Clarification: The Wuhan Ansun Technology Attack Incident Was Not Due to a Security Vulnerability in OKX Web3 Wallet
Main suspect in the BITGIN crypto exchange money laundering case prosecuted in Taiwan, China, with Zhang siblings potentially facing up to 12 years in prison
Main suspect in the BITGIN crypto exchange money laundering case prosecuted in Taiwan, China, with Zhang siblings potentially facing up to 12 years in prison
Babylon partners with Ledger to introduce hardware signing support for Trustless Bitcoin Vaults
Babylon partners with Ledger to introduce hardware signing support for Trustless Bitcoin Vaults
Coinbase CEO: The number of AI agents conducting transactions will soon surpass humans
Coinbase CEO: The number of AI agents conducting transactions will soon surpass humans