Critical Chip Vulnerability Threatens Crypto Wallets on Smartphones

Ledger, a prominent provider of crypto security solutions, has issued a warning regarding a severe, unfixable vulnerability discovered in the MediaTek Dimensity 7300 (MT6878) system-on-chip (SoC). This chip is widely integrated into smartphones, including the Solana Seeker, a device specifically marketed towards cryptocurrency users. The vulnerability could potentially allow malicious actors to gain complete control over the compromised device and, crucially, steal the private keys used to access cryptocurrency wallets.

Security engineers at Ledger, Charles Christen and Léo Benito, successfully executed an attack on the MediaTek Dimensity 7300, effectively bypassing all security measures. The result was, in their words, achieving "full and absolute control over the smartphone, with no security barrier left standing."

Exploiting the Vulnerability: A Technical Overview

Christen and Benito explained that they were able to commandeer the chip’s functionality through the use of electromagnetic fault injection (EMFI) during the chip's initial boot sequence. Given that cryptocurrency wallets often rely on private keys – some of which are stored directly on smartphones for ease of access – a successful attack of this nature allows malicious actors to extract these keys and subsequently steal the associated cryptocurrency.

“There is simply no way to safely store and use one’s private keys on those devices,” Christen and Benito stated, highlighting the gravity of the situation.

A Permanent Problem: The Inability to Patch

Compounding the severity of the issue is the fact that this particular fault injection vulnerability cannot be addressed via a standard software update or patch. The flaw is embedded directly within the silicon of the smartphone's SoC, making it fundamentally unfixable. "Users stay vulnerable even if the vulnerability is disclosed,” according to Christen and Benito.

While the initial attack success rate is relatively low, estimated between 0.1% and 1%, the engineers emphasized that the speed at which the attack can be repeatedly initiated means that an attacker will eventually gain access in "only a matter of a few minutes.”

Their methodology involves repeatedly booting the device, attempting to inject the fault each time. "Given that we can try to inject a fault every 1 second or so, we repeatedly boot up the device, try to inject the fault, and if the fault does not succeed, we simply power up the SoC and repeat the process."

MediaTek's Response: Consumer Use Case

In response to Ledger's findings, MediaTek stated that electromagnetic fault injection attacks were considered "out of scope" for the MT6878 chip.

MediaTek further clarified that the chip "is designed for use in consumer products, not for applications such as finance or HSMs (Hardware Security Modules). It is not specifically hardened against EMFI hardware physical attacks. For products with higher hardware security requirements, such as hardware crypto wallets, we believe that they should be designed with appropriate countermeasures against EMFI attacks.”

Christen and Benito detailed their research timeline, noting they began working on the experiment in February and successfully exploited the chip's vulnerability in early May. They promptly disclosed their findings to MediaTek's security team, who, in turn, notified all affected vendors.


Risk Warning: This article is provided for informational purposes only and does not constitute investment advice, investment research, or a recommendation to trade. The views expressed are those of the author and do not necessarily reflect the position of Markets.com. When considering shares, indices, forex (foreign exchange), and commodities for trading and price predictions, remember that trading CFDs involves a significant degree of risk and may not be suitable for all investors. Leveraged products can result in capital loss. Past performance is not indicative of future results. Before trading, ensure you fully understand the risks involved and consider your investment objectives and level of experience. Cryptocurrency CFD trading restrictions may apply depending on jurisdiction.

Latest news

gold-trading

Wednesday, 12 August 2026

Indices

Gold Price Today, August 13: Gold Climbs Above $4,400 as Cooler US CPI Cuts Fed Hike Bets

tsmc-stock

Wednesday, 12 August 2026

Indices

TSMC Stock Rises 1.7% as AI Infrastructure Rally Lifts Chip Sector

WTI vs Brent Crude Oil

Wednesday, 12 August 2026

Indices

Oil Prices Fall Over 1% as OPEC and IEA Cut 2026 Demand Forecasts

bank-of-japan

Wednesday, 12 August 2026

Indices

USD/JPY forecast: Rate gap limits impact of US and Japanese intervention

kospi

Wednesday, 12 August 2026

Indices

KOSPI Jumps Nearly 5% as SK Hynix Surges 7% and Asian Chip Rally Accelerates

Tuesday, 11 August 2026

Indices

Gold Price Today, August 12, 2026: XAU/USD Rises 0.5% Near $4,400 Ahead of US CPI

What Factors Drive Crude Oil Price Fluctuations

Tuesday, 11 August 2026

Indices

Oil Nears $90 as Fading U.S.-Iran Deal Hopes Renew Hormuz Supply Fears

nio stock news today

Tuesday, 11 August 2026

Indices

NIO Stock News Today: Shares Slide as BlackRock Trims Stake Despite Record ES9 Demand

sk-hynix

Tuesday, 11 August 2026

Indices

U.S. Stocks Fall as SpaceX Drops 3.9%, While SK Hynix Jumps 4.7%

USD/JPY forecast

Tuesday, 11 August 2026

Indices

USD to JPY Exchange Rate May Have Peaked, Eurizon Sees Yen Strengthening to 125