DeFi Daily News
Saturday, June 13, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home DeFi Web 3

rewrite this title Android Phone Crypto Wallets Could Be at Risk Due to MediaTek Exploit: Ledger – Decrypt

Jason Nelson by Jason Nelson
March 11, 2026
in Web 3
0 0
0
rewrite this title Android Phone Crypto Wallets Could Be at Risk Due to MediaTek Exploit: Ledger – Decrypt
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

In brief

Ledger researchers say a flaw in certain MediaTek-powered Android phones could expose encrypted user data in about 45 seconds.
The exploit allows attackers to retrieve a device PIN and decrypt storage before Android even boots.
MediaTek issued a fix to device makers in January, though the company did not publicly address the issues until March.

A vulnerability in certain Android smartphones powered by MediaTek processors could allow attackers to extract encrypted user data in under a minute using only a USB connection, according to new research from cryptocurrency hardware wallet maker Ledger.

Ledger’s internal security research team, known as the Donjon, found that white hat hackers were able to demonstrate the flaw by connecting a Nothing CMF Phone 1 to a laptop and compromising the device’s security in under 45 seconds.

“Donjon has struck again, discovering a MediaTek vulnerability potentially impacting millions of Android phones. Another reminder that smartphones aren’t built for security,” Ledger Chief Technology Officer Charles Guillemet wrote on X. “Even when powered off, user data—including PINs and [seed phrases]—can be extracted in under a minute.”

The Donjon team reported they were able to recover the Nothing CMF Phone 1’s PIN, decrypt its storage, and extract seed phrases from several crypto wallets without booting Android, including Trust Wallet, Base, Kraken Wallet, Rabby, Tangem’s mobile wallet, and Phantom.

Without ever even booting into Android, the exploit automatically recovered the phone’s PIN, decrypted its storage, and extracted the seed phrases from the most popular software wallets.

— Charles Guillemet (@P3b7_) March 11, 2026

Released in 2024 by London-based Nothing, the Nothing CMF Phone 1 is a low-cost and modularly customizable mobile phone that runs the Android operating system. The exploit targets the phone’s secure boot chain, Donjon said, which allows an attacker to connect through USB and extract root cryptographic keys before the operating system loads, enabling the device’s storage to be decrypted offline.

According to a July 2025 report by Chainalysis, personal wallet compromises represented a growing share of total cryptocurrency theft, with attackers increasingly targeting individual users, making up 23.35% of all stolen fund activity YTD in 2025.

Ledger said the Donjon team discovered the vulnerability while analyzing Android’s flash encryption security. The company disclosed the exploit to MediaTek and Trustonic under a 90-day responsible disclosure policy, and the vulnerability was publicly disclosed by MediaTek earlier this month.



Other devices that use MediaTek chips include the crypto-centric Solana Seeker, along with smartphones from brands including Samsung, Motorola, Xiaomi, POCO, Realme, Vivo, OPPO, Tecno, and iQOO. However, it’s not yet clear which other handsets beyond the Nothing CMF Phone 1 may be susceptible to the exploit.

Although the demonstration focused on crypto wallets, Donjon said the exposure could extend to other sensitive information stored on the device, including messages, photos, financial information, and account credentials.

Crypto wallets typically come in two flavors: software and hardware wallets designed to store private keys that allow users to access their digital assets. Software or hot wallets are designed for mobile devices, while physical hardware wallets are meant to be used with desktop or laptop computers. These wallets, like the Ledger Nano S, can be removed from computers for better security.

However, software wallets are more accessible and typically free to download and use, compared to hardware wallets that can vary in price. However, Guillemet said the software-only approach comes with trade-offs, and highlights a fundamental architectural difference between “general-purpose” phone chips and those specifically designed for private key protection.

“General-purpose chips are built for convenience,” he wrote. “Secure Elements are built for key protection. A dedicated Secure Element isolates secrets from the rest of the system, protecting them even under physical attack.”

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: AndroidCryptoDecryptdueExploitLedgerMediaTekphonerewriteRisktitleWallets
ShareTweetShare
Previous Post

Why The U.S.-Iran War Is A Threat To The World’s Farmers

Next Post

Salesforce begins up to $25B debt raise for stock buybacks

Next Post
Salesforce begins up to B debt raise for stock buybacks

Salesforce begins up to $25B debt raise for stock buybacks

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
Kā Kļūt par Miljonāru: Mēmu Monētu Tirgotāja Veiksmes Stāsts ar Tikai 96$ Investīciju

Kā Kļūt par Miljonāru: Mēmu Monētu Tirgotāja Veiksmes Stāsts ar Tikai 96$ Investīciju

October 21, 2024
rewrite this title How vulnerable might humans be to bird flu? Scientists see hope in existing immunity

rewrite this title How vulnerable might humans be to bird flu? Scientists see hope in existing immunity

March 19, 2025
You don’t fix the Fed. You opt out of needing it.

You don’t fix the Fed. You opt out of needing it.

May 22, 2026
Exclusive Shopkick Deal: Get a FREE Gift Card Worth - for Every User!

Exclusive Shopkick Deal: Get a FREE Gift Card Worth $3-$5 for Every User!

October 24, 2024
Trump weighs tariffs on movies made outside US ahead of Disney earnings

Trump weighs tariffs on movies made outside US ahead of Disney earnings

May 5, 2025
Samsung’s Galaxy Buds Series 3 Have a New Look You May or May Not Like

Samsung’s Galaxy Buds Series 3 Have a New Look You May or May Not Like

July 10, 2024
rewrite this title Valve just imported 13 tons of VR headsets in one day

rewrite this title Valve just imported 13 tons of VR headsets in one day

June 12, 2026
rewrite this title USA vs Paraguay LIVE: Pulisic and Balogun inspire rampant World Cup co-hosts

rewrite this title USA vs Paraguay LIVE: Pulisic and Balogun inspire rampant World Cup co-hosts

June 12, 2026
rewrite this title with good SEO Fireblocks Says Institutional ETH Staking Is Moving Toward Standardized Rails

rewrite this title with good SEO Fireblocks Says Institutional ETH Staking Is Moving Toward Standardized Rails

June 12, 2026
rewrite this title Coinbase Teases Next Phase of ‘Everything Exchange’ for Crypto, Stocks, Perps

rewrite this title Coinbase Teases Next Phase of ‘Everything Exchange’ for Crypto, Stocks, Perps

June 12, 2026
Barstool Reporter Fumbles Interviews (Feat. Caleb Williams) | VIVA TV

Barstool Reporter Fumbles Interviews (Feat. Caleb Williams) | VIVA TV

June 12, 2026
rewrite this title Finovate Global Egypt: Investing in Unicorns and Point of Sale Financing Startups – Finovate

rewrite this title Finovate Global Egypt: Investing in Unicorns and Point of Sale Financing Startups – Finovate

June 12, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.