Noticias
The company Ledger announced a number of vulnerabilities in hardware wallets Trezor
The leading manufacturer of cryptocurrency hardware wallets Ledger spoke about the vulnerabilities revealed in the devices of his direct competitor Trezor. This is stated in a message distributed by the French company on Monday, March 11. As previously mentioned, @BreakerMag has toured our competitors. Here is a detailed overview of these vulnerabilities: […]

The leading manufacturer of cryptocurrency hardware wallets Ledger spoke about the vulnerabilities revealed in the devices of his direct competitor Trezor. This is stated in a message distributed by the French company on Monday, March 11.
As previously mentioned, @BreakerMag has toured our competitors.
Here is a detailed overview of these vulnerabilities: https://t.co/sW1rxH3lwP
– Ledger (@Ledger) March 11, 2019
The Ledger study states that the vulnerabilities were discovered by employees of Attack Lab, a division of the company that, in order to increase security, hacks both its own wallets and competitors' devices. Representatives of Ledger claim that they have repeatedly contacted Trezor regarding the weak points in their Trezor One and Trezor T wallets, and after the disclosure period ended, they decided to make them public.
The first problem is related to authenticity of devices. As Ledger claims, the Trezor device can be simulated by hacking it with malware, and then resealing it in a box, forging a sticker designed to protect against unauthorized access. The latter, said the French company, is easy to remove. It is also claimed that this vulnerability can be eliminated only by reformatting the entire design of Trezor wallets, in particular, by replacing one of the main components with the Secure Secure chip.
Secondly, Ledger hackers were able to pick up a PIN on a Trezor wallet using an attack on a third-party channel, as reported by Trezor in late November 2018. Later, the company solved this problem in its firmware update 1.8.0.
The third and fourth vulnerabilities, which Ledger also proposes to eliminate, replacing the main component with the Secure Element chip, are the possibility of stealing confidential data from the device. Ledger claims that an attacker with physical access to Trezor One and Trezor T can extract all data from flash memory and gain control over the assets stored on devices.
The last discovered weakness is also related to the Trezor security model: as stated by Ledger, the Trezor One cryptographic library does not contain adequate countermeasures against hardware attacks. It is alleged that a hacker with physical access to the device can extract the secret key through an attack on a third-party channel, although Trezor claimed that his wallets are resistant to such an attack.
It is noteworthy that in November 2018 Trezor representatives themselves warned that an unknown third party was distributing individual copies of their flagship device, Trezor One, urging users to buy wallets only through their official website.
However, in its report, Ledger claims that users cannot be sure, even if they buy equipment on the Trezor website. An attacker can buy multiple devices, hack them, and then send them back to the manufacturer for compensation. Ledger researchers conclude that if a compromised device is resold, user cryptocurrencies may be stolen.
Recall that in December cyber specialists from Wallet.fail discovered a number of vulnerabilities in both Trezor and Ledger devices, managing to launch a series of successful attacks. In response, representatives of Ledger said that the findings of the researchers do not correspond to reality . In turn, Trezor said that he acknowledged the existence of a vulnerability, but stressed that in order to use it, the attacker must have physical access to the victim's device.
Representatives of Trezor have not yet commented on the latest conclusions of Ledger.
BlockchainJournal.news
BlockchainJournal.news
Compañías
ARK Invest Deshace Acciones de Coinbase y GBTC por Millones en Medio del Auge del Mercado

ARK Invest, liderada por Cathie Wood, continúa navegando sus movimientos estratégicos de acciones en el mercado, realizando ventas destacadas de acciones de Coinbase y Grayscale Bitcoin Trust (GBTC) en medio del continuo aumento de los precios del mercado.
Compañías
El Descuento de GBTC se Reduce a Medida que Aumenta el Precio de Bitcoin

Grayscale Bitcoin Trust (GBTC), uno de los vehículos de inversión en criptomonedas más grandes y populares, ha visto su descuento reducirse significativamente en los últimos días a medida que los alcistas continúan elevando su precio. Según datos de Kaiko, una plataforma de inteligencia blockchain, el descuento del GBTC, que mide la diferencia entre el precio de mercado y el valor liquidativo (NAV) del fideicomiso, está en su nivel más estrecho en años, con solo el 8% hasta ayer. (más…)
Compañías
IBM Presenta OSO, Diseñada Para el Almacenamiento en Frío de Activos Digitales

IBM presentó una nueva tecnología denominada «IBM Hyper Protect Offline Signing Orchestrator» (OSO), diseñada para gestionar activos digitales en almacenamiento en frío. Esta innovación surge como respuesta a los riesgos asociados con los procedimientos manuales y tiene como objetivo mantener los activos a una distancia segura de las conexiones a Internet. (más…)
-
Noticias7 años ago
Los principales eventos de la semana en la industria de bitcoin y blockboy (17 de septiembre de 2013 – 23 de septiembre de 2018)
-
Noticias6 años ago
24 países junto con el FMI discutieron futuras reglas y regulaciones para la regulación de la criptomoneda
-
Noticias7 años ago
Medios de comunicación: en Francia permitirá la compra de criptomoneda en tiendas de tabaco
-
Noticias7 años ago
Medios de comunicación: en vísperas de la OPI, los posibles inversores de la compañía minera Bitmain estaban mal informados
-
Noticias7 años ago
Descripción general del nuevo ASIC de Bitmain: ANTMINER S15 y T15: características y rentabilidad
-
Noticias6 años ago
¿Cómo almacenar una frase semilla mnemónica de una billetera de criptomonedas?
-
Noticias7 años ago
El índice de "índice de miedo y codicia" de Bitcoin alcanzó los valores mínimos
-
Noticias7 años ago
Aumento de la demanda de Ripple (XRP)