Briefing
Ledger's Donjon previously disclosed a vulnerability in Trezor's STM32 microcontroller via a voltage glitch attack. That disclosure also required physical access and specialist equipment, establishing the same competitive dynamic: Ledger research team, rival product, responsible disclosure, no immediate fund loss. The prior incident did not materially shift retail market share but did influence institutional custody vendor assessments.
Ledger's own Recover firmware update triggered a user backlash over seed phrase exposure concerns, temporarily damaging Ledger's security reputation and driving users toward Trezor. That episode illustrates how quickly security narratives reverse in this duopoly, and why the current disclosure is strategically significant for Ledger's institutional positioning.
See Indexa more often on Google
Mark Indexa as a preferred source — your Top Stories will surface more Indexa coverage.
The TROPIC01 Secure Element vulnerability requires physical access and specialised equipment to exploit, limiting real-world risk.

2 hours ago