Unpatchable Flaw in MediaTek Chip Exposes Smartphones to Attacks
- Ledger’s Donjon lab exploited an unpatchable flaw in the MediaTek Dimensity 7300 chip using electromagnetic faults.
- The vulnerability resides in the chip’s boot ROM, making it impossible to fix with software updates.
- Researchers achieved a full device compromise by bypassing memory-access checks and escalating privileges to EL3.
- MediaTek acknowledged that such attacks are beyond the security scope of their consumer-grade MT6878 chipset.
- Over $2.17 billion has been stolen from cryptocurrency services in early 2025, surpassing all of 2024.
The discovery by Ledger highlights critical vulnerabilities in smartphone chips used widely across Android devices, emphasizing the importance of secure hardware for storing sensitive data like private keys. The findings suggest potential risks for users relying on software wallets on affected devices.
This flaw underscores why hardware wallets remain crucial for secure storage of digital assets, as they are designed to withstand both hardware and software attacks, unlike consumer-grade chips vulnerable to such exploits. Source