I don't know whether this is true, but it's definitely possible (there are pin-compatible 64 KiB variants of the MCU). If you use the device without verifying the hardware, it's game over. To prevent Evil Maid attacks, that means checking at EVERY use.https://www.reddit.com/r/ledgerwallet/comments/86b7dk/important_to_everyone_who_bought_a_nano_ledger_s/ …
-
-
Would you be able to have that done such that the extra 32KiB is basically "undetectable"? i.e. JTAG and memory map only goes up to 32KiB, but the system bootloader is modified to run hidden code if the "non-hidden" code is signed by Ledger.
-
Not JTAG, but it should be entirely possible to trojan the bootloader such that it accepts legitimate firmware updates over USB, stores them, but still runs the old modified code (or even dynamically patches the new code, if it hasn't changed much).
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.