Hardware wallet security is discussed almost entirely in absolutes: a device is either trusted or broken, a vendor either honest or compromised. The disclosure record does not support either register. What it shows is a series of specific, bounded findings — a flaw in one chip revision, a weakness reachable only with physical access, a firmware release that changed what the device would sign — each with a defined scope and a vendor response.
The scope is the part that matters to an owner and the part most reliably lost in coverage. A vulnerability requiring physical possession of the device is a different risk from one exploitable remotely. A flaw in seed generation on a particular batch is a different problem from a flaw in the secure element across a product line. Owners of an affected device need to know which one they are holding, and whether they need to move funds today or not at all.
We read vendor advisories and independent research against each other, because they routinely describe the same finding in incompatible language. Where a vendor and a researcher disagree about severity, we report the disagreement rather than picking the more comfortable version.
A seed phrase is the wallet, not a password to it. Two documented cases — one from 2022, one from January 2026 — show how…
Ledger's own research team found and disclosed physical flaws in two Trezor wallets, in 2025 and 2026.
Ledger's research team defeated one layer of a three-layer chip design in Trezor's flagship wallet.
A 2021 firmware error routed some Coldcard wallets' seed generation through a predictable software fallback instead of true hardware randomness.
A firmware bug fed the wallet's random-number generator too little entropy at the moment a seed was created.
Coldcard's chips were never breached; the flaw sat one layer below, in the code that generates the seed before any secure element sees it.
The Coldcard hack was not a vendor looking at anyone's private key – it was weak randomness that made some keys guessable by any attacker.
Phantom will stop supporting the Monad network on 26 August 2026. Here is what a non-custodial wallet ending network support actually changes, and what it doesn't.
We do not rank wallets or run affiliate links to any of them, and we do not publish exploit detail that would help someone attack a device an ordinary owner still holds funds on. Where a fix exists we say what it is and where it came from.