News View Non-AMP

Ledger Reveals Android Flaw Targeting Crypto Seed Phrases

Published by
Steve Muchoki

Ledger’s Donjon research team has identified security vulnerabilities in MediaTek processors (commonly used on Android phones) that allow malicious actors to steal users’ phone pins and their crypto seed phrases within seconds. The attack is said to occur even when devices are switched off.

The team conducted a proof-of-concept test, where they successfully obtained sensitive information pertaining to several software (a.k.a hot) crypto wallets. Victims included Trust Wallet, Kraken Wallet, and Phantom.

Crypto theft on Android OS

Charles Guillemet, the Chief Technology Officer at Ledger hardware wallet company, noted the development as a “reminder that smartphones aren’t built for security.”

Guillemet added that it could have affected “millions” of Android phones, since they dominate global use due to economic and availability factors.

Following the report, MediaTek took action to fix the bug, while Trust Wallet introduced a new security feature preventing crypto address tampering.

Which method of storage is safe?

Hardware/cold wallets, such as Ledger and Trezor, have gained a reputation for providing better security to cryptocurrencies as compared to software wallets. This is because they utilize chips that are separate from the phone’s main processor.

Still, at 78% global use, hot wallets are the dominant choice among crypto holders due to their cost efficiency and ease of use.

Even then, users of cold storage have fallen victim to crypto theft through social engineering, supply chain tampering, physical device extraction, and blatant recklessness. 

A good example of the latter is the South Korean Tax Service, which accidentally posted the seed phrase to a seized crypto hard wallet. An example of brute force or wrench attacks is the recent case of the French couple who were robbed of almost $1 million in Bitcoin. 

As for operating systems, iOS users have not been fully spared, with the Coruna vulnerability mining sensitive cryptocurrency information on older iOS versions.

User keys can still be stolen when running a node, so perhaps multisig wallets are one of the most “fireproof” methods of storing cryptocurrencies.

Steve Muchoki

Steve is a crypto news writer with a passion for decoding market moves. He blends breaking blockchain news with sharp technical analysis and bold price predictions. From Bitcoin rallies to altcoin breakouts, Steve breaks it all down with clarity and insight. Whether you're a trader or just curious, his analysis keeps you ahead of the curve.

Recent Posts

Cartesi (CTSI) Price Explodes 80%—But a Flip Above $0.05 Will Decide the Next Move

Cartesi (CTSI) price has broken out of a prolonged downtrend structure, delivering a sharp expansion…

April 3, 2026

Render Price Eyes Trend Reversal: Is a Strong Rally Incoming?

Render (RNDR) is showing early signs of a potential breakout as price stabilizes near key…

April 3, 2026

Crypto Market Today, Bitcoin and Ethereum Price Drop as US-Israel-Iran War Escalates

Bitcoin price today faced a sharp setback after a U.S. address in Iran triggered a…

April 3, 2026

XRP News: SBI Ripple Asia Teams Up with DSRV for Cross-Border Payments

XRP News: Two of Asia's most prominent blockchain-focused firms SBI Ripple and DSRV have started…

April 3, 2026

Binance vs Solana: Changpeng Zhao Explains the Memecoin Strategy Split

The memecoin debate is back in the spotlight after Changpeng Zhao explained why BNB Chain…

April 3, 2026

Why Free-to-Play Is Winning: The Social Casino Spree Redefining Digital Entertainment

The free-to-play gaming model has achieved something few analysts predicted a decade ago: it has…

April 3, 2026