Close Menu
  • Markets
    • Spot Market
      • Market Overview
      • Top Gainers / Losers
      • Market Cap Charts
      • Reviews
    • Futures Market
      • Market Overview
      • Funding Rate
      • Liquidations
      • Long Short/Ratio
  • Metrics
    • Dashboard
    • Whale tracker
    • Market Heatmap
    • Funding Rates
  • News
    • Bitcoin
    • Ethereum
    • Altcoins
  • Prediction
  • Opinion
  • Calendar
  • Live Feed
What's Hot

Blackrock-Backed Stablecoin to Launch on Ethereum Network

July 31, 2026

Coldcard Mk3 Users Warned as 594 BTC Stolen

July 31, 2026

Fidelity FBTC Sees $15.5M Inflows Amid Bearish Indicators

July 31, 2026

Strategy Ends ‘Buy Every Dip’ Bitcoin Strategy

July 31, 2026

Evernorth Files $1B SEC Amendment, Potentially Boosting XRP

July 31, 2026

Senate Democrats Propose Anti-Corruption Bureau Amidst Crypto Scrutiny

July 31, 2026

Senator Lummis States CLARITY Act Framework Is Failing

July 31, 2026

New York Sues Kalshi, Seeks $36 Billion for Illegal Gambling

July 31, 2026

Coldcard Bitcoin Wallet Drained $38M by Key Flaw

July 31, 2026

Elon Musk Denies Tesla Gigafactory Shanghai Sale Rumors

July 31, 2026
Facebook X (Twitter) Instagram
Daily Crypto News
  • Markets
    • Spot Market
      • Market Overview
      • Top Gainers / Losers
      • Market Cap Charts
      • Reviews
    • Futures Market
      • Market Overview
      • Funding Rate
      • Liquidations
      • Long Short/Ratio
  • Metrics
    • Dashboard
    • Whale tracker
    • Market Heatmap
    • Funding Rates
  • News
    • Bitcoin
    • Ethereum
    • Altcoins
  • Prediction
  • Opinion
  • Calendar
  • Live Feed
Dashboard
Daily Crypto News
Home»Guides»Matej Žák confirms Trezor Safe 7 chip exploit, customer funds secure
Matej Žák confirms Trezor Safe 7 chip exploit, customer funds secure
Trezor CEO Matej Žák confirms a hardware vulnerability in the Trezor Safe 7 TROPIC01 chip. Learn why funds remain safe and what users need to do next.
Guides

Matej Žák confirms Trezor Safe 7 chip exploit, customer funds secure

Michael FawnBy Michael FawnJune 3, 2026Updated:June 11, 20265 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

By Michael Fawn

Trezor CEO Matej Žák and semiconductor firm Tropic Square announced on June 3, 2026, that a hardware-level vulnerability has been discovered in the TROPIC01 Secure Element chip used in the Trezor Safe 7 hardware wallet. The flaw, identified by the Ledger Donjon research team, involves a sophisticated laser fault injection attack that can bypass certain security protocols. Despite the exposure of the chip’s internal mechanisms, Trezor officials confirmed that all customer funds remain secure and no immediate action is required by device owners.

The security breach centers on the TROPIC01 chip, which was launched in early 2025 as a primary security component for the Trezor Safe 7. Researchers from Ledger Donjon, the white-hat division of competitor Ledger, first alerted Tropic Square to the issue in January 2026. The technical exploit requires physical possession of the device, manual disassembly, and the use of high-end laboratory equipment, specifically a 1064 nm laser to manipulate the chip’s signature verification during boot-up.

The vulnerability essentially allows an attacker to load unauthorized firmware and potentially extract secrets linked to the device PIN. While this sounds alarming for the long-term security of self-custody assets, Trezor argues that its multi-layered architecture prevents any singular chip failure from compromising the entire wallet. The Trezor Safe 7 utilizes three independent security layers, and this exploit only impacts one of those barriers.

Security architecture preserves funds despite chip exploit

The Trezor Safe 7 was engineered to move away from single points of failure. By combining the TROPIC01 Secure Element with an OPTIGA Trust M chip and an STM32U5 microcontroller, the manufacturer created a “defense in depth” strategy. CEO Matej Žák emphasized that the wallet backup, PIN data, and private keys are never stored on a single chip, ensuring that even a successful laser attack cannot gain full control of the assets.

Tropic Square’s further investigation revealed a secondary method using the same weakness to target PIN-related functions. However, the complexity of the attack remains a significant barrier for would-be thieves. These types of laboratory exploits are far removed from common digital threats, requiring local physical access and expensive equipment that few individuals possess. This differs from the broader scams and fraudulent schemes that typically target crypto users through social engineering or software malware.

This disclosure follows a similar incident in March 2025 where Trezor addressed a vulnerability in its older Safe 3 model. In that instance, the issue was also discovered by Ledger researchers and involved physical access through microcontrollers. The recurring cooperation between these two rivals highlights an industry-standard “responsible disclosure” model, where competitors test each others’ hardware to harden the entire ecosystem against sophisticated state-level or industrial actors.

Firmware mitigation and hardware revision timeline

While the flaw is rooted in the physical silicon of the chip and cannot be fully erased via software, Trezor has released an immediate firmware-based mitigation. This update disables the “MAINTENANCE” mode on the TROPIC01 chip, which was identified as the primary entry point for the laser fault injection. By closing this gate, the company forces any potential attacker into a far more complex, multi-step process that current research suggests is even more difficult to execute.

For users concerned about the long-term viability of their hardware, Tropic Square is already working on a permanent fix. A hardened silicon revision of the TROPIC01 chip is scheduled for production in late 2026. This revised hardware will likely be integrated into future batches of the Trezor Safe 7 and subsequent models to prevent this specific class of laser-based attacks from occurring again.

The transparency surrounding the vulnerability reflects a shift in how hardware manufacturers handle security flaws. Rather than downplaying the risk, Trezor and Tropic Square have opted to share the methodology of the attack. Full technical details of the Ledger Donjon research are expected to be made public in the spring of 2027, giving the community ample time to implement safeguards. As wallet adoption trends continue to rise, the focus on physical tamper-resistance has become as critical as protecting against digital hacks.

What Trezor Safe 7 users should do now

Trezor has been explicit in its guidance: users do not need to replace their devices or move their funds to new wallets. Because the attack requires the physical destruction of the casing and highly specialized laser equipment, the risk to the average consumer is considered negligible. The company maintains that the current protection remains “best-in-class” due to the two remaining security layers that remain uncompromised by the Ledger findings.

Owners are encouraged to keep their device firmware updated to the latest version to benefit from the maintenance-mode lockout. This software patch effectively raises the cost and technical difficulty of an attack beyond the reach of almost all criminal entities. Moving forward, the industry will likely see a greater emphasis on “open silicon” designs, which Trezor and Tropic Square champion as a way to identify these vulnerabilities before they can be exploited in the wild.

Michael Fawn

About Michael Fawn

Michael Fawn is a cryptocurrency journalist and blockchain analyst with a passion for breaking down complex market trends into easy-to-understand insights. Covering everything from Bitcoin and Ethereum to emerging altcoins and Web3 innovation, Michael focuses on delivering accurate, timely, and engaging crypto news for investors and enthusiasts alike. With years of experience following the digital asset industry, Michael keeps readers informed on the latest developments shaping the future of finance.

More from Michael Fawn →

ledger donjon research exploit matej žák trezor ceo trezor hardware wallet vulnerability trezor safe 7 security update tropic01 secure element chip
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

South Korea confirms 2027 crypto gains tax as parliamentary battle intensifies

July 30, 2026

How to Buy Bitcoin with USDT: TechBullion’s New Trading Guide

July 29, 2026

What happens when a corporate Bitcoin treasury enters the red?

July 28, 2026

What is Open Interest? The Fine Line Between Conviction and Fragility

July 28, 2026

Recent Posts

  • Blackrock-Backed Stablecoin to Launch on Ethereum Network
  • Coldcard Mk3 Users Warned as 594 BTC Stolen
  • Fidelity FBTC Sees $15.5M Inflows Amid Bearish Indicators
  • Strategy Ends ‘Buy Every Dip’ Bitcoin Strategy
  • Evernorth Files $1B SEC Amendment, Potentially Boosting XRP
Top Posts

South Korea confirms 2027 crypto gains tax as parliamentary battle intensifies

July 30, 2026

How to Buy Bitcoin with USDT: TechBullion’s New Trading Guide

July 29, 2026

What happens when a corporate Bitcoin treasury enters the red?

July 28, 2026

Stay updated with the latest crypto news, market trends, and expert insights. We provide accurate and timely information to help you make better decisions.

Facebook X (Twitter) Instagram Pinterest YouTube
Our Resources
  • About Us
  • Privacy Policy
  • Editorial Policy
  • Legal Disclaimer
  • Contact us
Categories
  • Altcoins
  • Prediction
  • Opinion
  • Guides
  • Reviews
  • Bitcoin
  • Ethereum
Recent Posts
  • Blackrock-Backed Stablecoin to Launch on Ethereum Network
  • Coldcard Mk3 Users Warned as 594 BTC Stolen
  • Fidelity FBTC Sees $15.5M Inflows Amid Bearish Indicators
  • Strategy Ends ‘Buy Every Dip’ Bitcoin Strategy
© 2026 Daily Crypto News

Type above and press Enter to search. Press Esc to cancel.