Post
Topic
Board Hardware wallets
Re: Trezor hacked (again)
by
Pmalek
on 02/02/2022, 14:27:14 UTC
He is smart guy and I will give him a credit, but correct way would be to mention the years when this happened, if not in video than in descriptions.
I agree with you that he could have mentioned the years. But he does mention at 13:20 in the video that he was going through Trezor's source code and that he found an exploitable vulnerability in firmware version 1.6.0. He then says that line of code was removed in 1.6.1. In some way, he does acknowledge that this particular vulnerability is not there anymore if your firmware is up-to date. 

Most of the people are now thinking that Trezor is still affected by this old bug...
Well it is if you are still using an outdated firmware. And if you forgot your PIN, like the guy in the video, and you can't unlock your device to upgrade the firmware, you are stuck with the old and vulnerable one.