We see most of the times hardware wallet getting hacked because every company use cheap microcontroller and it's always available exploits because update not available from manufacturer or development slow or stop!
Physical access will always be the weak point of any hardware wallet.
If it leaves your sight, assume it's compromised and sweep to a new wallet.
If someone DIY hardware wallet first create a Veracrypt container secure put wallet all files in it unlocked use then lock super secure!
With raspberry pi!