Hi, we just want to add that this is an old vulnerability that has been already fixed. All new devices are shipped with a fixed bootloader. Learn more about our Security approach and our responsible disclosure program👇 https://trezor.io/security/
reply
Corresponding article:
Trezor already fixed part of the problem Grand exploited in later versions of its firmware. The wallets no longer copy or move the key and PIN into RAM at all. Pavol Rusnak, co-founder and CTO of SatoshiLabs, which makes Trezor wallets, said it now stores them in a protected part of flash that isn’t affected during firmware upgrades.