XKEYCHAINX LABS
Ellipal / Public disclosure

Ellipal EC01: physical and firmware weaknesses

Ledger Donjon documented physical-interface and firmware weaknesses in the original ELLIPAL EC01. ELLIPAL later disputed that a seed had actually been extracted.

Source date: 25 JUN 2019Reviewed: 11 October 2026

Affected scope

Original EC01 · Not a Titan finding

What the attack requires

Physical access to the original EC01 device.

Response & remediation

What changed

Vendor cites firmware 2.0

What this finding establishes

ELLIPAL’s response says firmware 2.0 addressed the reported issues. The researcher’s claims and vendor’s assessment differ, so both are linked here. This record does not establish a vulnerability in Titan or Titan 2.0.