XKEYCHAINX LABS
Trezor / Public disclosure

Black Hat: MINimum Failure

Faults in USB handling could expose device memory.

Source date: 2019-08Reviewed: 11 October 2026

Affected scope

Trezor One before firmware 1.8.0; USB descriptor handling

What the attack requires

Physical access and electromagnetic fault-injection equipment.

Response & remediation

What changed

Trezor One 1.8.0 closed this attack path. Model T 2.1.0 received the same defensive measures although it was not directly affected.

What this finding establishes

Colin O’Flynn presented this work at Black Hat USA 2019. It is distinct from wallet.fail and Kraken’s 2020 disclosure.