Warning: Some Users' Bitcoin and Altcoins May Be at Risk, Security Flaw Detected in Chinese-Made Chips! Here are the Key Points to Know

robot
Abstract generation in progress

According to cybersecurity researchers, a newly discovered vulnerability in a widely used Chinese microcontroller puts billions of devices and the Bitcoin stored on these devices at serious risk.

Risky Chip Used in Many Bitcoin and Crypto Cold Wallets

Officially cataloged as CVE-2025-27840, the vulnerability affects the ESP32 chip, a popular microcontroller found in a number of Internet of Things (IoT) devices, including hardware wallets used to store Bitcoin. Security experts warn that this bug could allow hackers to remotely steal private keys or forge BTC transaction signatures, gaining unauthorized access to users' funds.

The ESP32 chip is manufactured by the Chinese company Espressif Systems and is used in devices such as the Blockstream Jade wallet, which relies on the chip to generate cryptographic signatures for Bitcoin transactions. However, the researchers found that the chip's random number generator lacked enough entropy and was therefore vulnerable to brute force attacks that could reveal private keys.

The cybersecurity firm Crypto Deep Tech demonstrated how this vulnerability can be exploited in the real world. The white hat hacker team managed to crack the private key of an active Bitcoin wallet holding 10 BTC, showcasing the practical seriousness of the issue.

Beyond the random number generator flaw, the chip's update mechanism is also vulnerable. Hackers can use module updates to sign unauthorized transactions or inject malicious code, turning the chip into a secret access point for digital theft.

With billions of ESP32 chips embedded in devices around the world, the scale of the threat is quite significant for individuals and companies relying on self-custody solutions, especially for digital assets.

Crypto Deep Tech and other researchers are currently working under responsible disclosure protocols, warning wallet manufacturers and developers and calling for urgent measures to be taken. However, experts warn that the path to securing the affected infrastructure will be complex and lengthy, as defective chips have already been implanted in a large number of devices.

For now, it is recommended that users of hardware wallets containing ESP32 chips stay alert for firmware updates and follow the guidance of wallet providers as security patches are developed.

BTC1.59%
ALT6.52%
IP1.65%
SAY-9.76%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
0/400
No comments
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)