Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Malware on the host PC can steal your private key. An attacker who gets brief physical access (eg, you look away for a minute) can quickly copy a USB drive.

While this attack shows the trezor is probably a bit amateur-hour, it does provide some amount of value.



That's not how it works. The trezor is not a USB storage device, it is a usb serial port that communicates with an MCU.


I can see how reading my comment in isolation would be confusing.

Specifically, I was answering the question "Why not just use a USB drive"


No one claimed it is...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: