Subscribe
CryptoWeb.xyz
No Result
View All Result
  • Home
  • News
  • Altcoin
  • Bitcoin
  • Blockchain
  • Ethereum
  • Litecoin
  • Home
  • News
  • Altcoin
  • Bitcoin
  • Blockchain
  • Ethereum
  • Litecoin
No Result
View All Result
CryptoWeb.xyz
No Result
View All Result

An Inside Look Into the Surprisingly Friendly Rivalry Between Ledger and Trezor

Trezor and Ledger, two of the most prominent hardware wallet manufacturers, have long been locked in a rivalry.

As part of Cointelegraph’s interview with Charles Guillemet, the CTO of Ledger, he revealed that the relationship is more complex than it may seem at first. Despite the rhetoric, cooperation and respect can be found as well.

A collaborative rivalry

Guillemet said that he doesn’t know who started the rivalry, as it goes back to the “very beginning of the Ledger and Trezor companies.”

Related articles

SpankPay crypto payment service shutters, citing ‘hostile banking environment

Manta Network seeks to bring privacy to nonfungible crypto assets with new NPO platform

“I think things got more serious when I created the Donjon, which is our internal security team,” he conceded. The Donjon was one of the first innovations introduced by Guillemet when he joined Ledger, due to his belief that the only way to design a secure system is to “try to break it, again and again.”

While the Donjon focused on Ledger wallets, they also began looking at competitors’ products. “At the beginning that was mostly by curiosity. We just wanted to understand how they work,” he said.

That study resulted in the team finding vulnerabilities in “each single wallet that we looked at.” Guillemet noted:

“When you find a vulnerability, the right thing to do is to report it to the vendor. And that’s what we did.”

The vendors then fixed the vulnerabilities, even giving bounties to Ledger some of the time. Regarding Trezor, he mentioned a “battle of PR” between the companies, adding:

“At the end, one thing which is completely true, is that the wallet security of Trezor improved a lot thanks to us.”

While Guillemet did not remember the exact number of vulnerabilities reported to Trezor, he said they were about “six or seven.” All of them were patched except one, which was unfixable due to the fundamental design of Trezor’s chips.

Due to this, the Ledger team did not disclose its details, though they were independently reported a year later by Kraken’s security team.

Open source vs. security

The reason why the bug is unfixable is that Trezor uses a so-called MCU chip in its wallet, which is used in common household appliances and was not meant for secure data storage, Guillemet explained. When asked why, he said that this was a conscious design choice:

“They are of strong belief in open source philosophy, and when you use the Secure Element, you have to sign an NDA with the chip manufacturer, which prevents you from giving any information on what’s going on inside the chip.”

The Secure Element used by Ledger contains many countermeasures, which an open source firmware would likely reveal. According to Guillemet, secure elements are unacceptable to Trezor as they want to maintain their software completely open.

Guillemet said that open source software is “a very good thing” and noted that he personally contributed to some projects. “But when you design a security device, I think security is the most important thing.”

While he conceded that open source software could be a security benefit due to the additional scrutiny, this is not enough:

“As it prevents you from using a dedicated Secure Element, at the end you end up with a less secure device.”

Guillemet shared that he has a “good relationship personally with people at Trezor,” referring to them as “very interesting guys” — even if the two teams’ philosophies are different.

Share122Tweet76Share31
Previous Post

CBDCs With a Twist: The Public-Private Solutions Needed for Adoption

Next Post

Ethereum Second-Layer Scalability Still Needs Work, Says Starkware CEO

Related Posts

SpankPay crypto payment service shutters, citing ‘hostile banking environment
Blockchain

SpankPay crypto payment service shutters, citing ‘hostile banking environment

Manta Network seeks to bring privacy to nonfungible crypto assets with new NPO platform
Blockchain

Manta Network seeks to bring privacy to nonfungible crypto assets with new NPO platform

Polygon, Immutable zkEVM to tackle ‘huge incumbents exploiting players’
Blockchain

Polygon, Immutable zkEVM to tackle ‘huge incumbents exploiting players’

Blockchain gaining adoption in more than just DeFi: Report
Blockchain

Blockchain gaining adoption in more than just DeFi: Report

GameFi project Gala files $28M lawsuit against pNetwork
Blockchain

GameFi project Gala files $28M lawsuit against pNetwork

Paris Blockchain Week 2023: Latest updates by Cointelegraph
Blockchain

Paris Blockchain Week 2023: Latest updates by Cointelegraph

ADS SIDE

More News

Bitcoin and Ethereum Price Predictions: Analyzing the Recent 10% Surge in BTC and Its Impact on ETH Today

Bitcoin and Ethereum Price Predictions: Analyzing the Recent 10% Surge in BTC and Its Impact on ETH Today

SpankPay crypto payment service shutters, citing ‘hostile banking environment

SpankPay crypto payment service shutters, citing ‘hostile banking environment

Euler Finance to enter talks with exploiter over the return of funds

Euler Finance to enter talks with exploiter over the return of funds

Bitcoin’s Correlation to US Stocks Hits 20-month Lows – Here’s Why That’s Bullish for BTC

Bitcoin’s Correlation to US Stocks Hits 20-month Lows – Here’s Why That’s Bullish for BTC

Crypto Fear and Greed Index hits highest level since Bitcoin’s all-time high

Crypto Fear and Greed Index hits highest level since Bitcoin’s all-time high

Divergent On-chain Trends Within Ethereum/Bitcoin Network Add to Reasons Why the ETH/BTC Price Might Continue Dropping

Divergent On-chain Trends Within Ethereum/Bitcoin Network Add to Reasons Why the ETH/BTC Price Might Continue Dropping

Manta Network seeks to bring privacy to nonfungible crypto assets with new NPO platform

Manta Network seeks to bring privacy to nonfungible crypto assets with new NPO platform

Bitcoin Price Prediction As BTC Approaches $30,000 Level – Can BTC Hit a New All-Time High in 2023?

Bitcoin Price Prediction As BTC Approaches $30,000 Level – Can BTC Hit a New All-Time High in 2023?

Hostile Takeover Fears: DefiLlama Co-Founder Exposes Internal Rift over Token Launch – What’s Going On?

Hostile Takeover Fears: DefiLlama Co-Founder Exposes Internal Rift over Token Launch – What’s Going On?

Investors shelter in short-term Treasurys, reducing Bitcoin’s chance of rallying to $30K

Investors shelter in short-term Treasurys, reducing Bitcoin’s chance of rallying to $30K

  • Advertise with us
  • Contact Us
  • Disclaimer
  • Terms & Conditions
  • Privacy Policy
  • Sitemap

© 2020 Copyright - All rights reserved.

No Result
View All Result
  • Home
  • News
  • Altcoin
  • Bitcoin
  • Blockchain
  • Ethereum
  • Litecoin

© 2020 Copyright - All rights reserved.

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT