← All stories
● Covered by 1 source · 1 reportHigh impact

Laser Attack Allows Password Reset on Tangem Wallets Without Old Password

New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Laser pulse can reset Tangem wallet passwords remotely
  • No software fix possible for existing cards
  • Attack requires physical access and specialized equipment

Laser Attack Methodology

Researchers from Ledger's Donjon security team showed that a precisely timed laser pulse aimed at the chip inside a Tangem crypto wallet card can reset the wallet's password to any chosen value.

The attack effectively overrides the card's password protection, permitting an attacker to control the wallet without the previous password or any recovery cards.

Vulnerability Details

The Tangem wallet cards operate through a secure element that is meant to resist tampering. Users are supposed to safeguard their assets by possessing the card and knowing the password.

However, the card's password reset feature has a vulnerability: if a card is held together with another during a reset process, it can lead to a new password being accepted without verification. A laser pulse disrupts the chip's circuitry, tricking it into accepting new credentials.

Physical Access Required

It is crucial to note that this attack requires physical access to the card and advanced technical equipment costing around $250,000. The card also must be cut open, causing visible damage that leaves obvious evidence of tampering.

As a result, while this method poses a significant risk, it is not an immediate threat to all card holders, as the attack cannot be performed remotely.

Implications for Users

The vulnerability indicates that owners of lost or stolen Tangem cards should take immediate action, as those cards become prime targets for this type of attack.

Users of Tangem wallets are urged to take precautionary measures to secure their assets and be aware of the limitations of the product's security features.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~34 min · 27 stories · Oct 02

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Researchers demonstrated that a laser attack can reset Tangem wallet passwords, allowing complete control over the wallet. Since the flaw cannot be fixed through software updates, all existing cards remain vulnerable, posing a significant risk for owners of lost or stolen cards.