Key facts
- BitBox has released firmware version v9.26.5 to address security vulnerabilities.
- The vulnerabilities could have led to compromised user funds or malicious firmware installation.
- The issues were discovered through AI audits.
- A previous fix was issued in July, with the latest update addressing further concerns.
- BitBox has confirmed that no exploitation of these vulnerabilities has been reported.
Hardware wallet manufacturer BitBox has released firmware version v9.26.5 to address two severe vulnerabilities and a bootloader issue. These flaws could have potentially put user funds at risk or allowed for the installation of malicious firmware on the devices. The company stated that its AI audits uncovered these vulnerabilities. A prior fix was implemented in July, with the latest update containing further security enhancements. BitBox has issued a warning to its users regarding the discovered vulnerabilities, emphasizing that no exploitation has been reported to date.
