BitBox, the hardware wallet maker operated by Swiss firm Shift Crypto AG, patched two critical firmware vulnerabilities affecting its BitBox02 and BitBox02 Nova devices. Both flaws were identified through AI-assisted security audits and included a memory corruption issue on unconfigured Multi devices and a Silent Payments bug that could lock user funds at incorrect addresses. No exploitation was observed, no funds were stolen, and existing wallet seeds remain unaffected. The fixes were shipped in Dixence firmware version 9.26.5. Additionally, a bootloader vulnerability previously patched in version 9.26.2 was found to be more severe than initially assessed.
Source: Read the original article

