<oembed><type>rich</type><version>1.0</version><title>drgo wrote</title><author_name>drgo (npub1fa…nthnd)</author_name><author_url>https://yabu.me/npub1fa8c9prxnrlkdtjl48adfsxyaduz8tas075l2n4f6903y9awjmxqanthnd</author_url><provider_name>njump</provider_name><provider_url>https://yabu.me</provider_url><html>That’s very easy. &#xA;&#xA;Step 1) suppose the secure element is backdoored&#xA;&#xA;Step 2) stay air gapped forever &#xA;&#xA;Step 3) input your own entropy from dice rolls &#xA;&#xA;Step 4) after signing a transaction, verify the transaction signature on your own node before broadcasting (which I believe but am not certain is done anyway)…just in case the signature is invalid and merely an attempt to disclose private key or seed or something else nefarious. &#xA;&#xA;Step 5) recognize that after the above, a back doored chip can do nothing nefarious other than sign incorrectly, in which case you need a new signing device/hardware wallet.</html></oembed>