Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Tangem

Tangem Vendor Cyber Rating & Cyber Score

tangem.com

Tap into crypto freedom. Security. Utility. Mobility. 6M+ wallets and counting. Posts are not directed towards UK users.


Tangem A.I CyberSecurity Scoring

Tangem
Company Information
Website:https://tangem.com
Employees number:120
Number of followers:9,059
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:tangem.com
Tangem Risk Score (AI oriented)
Between 750 and 799
logo
TangemIT Services and IT Consulting
Updated:
12/03/2026
750/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Tangem Global Score (TPRM)
xxxx
logo
TangemIT Services and IT Consulting
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Tangem
TangemFair
Current Score
750Baa (FAIR)
01000
1 incidents
-1 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
751Before Incident
JUNE 2026
751Before Incident
MAY 2026
750Before Incident
APRIL 2026
750Before Incident
MARCH 2026
750Before Incident
FEBRUARY 2026
750Before Incident
JANUARY 2026
751Before Incident
Vulnerability
01 Jan 2026Tangem
Nothing, Kraken Wallet, MediaTek, Tangem and Base: Vulnerability in MediaTek Chips Could Impact 25% Android Smartphones

Critical Android Vulnerability Exposes Encryption Keys and Crypto Wallet Data

750After Incident
CRITICAL-1
TANKRANOTMEDCOI1773311566
Critical Android Vulnerability Exposes Encryption Keys and Crypto Wallet Data Security researchers at Ledger’s Donjon team have uncovered a severe vulnerability in certain Android smartphones, potentially affecting up to 25% of devices worldwide. The flaw, tied to specific MediaTek chipsets using Trustonic’s Trusted Execution Environment (TEE), allows attackers with brief physical access to extract sensitive data including encryption keys and cryptocurrency wallet seed phrases in under a minute. The issue stems from a weakness in the device’s boot chain, a security mechanism that validates system components during startup. Normally, this process protects encryption keys until the OS fully loads. However, researchers demonstrated that by connecting a vulnerable phone to a computer via USB, attackers could bypass security protections before the OS completes booting. In a proof-of-concept test using a Nothing CMF Phone 1, the Donjon team recovered the device’s PIN, decrypted storage, and extracted seed phrases from six crypto wallets Trust Wallet, Base, Kraken Wallet, Rabby, Tangem, and Phantom within 45 seconds. The vulnerability, tracked as CVE-2026-20435 in MediaTek’s security bulletin, affects devices relying on certain MediaTek processors, which are prevalent in budget and midrange Android phones. MediaTek has issued a firmware fix to manufacturers, but users must install pending updates to mitigate the risk. Until then, affected devices remain exposed to offline decryption attacks once root cryptographic keys are extracted. Ledger’s CTO, Charles Guillemet, noted that smartphones were not designed as secure storage for digital assets, emphasizing that their security depends on the integrity of hardware, firmware, and software. The discovery underscores the risks of storing sensitive data on mobile devices without additional safeguards.
INCIDENT DETAILS -
TYPE
Vulnerability Exploitation
IMPACT
Data Compromised: Encryption keys, cryptocurrency wallet seed phrasesSystems Affected: Android smartphones with specific MediaTek chipsetsBrand Reputation Impact: Potential reputational damage to affected manufacturers and crypto wallet providersIdentity Theft Risk: High (due to exposure of encryption keys and seed phrases)Payment Information Risk: High (cryptocurrency wallet data)
DATA BREACH
Type Of Data Compromised: Encryption keys, cryptocurrency wallet seed phrasesSensitivity Of Data: High (cryptographic keys, financial data)Data Exfiltration: Possible (attackers can extract data)Data Encryption: Weakened (due to vulnerability in boot chain)Personally Identifiable Information: Cryptocurrency wallet seed phrases (indirect PII risk)
DECEMBER 2025
751Before Incident
NOVEMBER 2025
751Before Incident
OCTOBER 2025
751Before Incident
SEPTEMBER 2025
751Before Incident
AUGUST 2025
751Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Tangem ?
?
What was Tangem's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Tangem's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Tangem's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Tangem's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Tangem's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Tangem's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Tangem's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Tangem's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Tangem's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Tangem's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Tangem's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on Tangem's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Tangem ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Tangem's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
Tangem Cyber Scoring History | Rankiteo