The Trezor Safe 7 boardloader uses a hybrid scheme:

Signed with both SLH-DSA and ECDSA (secp256r1).

The ECDSA signature also signs the SLH-DSA signature.

It is described in more technical details here https://trezor.io/guides/trezor-devices/trezor-safe-7/going-quantum

Reply to this note

Please Login to reply.

Discussion

Sorry there is mistake in article. Will be updated soon.

Bootloader is signed with ed25519 not ecdsa