Supply chain attack on Ledger that taps display via SPI using MCU, looks at character glyphs known beforehand, uses cellular modem with tiny built-in antenna.

https://grandideastudio.com/portfolio/security/ledger-hardware-implant/

(Note that with this implant the STM<->secure element is compromised here)