A compromised hardware wallet can slowly leak your private keys through the nonces in its signatures, even if the keys themselves were generated securely.
Anti-Exfil stops this by using sign-to-contract: Jade cryptographically commits its nonce to random data from your host computer, fully re-randomizing it so no key material can be smuggled out.
Blog written by Andrew Poelstra: https://blog.blockstream.com/anti-exfil-stopping-key-exfiltration/
More details: https://help.blockstream.com/hc/en-us/articles/9641573399961-What-is-Anti-Exfil-and-how-does-it-work
More from Excellion aka Excellion (nprofile…pykq):
