Subject to the huge caveat that the attacker does not have physical access. https://tee.fail/
An interesting implementation flaw, but not a conceptual problem with the design.
An interesting implementation flaw, but not a conceptual problem with the design.