http://lmgtfy.com/?q=ledger+trezor+vulnerability
So you can agree with me that address can be hijacked with Trezor, otherwise why it would display adress again? Eg. Legder Nano S is displaying few letters from address, it can be tricked by vanity address in similar letters. My point here is that the connection with PC is the weakest link, we do not have this link. Addresses cannot be hijacked at all. Using competitors device connected with PC requiring user to take special attention.
And how exactly do you have protection against clipboard jacking with addresses sent through email, or a program that detects addresses in QR codes and replaces those? I don't see how requiring the user to double check is bad. I'm sorry if Marketing is getting in your way, but please do not use words like "Impossible", "Cannot at all", etc.
You contradict yourself in that sentence.
blob=aes256CBC_encrypt(generatedHashAsKey,importedPrivateKey)
With this storage, when you can recover imported wallets when eg. you lost your device.
How do you plan on allowing the user to verify that it is indeed encrypted properly? With such a complex system, it would be trivial to put a backdoor.
Congrats, assuming you aren't making up numbers.
Ledger + cell phone? The "most advanced levels of security" should not have wallet data touching the cloud at all. I need to state once again: