Just for people who don’t know, it’s shows relevant data regarding the transaction: Sum, currency, target address.
Now, if you verify that data, you are safe… if the original address was correct. But as we are talking about a sophisticated targeted attack, where did you get the original address from? Because if it was your phone or your computer, we are back to step one, as that might already be manipulated.
The hardware wallet itself has a screen, and requires you to confirm your transactions, so generally not true