Close Menu
StreamLineCrypto.comStreamLineCrypto.com
  • Home
  • Crypto News
  • Bitcoin
  • Altcoins
  • NFT
  • Defi
  • Blockchain
  • Metaverse
  • Regulations
  • Trading
What's Hot

Bitcoin price stalls at $65K as holder selling risk rises

August 8, 2026

Bitcoin’s exploit week worsens as BTCPay flaw drains Lightning nodes

August 8, 2026

Local Stablecoins Could Become Gateways to Digital Dollars: IMF

August 8, 2026
Facebook X (Twitter) Instagram
Sunday, August 9 2026
  • Contact Us
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms of Use
  • DMCA
Facebook X (Twitter) Instagram
StreamLineCrypto.comStreamLineCrypto.com
  • Home
  • Crypto News
  • Bitcoin
  • Altcoins
  • NFT
  • Defi
  • Blockchain
  • Metaverse
  • Regulations
  • Trading
StreamLineCrypto.comStreamLineCrypto.com

Coldcard Wallet Flaw Exposes Years Of Bitcoin Seeds After $70M In BTC Stolen

July 31, 2026Updated:August 1, 2026No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Coldcard Wallet Flaw Exposes Years Of Bitcoin Seeds After M In BTC Stolen
Share
Facebook Twitter LinkedIn Pinterest Email
ad


The favored Bitcoin {hardware} pockets Coldcard product, made by Coinkite, is in danger following a $70 million hack.

Coinkite on Thursday admitted that its Coldcard Mk3 mannequin was affected following the hack and suggested customers to maneuver their funds. Then, on Friday, the corporate mentioned that customers of the later {hardware} gadgets Mk4, Mk5, and Q also needs to take precautions. 

Hackers on Thursday had been first in a position to drain funds from 1,196 Bitcoin addresses as a result of their non-public keys weren’t generated utilizing enough entropy — or randomness. 

Since then, a complete of 1,082.65 Bitcoins have disappeared from wallets, in response to information from Galaxy Analysis and engineers at funds firm Block. 

Whereas Coinkite has not admitted that the hack is linked to their wallets, the corporate has mentioned {that a} pockets seed era bug in Coldcard merchandise meant the {hardware}’s true random quantity generator wasn’t really getting used on sure firmware variations. 

Coinkite and different engineers within the Bitcoin area are nonetheless investigating reportedly ongoing drains nonetheless occurring on the time of writing.

What really occurred 

A firmware bug in Coldcard Mk3 gadgets (beginning with model 4.0.1 in March 2021) induced seed era to fall again to a weak software program PRNG as a substitute of the {hardware} true random quantity generator, producing seeds with solely ~40 bits of entropy fairly than the supposed 128.  This made non-public keys for a lot of single-signature wallets (particularly these created with out cube rolls or a powerful BIP-39 passphrase) predictable sufficient for attackers to brute-force.

A complete of 594.5 Bitcoins price over $35.7 million at right this moment’s costs had been moved to a brand new handle from single-signature addresses on Thursday. 

NEW: Over 594 BTC price $38 million was stolen from Bitcoin {hardware} pockets Coldcard customers.

The attacker then moved across the BTC and consolidated 562 BTC into this handle under.

Customers are urged to evaluation the corporate’s official safety steering as quickly as potential. pic.twitter.com/exD2Wax7CY

— Bitcoin Journal (@BitcoinMagazine) July 31, 2026