AI Code Review Flags Long-Running Coldcard Firmware RNG Flaw Linked to $70M BTC Losses
AI مارکیٹ کا خلاصہ
A reported Coldcard firmware vulnerability alleges private keys were generated using a software PRNG rather than a hardware TRNG, potentially enabling large-scale key compromise and linking the issue to ~$70M in BTC theft across 1,196 wallets. The claim that AI tools identified the flaw quickly underscores operational risk in open-source wallet stacks and may heighten scrutiny of hardware-wallet security, increasing near-term risk aversion around BTC custody.
اثر کی سطح
● ہائی
متاثرہ اثاثے
BTC/USDT+1.46%
AI تجزیاتی سمجھ · BTC/USDTAI تجزیاتی سمجھ
▼ Bearish
ابھی ٹریڈ کریں
⚠️ AI سے تیار کردہ تجزیاتی سمجھ خبروں کے مواد پر مبنی ہے اور صرف معلوماتی مقاصد کے لیے فراہم کی گئی ہے۔ یہ سرمایہ کاری کا مشورہ نہیں ہے اور نہ ہی BingX کے خیالات کی نمائندگی کرتی ہے۔ سرمایہ کاری میں رسک شامل ہے۔ براہ کرم ذمہ داری سے ٹریڈ کریں۔
ChainCatcher reports that a developer on Reddit used Claude Code to audit Coldcard's open-source firmware and said it pinpointed a critical issue within eight minutes. The firmware was generating private keys with a software-based pseudorandom number generator rather than a hardware true random number generator, a weakness reportedly tied to roughly $70 million in BTC stolen from 1,196 wallets. Community members also said they independently reached the same conclusion using Zhipu GLM 5.2 (trained on June 16, run offline). According to the posts, the bug has been present in the wallet's open-source codebase for more than five years.