Coldcard-related losses top $70M as Coinkite widens alert to newer models
AI مارکیٹ کا خلاصہ
A disclosed Coldcard firmware RNG regression (affecting multiple device generations below specified versions) is linked to ongoing seed brute-forcing, with reported thefts exceeding 1,080 BTC (~$70M) across ~1,200 wallets. While patches are available, remediation requires generating new seeds and migrating funds, extending operational risk. The episode pressures self-custody confidence and near-term security sentiment around bitcoin storage practices.
اثر کی سطح
● درمیانہ
متاثرہ اثاثے
BTC/USDT-2.58%
AI تجزیاتی سمجھ · BTC/USDTAI تجزیاتی سمجھ
▼ Bearish
ابھی ٹریڈ کریں
⚠️ AI سے تیار کردہ تجزیاتی سمجھ خبروں کے مواد پر مبنی ہے اور صرف معلوماتی مقاصد کے لیے فراہم کی گئی ہے۔ یہ سرمایہ کاری کا مشورہ نہیں ہے اور نہ ہی BingX کے خیالات کی نمائندگی کرتی ہے۔ سرمایہ کاری میں رسک شامل ہے۔ براہ کرم ذمہ داری سے ٹریڈ کریں۔
Losses tied to an exploit affecting Coldcard (@COLDCARDwallet) hardware wallets have climbed well beyond early estimates, with more than 1,080 bitcoin:native worth over $70 million reportedly siphoned from nearly 1,200 wallets, according to Galaxy Research and engineers at Block.
Coinkite said the issue stems from a 2021 firmware bug that replaced the device's hardware random number generator with a weak software fallback, leaving wallet seeds vulnerable to brute-force attacks.
The exposure affects Mk3 devices running 4.0.1–4.1.9, Mk4 and Mk5 devices below 5.6.0, and the Q below 1.5.0Q, unless the seed was generated using 50 or more dice rolls.
Patches are now available, including the Mk3 4.2.0 update released Friday. Coinkite cautioned that installing updates alone does not secure existing wallets. Users need to generate a new seed and move funds to new addresses. Reports indicate the draining activity is continuing.