What's Hot

    The CFTC Extended a Crypto Compliance Win to the Whole Industry

    09/20/2026

    TRON Inc.’s TRX came from HTX after UK sanctions

    09/20/2026

    MultiversX investigates potential mainnet issue

    09/20/2026
    Facebook Twitter Instagram
    Facebook Twitter Instagram
    CoinFlashDaily | Crypto Currency News
    • Home
    • Business

      BitMart Misses Roadmap Deadline and Appoints Financial Adviser

      09/09/2026

      Circle Targets Global Payments Growth With Tazapay Acquisition

      09/09/2026

      BitGo Acquires NYDIG Institutional Trading Business

      08/28/2026

      Japan’s SBI leads $68M Fasset round at $1B valuation

      08/24/2026

      MoonPay Adds Cash App Pay for Crypto Purchases in US

      08/19/2026
    • News
      1. Business
      2. Analysis
      3. View All

      BitMart Misses Roadmap Deadline and Appoints Financial Adviser

      09/09/2026

      Circle Targets Global Payments Growth With Tazapay Acquisition

      09/09/2026

      BitGo Acquires NYDIG Institutional Trading Business

      08/28/2026

      Japan’s SBI leads $68M Fasset round at $1B valuation

      08/24/2026

      EU Cyber Resilience Act Brings 24-Hour Vulnerability Reporting Into Force

      09/20/2026

      Ethereum Institutional Supports Ethlabs’ Motion to Reduce Ethereum Block Times

      09/19/2026

      B.AI’s Global Settlement Layer for the Agent Economy

      09/19/2026

      A New Connection Between Equity Assets and Crypto Liquidity

      09/18/2026

      The CFTC Extended a Crypto Compliance Win to the Whole Industry

      09/20/2026

      MultiversX investigates potential mainnet issue

      09/20/2026

      🏴 Crypto’s New Compliance Shield?

      09/19/2026

      Crypto VC funding: Kaiko leads $180M week

      09/19/2026
    • Analysis
      1. Bitcoin
      2. Ethereum
      3. Eurozone
      4. Monero
      5. View All

      Bitcoin price tests $60k as Saylor hints at more buying

      06/07/2026

      Why Cardano’s social activity surges as ADA crashes

      06/07/2026

      AVAX price crashes to early 2021 support, is a bottom forming?

      06/06/2026

      Dogecoin price nears $0.067 risk zone after 25% monthly crash

      06/05/2026

      Ethereum Institutional Supports Ethlabs’ Motion to Reduce Ethereum Block Times

      09/19/2026

      Ethereum, Base Wallet Standards Collaboration Breaks Down

      09/15/2026

      Bitmine Stakes 5M ETH as Treasury Holdings Reach $15.8B

      09/14/2026

      Consensys Plans Split as MetaMask Becomes Standalone Company

      09/10/2026

      Digital Euro: Aspirations of a Sovereign Alternative to Crypto-Assets

      01/04/2021

      Monero Observer – Monero Tech meeting scheduled for 10 August 2026 1800 UTC

      08/03/2026

      Monero Observer – Monero v0.18.4.4 ‘Fluorine Fermi’ tagged

      07/29/2026

      Monero Observer – Monero Research Lab meeting scheduled for 19 November 2025 1700 UTC

      07/25/2026

      Monero Observer – jeffro256 submits CCS proposal for Carrot/FCMP++ dev work in Q4 2025

      07/25/2026

      EU Cyber Resilience Act Brings 24-Hour Vulnerability Reporting Into Force

      09/20/2026

      Ethereum Institutional Supports Ethlabs’ Motion to Reduce Ethereum Block Times

      09/19/2026

      B.AI’s Global Settlement Layer for the Agent Economy

      09/19/2026

      A New Connection Between Equity Assets and Crypto Liquidity

      09/18/2026
    • Markets
    • Events
    Button
    CoinFlashDaily | Crypto Currency News
    Home»Markets»Investments»Coldcard attack: 25 minutes, 500 wallets, $38M in BTC gone
    Investments

    Coldcard attack: 25 minutes, 500 wallets, $38M in BTC gone

    adminBy admin08/01/2026没有评论4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email



    Someone likely used AI to drain almost 600 BTC, worth $38 million, from roughly 500 dormant wallets yesterday as part of a seed phrase exploit targeting Coldcard hardware wallets.

    The attack took just 25 minutes to move the BTC from 500 single-signature addresses into a single address, and reports suggest the exploit will likely continue.

    Coindesk reports that the affected BTC was dated between 2021 and 2026, and much had remained dormant for years. Of the 594 coins stolen, 562 remain in the same address at the time of writing.

    Coldcard maker, Coinkite, confirmed hours after the exploit that seed generation within its Mk3 wallet, and its subsequently updated versions beyond March 2021 (version 4.0.1), may not have been random at all.

    Coldcard initially claimed that its Mk3 devices were at risk, and that the Mk4, Q, and Mk5 are “not affected based on our early analysis.”

    The first post was the advisory and what users should do.

    This second post has the technical details: what actually went wrong, why our reviews missed it, the impact across Mk3/Mk4/Q/Mk5, and what we changed.https://t.co/HshUxevCl3

    ( current evaluating Mk3 firmware release ) https://t.co/Yfdx4XcztA

    — COLDCARD (@COLDCARDwallet) July 31, 2026

    Coinkite’s updated analysis of the $38 million wallet exploit.

    Read more: Credit default swaps forecast AI bankruptcies

    Block, formerly known as Square, found different results in its published analysis while one of its team members, Max Guise, found flaws between Mk2 and Mk5 Coldcard models.

    The payments company traced the bug to a mis-written compile-time check. The newer devices, Block found, carry a smaller, but real, version of the same flaw.

    Coinkite believes AI was used to discover exploit

    Coinkite’s recent analysis deduced that, because Coldcard’s source code is open and public, someone likely used AI to exploit it.

    It said that a few weeks before the attack, it couldn’t spot the bug even with Coinkite’s use of “the best available AI models.”

    It added, “Both attackers and defenders have the same AI tools, but today it did not help us, and only helped the bad guys.”

    Pseudonymous owners of Bitcoin.org website, Cobra, also expressed that they have “very bad feeling AI was involved,” and noted, “For whatever reason some addresses are only being partially drained despite the private key being compromised. Strange.”

    DeFi loses $35M in a day: Are ‘bounties’ inviting more hacks?

    Read more: Apple threatens Sparrow bitcoin wallet dev with App Store termination

    Crypto developer Stephen DeLorme claims he was able to use AI model Claude Opus 5 to sniff out the Coldcard vulnerability after cloning the firmware’s repository.

    “All our software is insecure, and we’re painfully figuring that out in realtime with AI agents,” DeLorme said.

    The technicalities behind the Coldcard BTC theft

    BTC wallets need genuinely random numbers to generate an unguessable private key. Coldcard’s firmware was supposed to pull that randomness from a hardware generator built into its STM32 chip.

    According to Block, a codebase check tested only whether a macro called MICROPY_HW_ENABLE_RNG was defined, not what value it held.

    Coinkite’s software build set that macro to zero on purpose. Because the character was set to zero, and not a variable symbol, the check was flawed.

    Despite this, the flawed check passed anyway during software operations. Firmware fell back to Yasmarang, a MicroPython pseudo-random number generator never meant for real-world cryptographic protection.

    Project Eleven paid a quantum prize for a random number generator

    Read more: The number of BTC wallets holding more than 0.1 BTC hasn’t grown in two years

    Bitcoin Core developer Gregory Sanders reproduced the attack using setup button-press counts, and confirmed its impact on Mk3 and Mk2 models. His own response to his findings was, “Sorry, this is the time to panic.”

    Sanders first wrote, “confirmed. Mk2/3 vuln, I don’t think mk4 is but can’t be certain,” before following up an hour later with “mk4 is probably not much better.”

    Got a tip? Send us an email securely via Protos Leaks. For more informed news and investigations, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

    The post Coldcard attack: 25 minutes, 500 wallets, $38M in BTC gone appeared first on Protos.





    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    admin
    • Website

    Related Posts

    TRON Inc.’s TRX came from HTX after UK sanctions

    09/20/2026

    Traders think Leopold Aschenbrenner just bet $96M on AI options

    09/19/2026

    CoreWeave down 32% since joining the Nasdaq 100

    09/18/2026

    Revolut faces $3M ransom demand after data breach, report

    09/17/2026
    Add A Comment

    Leave A Reply Cancel Reply

    Top Posts

    Millennials Are Quitting Job to Become Day Traders

    01/20/2021

    Jack Dorsey Says Bitcoin Will Unite The World

    01/15/2021

    Hong Kong Customs Arrest Four in Crypto Laundering Bust

    01/15/2021

    Subscribe to Updates

    Get the latest sports news from SportsSite about soccer, football and tennis.

    Advertisement
    Facebook Twitter Instagram Pinterest YouTube
    Top Insights

    The CFTC Extended a Crypto Compliance Win to the Whole Industry

    09/20/2026

    TRON Inc.’s TRX came from HTX after UK sanctions

    09/20/2026

    MultiversX investigates potential mainnet issue

    09/20/2026
    Get Informed

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook Twitter Instagram Pinterest
    • Home
    • Business
    • Markets
    • News
    • Contact us
    © {2025-2026} Coinflashdaily.com.

    Type above and press Enter to search. Press Esc to cancel.