Bullish

Coldcard Wallet Attack Surges to $116M, Draining 1,816 BTC from 5,200 Addresses

2026-08-04 17:34

Fourth wave of Coldcard exploits drains $116M total, with 449 BTC moved recently. High-frequency transfers suggest parallel scanning of compromised key spaces stemming from a 2021 firmware flaw.

Woofun AI reports that the Coldcard hardware wallet security breach has escalated to approximately $116 million in losses, involving the transfer of 1,816 BTC from more than 5,200 addresses. Galaxy Research identified a fourth wave of activity, moving roughly 449 BTC, with transaction rates hitting 13.8 per block—45 times the pre-incident baseline. Alex Thorn, head of Galaxy Research, characterized the event as "the fourth round of organized theft," noting patterns consistent with multiple groups scanning the affected key space simultaneously. The vulnerability originates from a 2021 firmware update that switched seed generation from hardware random sources to a predictable software model. Coinkite advises users who generated seeds on these devices to migrate funds to secure wallets immediately.

WOOFUN AI

Impact Assessment · Quick Read

The scale of the Coldcard exploit underscores severe risks associated with legacy firmware vulnerabilities in hardware wallets. With transaction rates far exceeding normal baselines, the coordinated nature suggests sophisticated actors are actively exploiting known cryptographic weaknesses. This incident may accelerate industry scrutiny on deterministic seed generation methods and prompt broader audits of older device firmware.
Generated by WOOFUN AI · For reference only, not investment advice

Comments

Me
Replying to @User
0/800

No comments yet.

Notifications

Sign in to view messages
View all messagesManage subscriptions