Coinkite
Coverage of Coinkite in the Nexus archive.
- Coldcard strengthens seed generation with firmware update
Coldcard strengthened its seed generation capabilities with a recent firmware update. Despite this security upgrade, Coinkite warned users that existing seed phrases remain unsafe. Consequently, Coinkite urged Coldcard users to generate new seed phrases.
- Self Custody Is Dead. Long Live Self Custody
A hack on Coldcard hardware wallets exploited flawed entropy generation in key creation, leading to the theft of over 1,300 bitcoins and prompting users to move funds to custodial exchanges. The incident challenges assumptions about self-custody security while emphasizing the need to preserve Bitcoin's decentralized principles.
- Nearly $32 Million in ‘Dormant’ Bitcoin Moves After Coldcard Hack Reaches Estimated $130M
A Bitcoin address holding $31.8 million in dormant coins moved its funds after 12 years, coinciding with a Coldcard wallet hack that has drained an estimated $130 million. Hackers exploited a vulnerability in Coldcard wallets, prompting warnings about security risks and urging investors to transfer funds to safer setups.
- Coldcard Bitcoin Theft Continues, Now Estimated Over $114 Million In Total Stolen
Hackers have stolen over $114 million in Bitcoin from Coldcard wallets due to a firmware bug in Coldcard Mk3 devices, allowing seedphrase guessing. Coinkite, the company behind Coldcard, confirmed all models were vulnerable and halted shipments of the product.
- Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes
A firmware flaw in Coldcard hardware wallets, made by Coinkite, was linked to a $70.2 million Bitcoin theft involving 1,082.65 BTC drained from 1,196 addresses in 41 minutes on July 30. Galaxy Research traced the attack to a March 2021 integration error that used a deterministic software pseudorandom number generator for seed generation.
- Coldcard Bitcoin Thief Likely Used Top Blockchain Services Provider: Report
Over $70 million in Bitcoin was stolen via a Coldcard exploit, with the thief using a top blockchain services provider to facilitate the attack. Coinkite admitted all Coldcard models were vulnerable due to a firmware bug causing weak private key generation.
- Coinkite Releases Fixed Firmware After Coldcard Bug; AI Likely Involved In The Breach
Coinkite released fixed firmware for Coldcard hardware wallets after a critical bug compromised private key generation, potentially stealing over 1,000 bitcoins. The vulnerability, likely involving AI in the breach, affected Coldcard MK3 devices with specific firmware versions. Users who did not use dice rolls or BIP 39 passphrases are at risk, and Coinkite advises firmware updates and wallet migrations to secure funds.
- COLDCARD SECURITY RISK: IMMEDIATE ACTION REQUIRED
Coldcard wallets (MK3, MK4, MK5, Q) have a critical security vulnerability allowing attackers to brute-force seed phrases if generated without sufficient entropy (e.g., 50+ dice rolls). Funds are actively being drained, with 1000 BTC reported moved. Immediate action is required to move funds to secure wallets, use passphrases, or adopt alternatives like Nunchuck.
- Coldcard Wallet Flaw Exposes Years of Bitcoin Seeds After $70M in BTC Stolen
A firmware bug in Coldcard Wallet's Mk3 model caused weak entropy in seed generation, leading to predictable private keys and the theft of over $70 million in Bitcoin. Coinkite advised users of affected models (Mk3, Mk4, Mk5, Q) to move funds after hackers exploited the vulnerability to drain multiple addresses.
- $38M in Bitcoin Drained by Coldcard Key Flaw Its Maker Thinks AI Found
$38 million in Bitcoin was drained due to a vulnerability in Coldcard's firmware. Coinkite, the company behind Coldcard, suggests that an attacker likely used AI to analyze previous versions of its open-source firmware to uncover the flaw.
- ‘Funds may be at risk’: Coinkite issues warning for Coldcard Mk3 users amid 594 BTC theft reports
Coinkite has warned Coldcard Mk3 users that funds may be at risk following reports of 594 BTC thefts. The company advises users to create a strong, unique BIP-39 passphrase on the device and transfer funds to the resulting wallet.
- Coldcard issues Mk3 warning as experts examine $38M Bitcoin wallet drain
Coinkite advised Coldcard Mk3 users to transfer funds due to a potential seed-generation risk. Experts are investigating an unexplained $38 million Bitcoin wallet drain.
- Coinkite Launches Coldcard MK5: Major UX Upgrades to Flagship Bitcoin Hardware Wallet
Coinkite has released the Coldcard MK5, a Bitcoin hardware wallet with major user experience upgrades including a larger screen, redesigned tactile buttons, improved NFC connectivity, and a modernized chassis. The device builds on the security features of its predecessor, the MK4, while integrating technologies from the Coldcard Q.