ShellCodeX Intelligence Brief
CRITICAL
Cybersecurity
COLDCARD hardware wallet RNG bug tied to the $88.6M Bitcoin theft
Source headline: COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft
Threat level
Critical
Signal strength
85/100
Source confidence
1 source
Published
3 hours ago
Intelligence Summary
Researchers report that a flaw in COLDCARD firmware’s random number generator weakened key and seed creation. Attackers allegedly used this weakness to generate predictable or compromised wallet seeds. Thousands of wallets may have been affected, leading to an estimated $88.6 million Bitcoin theft. The incident highlights the risk of faulty entropy in hardware wallet key generation. COLDCARD users should ensure they are running the latest firmware and review guidance from the vendor for remediation.
Recommended Action
Prioritize immediate review, validate exposure, and patch or mitigate affected systems.
Topics
Original reporting
BleepingComputer
COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft
Open original source