Web3: Coldcard wallet vulnerability leads to the theft of 594 bitcoins.
CoinDesk
Ai 焦點
Coldcard hardware wallets were found to have a key generation flaw, allowing attackers to steal approximately 594 bitcoins within 25 minutes.
有幫助
No.幫助

Canadian hardware wallet maker Coinkite's Coldcard has been found to have a key generation flaw. Attackers exploited this vulnerability to transfer 594 bitcoins in approximately 25 minutes, estimated at around $38 million based on the price mentioned in the article. About 500 addresses were affected, all of which are single-signature wallets.

Transfer out within 25 minutes

On-chain records show that the funds were rapidly transferred out between 01:31 and 01:56 UTC on Friday. The relevant transfers were distributed across 3 blocks, involving a total of 500 transactions and 1324 Bitcoins.

Of these, 562 bitcoins were subsequently consolidated into a single address and had not been transferred further as of the time of this report. The emptied wallets all shared a common characteristic: they were all single-signature addresses, and each wallet held more than 0.15 bitcoins.

Many of the addresses have not been used for many years, and the funds were formed between 2021 and 2026, a timeframe that largely coincides with the period when the vulnerability existed.

The vulnerability stems from a failure in random number generation.

The problem lies in Coldcard's random number generation process when generating wallet seeds. By design, wallet seeds should come from a highly random source that is difficult to predict, but a report released by Block's Bitcoin Engineering and Security team states that some Coldcard firmware versions skip the hardware random number generator when generating keys.

The report states that the device's configuration allows it to bypass a hardware random source and instead generate keys using software. This process relies on non-confidential data such as chip serial numbers and clock registers. Because this information is not secret, attackers can use it to narrow down their guesses and potentially recover the wallet seed.

Block traced this change back to a code commit on March 1, 2021, and said the issue was subsequently incorporated into the 4.0.0 firmware released that month.

The affected area refers to Mk3 devices.

Coinkite has advised users to carefully check wallet seeds created on Mk3 devices using firmware version 4.0.1 or later. The company initially stated that Mk4, Q, and Mk5 models do not appear to be affected at present.

The report also mentioned that the risks are not limited to ordinary wallet seeds. Paper wallet private keys, seed split masks, device cloning keys, and Key Teleport transfer functions that use the same generation logic may also be affected.

Block stated that it has notified Coinkite of its findings, and the latter has confirmed receipt of the information. Both parties acknowledge that the current analysis is still in its preliminary stages, but Block believes that given the attack has already occurred, it is disclosing the findings before completing all exploitability testing.

Additional information:From a market perspective, this large-scale transfer has not yet had a significant impact on the price of Bitcoin. At the time the report was published, Bitcoin was still above $64,000 in early Asian trading.

打賞
$0
點讚
0
收藏
0
瀏覽量 972
HQYC提醒,請廣大讀者理性看待區塊鏈,切實提高風險意識,警惕各類虛擬代幣發行與炒作,站內所有內容僅係市場資訊或相關方觀點,不構成任何形式的投資建議。如發現站內內容含敏感資訊,可點擊“舉報”,我們會及時處理。
提交
評論 0
最熱
最新
還沒有人評論喔~快搶沙發吧!
相關閱讀
web3: Coldcard密鑰漏洞致約594枚比特幣被盜
Coinkite稱 Coldcard 種子生成漏洞已致約 594 枚比特幣被盜,攻擊者可能藉助 AI 發現問題。
Decrypt
·2026-07-31 17:25:06
656
web3: Coldcard錢包漏洞致594枚比特幣被轉走
Coldcard 部分硬體錢包被曝有金鑰產生缺陷,攻擊者在 25 分鐘內轉走約 594 枚比特幣。
CoinDesk
·2026-07-31 13:25:06
561
web3: 美國仲裁協會設立Web3糾紛專家小組
美國仲裁協會推出 Web3 專家小組,處理區塊鏈、智慧合約和數位資產糾紛,案件仍需具備仲裁協議基礎。
crypto.news
·2026-07-30 13:04:34
728
web3: 不丹委任3iQ管理部分比特幣儲備
不丹格勒普正念城委任 3iQ 管理部分比特幣儲備,相關規模與風控細節暫未公開。
crypto.news
·2026-07-31 14:45:05
722
web3: Hyperliquid現近3,290萬美元HYPE轉入
約 55.79 萬枚 HYPE 轉入 Hyperliquid,鏈上分析稱相關代幣或被用於質押,HYPE 同期繼續回落。
U.Today
·2026-07-25 20:30:08
237