Web3: Coldcard key vulnerability leads to the theft of approximately 594 bitcoins.
Decrypt
Ai 焦點
Coinkite claims that the Coldcard seed generation vulnerability has resulted in the theft of approximately 594 bitcoins, and attackers may have used AI to discover the problem.
有幫助
No.幫助

Hardware wallet manufacturer Coinkite disclosed that some Coldcard devices used an incorrect random number source when generating seeds, resulting in insufficient randomness in the mnemonic phrase. The company estimates that this issue has been exploited, with approximately 594 bitcoins being transferred from about 500 wallets within 25 minutes.

The vulnerability lies in the random number call.

Coinkite stated that the firmware was supposed to call the hardware random number generator, but a software fallback implementation from MicroPython also existed in the codebase, and both had the same function signature. Because the preprocessing checks during the build only checked whether the setting existed and did not verify the value, the device ultimately went to the software fallback path without reporting an error.

The company stated that this issue has existed since a migration in March 2021. As a result, the seed entropy generated by the device is lower than the design target, making it easier for attackers to guess the private key through brute force.

Mk3 has the highest risk

Coinkite states that all current Coldcard devices are affected to varying degrees. Mk3's effective search space is approximately 40 bits, significantly lower than the required 128-bit strength for a seed. Mk4, Q, and Mk5, due to the added entropy from the secure element, can achieve a strength of approximately 72 bits, but still fall short of the target level.

  • Mk3: Effective strength approximately 40 bits
  • Mk4, Q, Mk5: Approximately 72 bits
  • Tapsigner, OpenDime, and Satscard were unaffected.

You still need to change the seed after upgrading.

Coinkite has released an emergency hotfix, including version 5.6.0 for Mk4 and Mk5, and version 1.5.0Q for the Q model. However, the company emphasizes that upgrading the firmware will not fix previously generated torrents, and affected users will still need to regenerate new mnemonic phrases.

The company recommends that users migrate their funds after patching, and in conjunction with using a stronger BIP-39 passphrase, introducing additional entropy through at least 99 dice rolls, or both. Mk3, being no longer supported, requires a separate migration path.

The manufacturer mentioned that AI may be involved in discovering vulnerabilities.

Coinkite stated that the company can currently only assume that attackers discovered the issue by using AI to review its past open-source firmware versions. The company said it had also used a leading model to examine the same code a few weeks ago, but did not detect the vulnerability at that time.

Trezor subsequently reminded users that its products were unaffected, noting that even after restoring weak seeds generated on affected Coldcards to other brands of devices, the seeds themselves remained fragile. Block, after independent analysis, also stated that its products were unaffected by this incident.

打賞
$0
點讚
0
收藏
0
瀏覽量 863
HQYC提醒,請廣大讀者理性看待區塊鏈,切實提高風險意識,警惕各類虛擬代幣發行與炒作,站內所有內容僅係市場資訊或相關方觀點,不構成任何形式的投資建議。如發現站內內容含敏感資訊,可點擊“舉報”,我們會及時處理。
提交
評論 0
最熱
最新
還沒有人評論喔~快搶沙發吧!
相關閱讀
web3: Coldcard密鑰漏洞致約594枚比特幣被盜
Coinkite稱 Coldcard 種子生成漏洞已致約 594 枚比特幣被盜,攻擊者可能藉助 AI 發現問題。
Decrypt
·2026-07-31 17:25:06
658
web3: Coldcard錢包漏洞致594枚比特幣被轉走
Coldcard 部分硬體錢包被曝有金鑰產生缺陷,攻擊者在 25 分鐘內轉走約 594 枚比特幣。
CoinDesk
·2026-07-31 13:25:06
564
web3: 美國仲裁協會設立Web3糾紛專家小組
美國仲裁協會推出 Web3 專家小組,處理區塊鏈、智慧合約和數位資產糾紛,案件仍需具備仲裁協議基礎。
crypto.news
·2026-07-30 13:04:34
728
web3: 不丹委任3iQ管理部分比特幣儲備
不丹格勒普正念城委任 3iQ 管理部分比特幣儲備,相關規模與風控細節暫未公開。
crypto.news
·2026-07-31 14:45:05
723
web3: Hyperliquid現近3,290萬美元HYPE轉入
約 55.79 萬枚 HYPE 轉入 Hyperliquid,鏈上分析稱相關代幣或被用於質押,HYPE 同期繼續回落。
U.Today
·2026-07-25 20:30:08
237