Web3: Coldcard key vulnerability leads to the theft of approximately 594 bitcoins.
Decrypt
16小时前
Ai 焦点
Coinkite claims that the Coldcard seed generation vulnerability has resulted in the theft of approximately 594 bitcoins, and attackers may have used AI to discover the problem.
有帮助
No.帮助

Hardware wallet manufacturer Coinkite disclosed that some Coldcard devices used an incorrect random number source when generating seeds, resulting in insufficient randomness in the mnemonic phrase. The company estimates that this issue has been exploited, with approximately 594 bitcoins being transferred from about 500 wallets within 25 minutes.

The vulnerability lies in the random number call.

Coinkite stated that the firmware was supposed to call the hardware random number generator, but a software fallback implementation from MicroPython also existed in the codebase, and both had the same function signature. Because the preprocessing checks during the build only checked whether the setting existed and did not verify the value, the device ultimately went to the software fallback path without reporting an error.

The company stated that this issue has existed since a migration in March 2021. As a result, the seed entropy generated by the device is lower than the design target, making it easier for attackers to guess the private key through brute force.

Mk3 has the highest risk

Coinkite states that all current Coldcard devices are affected to varying degrees. Mk3's effective search space is approximately 40 bits, significantly lower than the required 128-bit strength for a seed. Mk4, Q, and Mk5, due to the added entropy from the secure element, can achieve a strength of approximately 72 bits, but still fall short of the target level.

  • Mk3: Effective strength approximately 40 bits
  • Mk4, Q, Mk5: Approximately 72 bits
  • Tapsigner, OpenDime, and Satscard were unaffected.

You still need to change the seed after upgrading.

Coinkite has released an emergency hotfix, including version 5.6.0 for Mk4 and Mk5, and version 1.5.0Q for the Q model. However, the company emphasizes that upgrading the firmware will not fix previously generated torrents, and affected users will still need to regenerate new mnemonic phrases.

The company recommends that users migrate their funds after patching, and in conjunction with using a stronger BIP-39 passphrase, introducing additional entropy through at least 99 dice rolls, or both. Mk3, being no longer supported, requires a separate migration path.

The manufacturer mentioned that AI may be involved in discovering vulnerabilities.

Coinkite stated that the company can currently only assume that attackers discovered the issue by using AI to review its past open-source firmware versions. The company said it had also used a leading model to examine the same code a few weeks ago, but did not detect the vulnerability at that time.

Trezor subsequently reminded users that its products were unaffected, noting that even after restoring weak seeds generated on affected Coldcards to other brands of devices, the seeds themselves remained fragile. Block, after independent analysis, also stated that its products were unaffected by this incident.

打赏
$0
点赞
0
收藏
0
浏览量 869
HQYC提醒,请广大读者理性看待区块链,切实提高风险意识,警惕各类虚拟代币发行与炒作, 站内所有内容仅系市场信息或相关方观点,不构成任何形式投资建议。如发现站内内容含敏感信息,可点击“举报”,我们会及时处理。
提交
评论 0
最热
最新
还没有人评论哦~快抢沙发吧!
相关阅读
web3: Coldcard密钥漏洞致约594枚比特币被盗
Coinkite称 Coldcard 种子生成漏洞已致约 594 枚比特币被盗,攻击者可能借助 AI 发现问题。
Decrypt
·2026-07-31 17:25:06
259
web3: Coldcard钱包漏洞致594枚比特币被转走
Coldcard 部分硬件钱包被曝存在密钥生成缺陷,攻击者在 25 分钟内转走约 594 枚比特币。
CoinDesk
·2026-07-31 13:25:06
899
web3: 美国仲裁协会设立Web3纠纷专家组
美国仲裁协会推出 Web3 专家组,处理区块链、智能合约和数字资产纠纷,案件仍需具备仲裁协议基础。
crypto.news
·2026-07-30 13:04:34
915
web3: Ionic Digital纳斯达克首日上涨26%
Ionic Digital 在纳斯达克直接上市首日上涨 26%,为 Celsius 债权人提供流动性退出渠道。
CoinDesk
·2026-07-29 17:33:35
712
web3: Uphold裁员17%,转向企业业务
Uphold裁减约17%的全球员工,称将把资源转向增长更快的企业业务,并继续服务英国、欧洲和企业客户。
CoinDesk
·2026-07-28 00:52:47
615