None
EN
Coldcard RNG Flaw Linked to Suspected $88.6M Bitcoin Theft
['Kezia Jungco']
eSecurity Planet
A random number generation flaw in Coldcard firmware may have left thousands of Bitcoin addresses with substantially weakened seeds.
The affected firmware generated seeds with reduced entropy, potentially allowing an attacker to reproduce candidate seeds offline, derive their Bitcoin addresses, and compare them with public blockchain data.
What affected wallet owners should doBefore migrating, owners should verify their existing backup and install the appropriate firmware update.
Multisignature configurations may offer protection only when the signing quorum does not consist entirely of affected devices.
For affected Coldcard owners, the immediate priority is to retire potentially weak seeds and move funds to a wallet generated with patched firmware.