Skip to content
Back to Guavy Wire
Crypto

Coldcard Exploit Unleashes Massive $111M Bitcoin Heist

Instruments
BTC
Share

The Coldcard exploit has led to significant losses for Bitcoin holders, with investigators uncovering over $111 million in stolen funds. The attack occurred due to a flaw in some Coldcard wallets using firmware released after March 17, 2021, which may have affected wallet-seed security or generation.

The seed served as the master key for Bitcoin wallets, and attackers who managed to recreate it could access the money without physically compromising the Coldcard. The investigators found that no stolen coins came from wallets created before the mentioned firmware release date.

Over 25 attack patterns across three waves were identified, suggesting multiple threat actors exploited the vulnerability. Not every Coldcard wallet was affected, but those using Mk3, Mk4, Mk5, and Q models, which ran firmware released after March 17, 2021, appeared vulnerable.

More on Crypto

Disclaimer: Guavy is a data and market intelligence provider, not an investment advisor. The information, signals, and market analysis provided by the Guavy API and related services are for informational purposes only and are not intended as financial advice, investment recommendations, or an endorsement of any particular trading strategy. Trading in volatile markets, including cryptocurrency, carries significant risk and may not be suitable for all investors. Past performance is not indicative of future results. Users should consult with a qualified financial professional before making any investment decisions. Guavy makes no guarantee of trading profits or financial returns.

Market sentiment intelligence for apps, funds & agents

Location

729 55 Ave SW
Calgary AB T2V 0G4
Canada

© 2026 Guavy Inc