Coldcard Mk3 Vulnerability Exposes Millions in Stolen BTC
Critical security vulnerability discovered in Coldcard Mk3 devices running firmware versions 4.0.1 to 5.0.3, affecting seed expressions generated on these devices.
Coinkite advises users who may be at risk to immediately transfer their funds to a new and secure wallet.
The vulnerability was discovered amid ongoing investigations into an attack in which a large amount of BTC was stolen from hundreds of single-signature Bitcoin wallets.
Galaxy Research's analysis suggests that 1,196 wallets were completely emptied, with a total of 1,082.65 BTC compromised, worth approximately $70.2 million at the time of the transaction.