COLDCARD Wallet Flaw Exposed: $38 Million BTC Heist Tied to Firmware Vulnerability
A critical entropy-generation flaw has been discovered in certain COLDCARD Mk2 and Mk3 firmware versions, potentially compromising wallet recovery seeds. Coinkite disclosed the issue, which may have weakened security.
According to PeckShield, the vulnerability is linked to a $38 million Bitcoin theft. Users who generated seeds using affected firmware are advised to update to the patched version, create a new wallet seed, and transfer their funds.