Hardware Wallet Providers Distance Themselves from Coldcard Exploit
A recent exploit in Coldcard's firmware allowed an attacker to steal $38 million worth of BTC, sparking concerns about the safety of hardware wallets. However, Ledger and Trezor have distanced themselves from the incident, assuring their users that their own systems are secure.
Ledger uses a 256-bit mathematical complexity system (entropy), which makes seed phrases difficult to crack. In contrast, Coldcard's flaw downgraded its system from a 128-bit to a guessable 40-bit system, easily cracked using brute force.
Trezor also stated that their users should not be alarmed about the Coldcard incident, as they do not share the same code and are therefore unaffected by the exploit. Despite these assurances, the market reacted negatively, with BTC dropping to a two-week low of $62.4K.