Latest reviewed change
source content difference between and
Another honeypot (HP-E786) was swept and the live/swept counts flipped, while an older sweep (HP-2C6F) aged out of the event log and the table updated the status of HP-9C4F.
track which ones an attacker sweeps and how fast. This maps the frontier of what
coins are being confiscated. Read the methodology →
honeypots19
-live10
-swept9
+live9
+swept10
value exposed~0.01 BTC
First lines only. The complete diff is in the timeline below.
- Organisation
- CKTRIPWIRE
- Evidence role
- Chain monitor
- Published
- continuously updated
- Source changes
- 19
- Detected differences
- 19
- Unreviewed
- 0
- Copies held
- 20
Live experiment funding deliberately vulnerable Mk3-v4 honeypots with different added dice-roll or passphrase entropy, then recording whether and how quickly they are swept. It exposes anonymised handles, coarse value bands and transaction links while withholding addresses for live honeypots. This is primary experimental reporting by the operator; the setup, entropy estimates and attacker attribution have not been independently reproduced by this archive.
Every check is recorded, including checks that found no text change. A detected edit is therefore bounded between two checks. The publisher's exact save time is not observable from this record. Last checked .
This post is held twice: here, with this project's own note on why it matters, and again as part of the conversation captured at , which is polled for changes. Both copies are the same post; neither is a separate event.
Snapshot and diff bodies for this chain monitor are held in the local evidence archive but withheld from the public site because they can contain the addresses of people who published nothing themselves. Capture times and reviewed change summaries remain available below.
Held captures
-
Another honeypot (HP-E786) was swept and the live/swept counts flipped, while an older sweep (HP-2C6F) aged out of the event log and the table updated the status of HP-9C4F.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 24 lines
track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 -live10 -swept9 +live9 +swept10 value exposed~0.01 BTC fastest sweep2m frontier~11 bits ^ time (utc) event difficulty +2026-08-13 00:59 +honeypot swept HP-E786 +low (pass) 2026-08-12 12:41 honeypot swept HP-9C4F low (pass) 2026-08-12 02:46 honeypot swept HP-D85A trivial -2026-08-08 16:44 -honeypot swept HP-2C6F -low (dice) honeypots handle device ~66 min SWEPT swept in 2d14h49m -HP-E786 +HP-9C4F mk3 v4 low (pass) 11 ~3 days -LIVE -live <elapsed> -HP-9C4F +SWEPT +swept in 7d15h51m +HP-E786 mk3 v4 low (pass) 11 ~3 days SWEPT -swept in 7d15h51m +swept in 8d4h9m HP-8EF5 mk3 v4 low (dice) 2 low 7 +4 +3d15h38m 3 -3d15h38m -4 mid (pass) 1 0Extracted text as captured
CKTRIPWIRE last update 24 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live9 swept10 value exposed~0.01 BTC fastest sweep2m frontier~11 bits ^ recent activity last 5 events time (utc) event difficulty 2026-08-13 00:59 honeypot swept HP-E786 low (pass) 2026-08-12 12:41 honeypot swept HP-9C4F low (pass) 2026-08-12 04:23 honeypot swept HP-D4A0 trivial 2026-08-12 02:46 honeypot swept HP-88A9 trivial 2026-08-12 02:46 honeypot swept HP-D85AExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
A new sweep was recorded: HP-9C4F with low (pass) entropy was swept on 2026-08-12, raising swept to 9, lowering live to 10, and pushing the estimated frontier from about 5 bits to about 11 bits. An older HP-10ED sweep row was removed, one active honeypot changed from LIVE to SWEPT, and the displayed row order shifted.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 26 lines
track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 -live11 -swept8 +live10 +swept9 value exposed~0.01 BTC fastest sweep2m -frontier~5 bits ^ +frontier~11 bits ^ recent activity last 5 events time (utc) event difficulty +2026-08-12 12:41 +honeypot swept HP-9C4F +low (pass) 2026-08-12 04:23 honeypot swept HP-D4A0 trivial trivial 2026-08-08 16:44 honeypot swept HP-2C6F -low (dice) -2026-08-08 16:43 -honeypot swept HP-10ED low (dice) honeypots handle ~66 min SWEPT swept in 2d14h49m -HP-9C4F +HP-E786 mk3 v4 low (pass) 11 ~3 days LIVE live <elapsed> -HP-E786 +HP-9C4F mk3 v4 low (pass) 11 ~3 days -LIVE -live <elapsed> +SWEPT +swept in 7d15h51m HP-8EF5 mk3 v4 low (dice) 2 low 7 -2 -2d14h49m -5 +3 +3d15h38m +4 mid (pass) 1 0Extracted text as captured
CKTRIPWIRE last update 13 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live10 swept9 value exposed~0.01 BTC fastest sweep2m frontier~11 bits ^ recent activity last 5 events time (utc) event difficulty 2026-08-12 12:41 honeypot swept HP-9C4F low (pass) 2026-08-12 04:23 honeypot swept HP-D4A0 trivial 2026-08-12 02:46 honeypot swept HP-88A9 trivial 2026-08-12 02:46 honeypot swept HP-D85A trivial 2026-08-08 16:44 honeypot swept HP-2C6FExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard updated from 12 live and 7 swept honeypots to 11 live and 8 swept, recording that honeypot HP-D4A0 was swept after roughly 6 days 7 hours 36 minutes.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 14 lines
track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 -live12 -swept7 +live11 +swept8 value exposed~0.01 BTC fastest sweep2m frontier~5 bits ^ time (utc) event difficulty +2026-08-12 04:23 +honeypot swept HP-D4A0 +trivial 2026-08-12 02:46 honeypot swept HP-88A9 trivial 2026-08-08 16:43 honeypot swept HP-10ED low (dice) -2026-08-08 00:09 -honeypot funded HP-E736 -trivial honeypots handle device 3 word passphrase mk3 x.com/ColeTU/status/2085065558333022663 -LIVE -live <elapsed> +SWEPT +swept in 6d7h36m 0 added, random account mk3 x.com/ColeTU/status/2085065558333022663Extracted text as captured
CKTRIPWIRE last update 44 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live11 swept8 value exposed~0.01 BTC fastest sweep2m frontier~5 bits ^ recent activity last 5 events time (utc) event difficulty 2026-08-12 04:23 honeypot swept HP-D4A0 trivial 2026-08-12 02:46 honeypot swept HP-88A9 trivial 2026-08-12 02:46 honeypot swept HP-D85A trivial 2026-08-08 16:44 honeypot swept HP-2C6F low (dice) 2026-08-08 16:43 honeypot swept HP-10EDExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard lowered live honeypots from 14 to 12 and raised swept from 5 to 7, recording two new trivial sweeps (HP-88A9 and HP-D85A) and marking two previously live entries as swept after about 6 days 5 hours 59 minutes.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 24 lines
track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 -live14 -swept5 +live12 +swept7 value exposed~0.01 BTC fastest sweep2m frontier~5 bits ^ time (utc) event difficulty +2026-08-12 02:46 +honeypot swept HP-88A9 +trivial +2026-08-12 02:46 +honeypot swept HP-D85A +trivial 2026-08-08 16:44 honeypot swept HP-2C6F low (dice) low (dice) 2026-08-08 00:09 honeypot funded HP-E736 -trivial -2026-08-08 00:06 -honeypot funded HP-696E -low (dice) -2026-08-07 19:31 -honeypot swept HP-5F1D trivial honeypots handle 1 word passphrase mk3 x.com/ColeTU/status/2085065558333022663 -LIVE -live <elapsed> +SWEPT +swept in 6d5h59m 2 word passphrase mk3 x.com/ColeTU/status/2085065558333022663 -LIVE -live <elapsed> +SWEPT +swept in 6d5h59m 3 word passphrase mk3 x.com/ColeTU/status/2085065558333022663Extracted text as captured
CKTRIPWIRE last update 22 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live12 swept7 value exposed~0.01 BTC fastest sweep2m frontier~5 bits ^ recent activity last 5 events time (utc) event difficulty 2026-08-12 02:46 honeypot swept HP-88A9 trivial 2026-08-12 02:46 honeypot swept HP-D85A trivial 2026-08-08 16:44 honeypot swept HP-2C6F low (dice) 2026-08-08 16:43 honeypot swept HP-10ED low (dice) 2026-08-08 00:09 honeypot funded HP-E736Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard updated its honeypot state: live fell from 16 to 14, swept rose from 3 to 5, two low-dice honeypots (HP-2C6F and HP-10ED) were swept, and HP-696E went from live to swept in 2d14h49m.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 46 lines
track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 -live16 -swept3 +live14 +swept5 value exposed~0.01 BTC fastest sweep2m -frontier- +frontier~5 bits ^ recent activity last 5 events time (utc) event difficulty +2026-08-08 16:44 +honeypot swept HP-2C6F +low (dice) +2026-08-08 16:43 +honeypot swept HP-10ED +low (dice) 2026-08-08 00:09 honeypot funded HP-E736 trivial 2026-08-07 19:31 honeypot swept HP-5F1D trivial -2026-08-06 01:54 -honeypot funded HP-2C6F -low (dice) -2026-08-05 23:02 -honeypot funded HP-ADA6 -3-of-3 multisig honeypots handle device ~2 min SWEPT swept in 1h18m +HP-696E +mk3 v4 +low (dice) +5 +~66 min +LIVE +live <elapsed> HP-10ED mk3 v4 low (dice) 5 ~66 min -LIVE -live <elapsed> +SWEPT +swept in 3d15h38m HP-2C6F mk3 v4 low (dice) 5 ~66 min -LIVE -live <elapsed> -HP-696E -mk3 v4 -low (dice) -5 -~66 min -LIVE -live <elapsed> +SWEPT +swept in 2d14h49m HP-9C4F mk3 v4 low (pass) 2 low 7 -0 -- -7 +2 +2d14h49m +5 mid (pass) 1 0Extracted text as captured
CKTRIPWIRE last update 11 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live14 swept5 value exposed~0.01 BTC fastest sweep2m frontier~5 bits ^ recent activity last 5 events time (utc) event difficulty 2026-08-08 16:44 honeypot swept HP-2C6F low (dice) 2026-08-08 16:43 honeypot swept HP-10ED low (dice) 2026-08-08 00:09 honeypot funded HP-E736 trivial 2026-08-08 00:06 honeypot funded HP-696E low (dice) 2026-08-07 19:31 honeypot swept HP-5F1DExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The honeypot scoreboard changed its status label from PENDING to LIVE.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 2 lines
low (dice) 5 ~66 min -PENDING +LIVE live <elapsed> HP-9C4F mk3 v4Extracted text as captured
CKTRIPWIRE last update 47 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live16 swept3 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty 2026-08-08 00:09 honeypot funded HP-E736 trivial 2026-08-08 00:06 honeypot funded HP-696E low (dice) 2026-08-07 19:31 honeypot swept HP-5F1D trivial 2026-08-06 01:54 honeypot funded HP-2C6F low (dice) 2026-08-05 23:02 honeypot funded HP-ADA6Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard added two newly funded honeypots, HP-E736 and HP-696E, raised the live count from 14 to 16 and the total from 17 to 19, and removed older funding and sweep rows; it also added a pending low-dice entry and a live 2-of-4 Mk4 entry on zombo.com.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 38 lines
exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → -honeypots17 -live14 +honeypots19 +live16 swept3 value exposed~0.01 BTC fastest sweep2m time (utc) event difficulty +2026-08-08 00:09 +honeypot funded HP-E736 +trivial +2026-08-08 00:06 +honeypot funded HP-696E +low (dice) 2026-08-07 19:31 honeypot swept HP-5F1D trivial 2026-08-05 23:02 honeypot funded HP-ADA6 3-of-3 multisig -2026-08-05 20:49 -honeypot swept HP-8EF9 -trivial -2026-08-05 20:46 -honeypot funded HP-5F1D -trivial honeypots handle device ~66 min LIVE live <elapsed> +HP-696E +mk3 v4 +low (dice) +5 +~66 min +PENDING +live <elapsed> HP-9C4F mk3 v4 low (pass) ~1e21 yr LIVE live <elapsed> -showing 12 - sort: sec(bits) ascending (easiest to sweep first) +showing 13 - sort: sec(bits) ascending (easiest to sweep first) external honeypots community-submitted, watch-only handle device x.com/ColeTU/status/2085065558333022663 SWEPT swept in 1d22h44m +2-of-4, 0-added +mk4 +zombo.com +LIVE +live <elapsed> frontier summary difficulty deployed 1h18m 2 low -6 -0 -- -6 +7 +0 +- +7 mid (pass) 1 0Extracted text as captured
CKTRIPWIRE last update just now methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots19 live16 swept3 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty 2026-08-08 00:09 honeypot funded HP-E736 trivial 2026-08-08 00:06 honeypot funded HP-696E low (dice) 2026-08-07 19:31 honeypot swept HP-5F1D trivial 2026-08-06 01:54 honeypot funded HP-2C6F low (dice) 2026-08-05 23:02 honeypot funded HP-ADA6Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard reported one additional swept honeypot (HP-5F1D) and changed HP-D4A0 from live to swept after about 1 day and 22 hours.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 14 lines
track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots17 -live15 -swept2 +live14 +swept3 value exposed~0.01 BTC fastest sweep2m frontier- time (utc) event difficulty +2026-08-07 19:31 +honeypot swept HP-5F1D +trivial 2026-08-06 01:54 honeypot funded HP-2C6F low (dice) trivial 2026-08-05 20:46 honeypot funded HP-5F1D -trivial -2026-08-05 20:46 -honeypot funded HP-D4A0 trivial honeypots handle 0 added, random account mk3 x.com/ColeTU/status/2085065558333022663 -LIVE -live <elapsed> +SWEPT +swept in 1d22h44m frontier summary difficulty deployedExtracted text as captured
CKTRIPWIRE last update 49 minutes ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots17 live14 swept3 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty 2026-08-07 19:31 honeypot swept HP-5F1D trivial 2026-08-06 01:54 honeypot funded HP-2C6F low (dice) 2026-08-05 23:02 honeypot funded HP-ADA6 3-of-3 multisig 2026-08-05 20:49 honeypot swept HP-8EF9 trivial 2026-08-05 20:46 honeypot funded HP-5F1DExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard header gained an rss link: the site now advertises a feed. No honeypot data changed.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 1 lines
CKTRIPWIRE last update <relative-time> methodology +rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now.Extracted text as captured
CKTRIPWIRE last update 16 hours ago methodology rss admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots17 live15 swept2 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty 2026-08-06 01:54 honeypot funded HP-2C6F low (dice) 2026-08-05 23:02 honeypot funded HP-ADA6 3-of-3 multisig 2026-08-05 20:49 honeypot swept HP-8EF9 trivial 2026-08-05 20:46 honeypot funded HP-5F1D trivial 2026-08-05 20:46 honeypot funded HP-D4A0Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The operator revised the estimated GPU crack times sharply downward across every difficulty band (5 added bits from ~2 days to ~66 min, 13 bits from ~476 days to ~10 days) and dropped the tx column from recent activity. The anonymised honeypot handles were also re-randomised, so individual rows cannot be followed across captures; honeypot states (LIVE/SWEPT) are unchanged.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 110 lines
time (utc) event difficulty -tx 2026-08-06 01:54 -honeypot funded HP-8DA1 -low (dice) -- +honeypot funded HP-2C6F +low (dice) 2026-08-05 23:02 -honeypot funded HP-EDAD +honeypot funded HP-ADA6 3-of-3 multisig -- 2026-08-05 20:49 -honeypot swept HP-5AFC -trivial -62b8e9..6c060b -> +honeypot swept HP-8EF9 +trivial 2026-08-05 20:46 -honeypot funded HP-374B -trivial -- +honeypot funded HP-5F1D +trivial 2026-08-05 20:46 -honeypot funded HP-A528 -trivial -- +honeypot funded HP-D4A0 +trivial honeypots handle device est. crack (GPU) status age / time-to-sweep -HP-C6F6 +HP-5D67 mk3 v4 2-of-3 multisig - - LIVE live <elapsed> -HP-EDAD +HP-ADA6 mk3 v4 3-of-3 multisig - - LIVE live <elapsed> -HP-3146 -mk3 v4 -trivial -0 -~88 min -SWEPT -> +HP-718B +mk3 v4 +trivial +0 +~2 min +SWEPT swept in 1h18m -HP-7B35 +HP-10ED mk3 v4 low (dice) 5 -~2 days -LIVE -live <elapsed> -HP-8DA1 +~66 min +LIVE +live <elapsed> +HP-2C6F mk3 v4 low (dice) 5 -~2 days -LIVE -live <elapsed> -HP-96ED +~66 min +LIVE +live <elapsed> +HP-9C4F mk3 v4 low (pass) 11 -~125 days -LIVE -live <elapsed> -HP-FA90 +~3 days +LIVE +live <elapsed> +HP-E786 mk3 v4 low (pass) 11 -~125 days -LIVE -live <elapsed> -HP-8284 +~3 days +LIVE +live <elapsed> +HP-8EF5 mk3 v4 low (dice) 13 -~476 days -LIVE -live <elapsed> -HP-FC1E +~10 days +LIVE +live <elapsed> +HP-C4AD mk3 v4 low (dice) 13 -~476 days -LIVE -live <elapsed> -HP-25AA +~10 days +LIVE +live <elapsed> +HP-0134 mk3 v4 mid (pass) 22 -~703 yr -LIVE -live <elapsed> -HP-0708 +~15 yr +LIVE +live <elapsed> +HP-9252 mk3 v4 high (pass) 33 -~1e6 yr -LIVE -live <elapsed> -HP-F755 +~1e4 yr +LIVE +live <elapsed> +HP-776C mk3 v4 extreme (dice) 90 -~1e23 yr +~1e21 yr LIVE live <elapsed> showing 12 - sort: sec(bits) ascending (easiest to sweep first) 0 added bits mk3 x.com/ColeTU/status/2085065558333022663 -SWEPT -> +SWEPT swept in 2m 1 word passphrase mk3Extracted text as captured
CKTRIPWIRE last update 12 hours ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots17 live15 swept2 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty 2026-08-06 01:54 honeypot funded HP-2C6F low (dice) 2026-08-05 23:02 honeypot funded HP-ADA6 3-of-3 multisig 2026-08-05 20:49 honeypot swept HP-8EF9 trivial 2026-08-05 20:46 honeypot funded HP-5F1D trivial 2026-08-05 20:46 honeypot funded HP-D4A0 trivialExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
HP-8DA1 changed from pending immediately after funding to live, with its age rendered as an elapsed duration.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 4 lines
low (dice) 5 ~2 days -PENDING -live <1m +LIVE +live <elapsed> HP-96ED mk3 v4 low (pass)Extracted text as captured
CKTRIPWIRE last update 57 minutes ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots17 live15 swept2 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty tx 2026-08-06 01:54 honeypot funded HP-8DA1 low (dice) - 2026-08-05 23:02 honeypot funded HP-EDAD 3-of-3 multisig - 2026-08-05 20:49 honeypot swept HP-5AFC trivial 62b8e9..6c060b -> 2026-08-05 20:46 honeypot funded HP-374BExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The operator added HP-8DA1, described as a low dice-entropy Mk3 v4 honeypot, initially marked pending. The scoreboard rose to 17 honeypots and 15 live entries.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 31 lines
exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → -honeypots16 -live14 +honeypots17 +live15 swept2 -value exposed~0.010 BTC +value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events event difficulty tx +2026-08-06 01:54 +honeypot funded HP-8DA1 +low (dice) +- 2026-08-05 23:02 honeypot funded HP-EDAD 3-of-3 multisig - 2026-08-05 20:46 honeypot funded HP-A528 -trivial -- -2026-08-05 20:46 -honeypot funded HP-B052 trivial - honeypots ~2 days LIVE live <elapsed> +HP-8DA1 +mk3 v4 +low (dice) +5 +~2 days +PENDING +live <1m HP-96ED mk3 v4 low (pass) ~1e23 yr LIVE live <elapsed> -showing 11 - sort: sec(bits) ascending (easiest to sweep first) +showing 12 - sort: sec(bits) ascending (easiest to sweep first) external honeypots community-submitted, watch-only handle device 1h18m 2 low -5 -0 -- -5 +6 +0 +- +6 mid (pass) 1 0Extracted text as captured
CKTRIPWIRE last update just now methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots17 live15 swept2 value exposed~0.01 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty tx 2026-08-06 01:54 honeypot funded HP-8DA1 low (dice) - 2026-08-05 23:02 honeypot funded HP-EDAD 3-of-3 multisig - 2026-08-05 20:49 honeypot swept HP-5AFC trivial 62b8e9..6c060b -> 2026-08-05 20:46 honeypot funded HP-374BExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The operator added the live HP-EDAD 3-of-3 multisig honeypot, raising the scoreboard to 16 honeypots and 14 live entries.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 29 lines
exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → -honeypots15 -live13 +honeypots16 +live14 swept2 -value exposed~0.007 BTC +value exposed~0.010 BTC fastest sweep2m frontier- recent activity last 5 events event difficulty tx +2026-08-05 23:02 +honeypot funded HP-EDAD +3-of-3 multisig +- 2026-08-05 20:49 honeypot swept HP-5AFC trivial - 2026-08-05 20:46 honeypot funded HP-B052 -trivial -- -2026-08-05 20:46 -honeypot funded HP-3B64 trivial - honeypots - LIVE live <elapsed> +HP-EDAD +mk3 v4 +3-of-3 multisig +- +- +LIVE +live <elapsed> HP-3146 mk3 v4 trivial ~1e23 yr LIVE live <elapsed> -showing 10 - sort: sec(bits) ascending (easiest to sweep first) +showing 11 - sort: sec(bits) ascending (easiest to sweep first) external honeypots community-submitted, watch-only handle device fastest still live trivial +3 +1 +1h18m 2 -1 -1h18m -1 low 5 0Extracted text as captured
CKTRIPWIRE last update 49 minutes ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots16 live14 swept2 value exposed~0.010 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty tx 2026-08-05 23:02 honeypot funded HP-EDAD 3-of-3 multisig - 2026-08-05 20:49 honeypot swept HP-5AFC trivial 62b8e9..6c060b -> 2026-08-05 20:46 honeypot funded HP-374B trivial - 2026-08-05 20:46 honeypot funded HP-A528Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard now shows the external Mk3 honeypots individually, with their source post and live or swept status, and changes its displayed sample from 15 to 10 entries.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 74 lines
est. crack (GPU) status age / time-to-sweep -0 added, random account -external -external -- -- -LIVE -live <elapsed> -1 word passphrase -external -external -- -- -LIVE -live <elapsed> -2 word passphrase -external -external -- -- -LIVE -live <elapsed> -3 word passphrase -external -external -- -- -LIVE -live <elapsed> HP-C6F6 mk3 v4 2-of-3 multisig - LIVE live <elapsed> -0 added bits -external -external -- -- -SWEPT -> -swept in 2m HP-3146 mk3 v4 trivial ~1e23 yr LIVE live <elapsed> -showing 15 - sort: sec(bits) ascending (easiest to sweep first) +showing 10 - sort: sec(bits) ascending (easiest to sweep first) +external honeypots community-submitted, watch-only +handle +device +source +status +age / time-to-sweep +0 added bits +mk3 +x.com/ColeTU/status/2085065558333022663 +SWEPT -> +swept in 2m +1 word passphrase +mk3 +x.com/ColeTU/status/2085065558333022663 +LIVE +live <elapsed> +2 word passphrase +mk3 +x.com/ColeTU/status/2085065558333022663 +LIVE +live <elapsed> +3 word passphrase +mk3 +x.com/ColeTU/status/2085065558333022663 +LIVE +live <elapsed> +0 added, random account +mk3 +x.com/ColeTU/status/2085065558333022663 +LIVE +live <elapsed> frontier summary difficulty deployed fastest still live trivial -7 2 -2m -5 +1 +1h18m +1 low 5 0Extracted text as captured
CKTRIPWIRE last update 1 hour ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots15 live13 swept2 value exposed~0.007 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty tx 2026-08-05 20:49 honeypot swept HP-5AFC trivial 62b8e9..6c060b -> 2026-08-05 20:46 honeypot funded HP-374B trivial - 2026-08-05 20:46 honeypot funded HP-A528 trivial - 2026-08-05 20:46 honeypot funded HP-B052Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard increased from 10 to 15 honeypots and from one to two sweeps. It reports five new trivial-entropy honeypots, one swept in two minutes, and a higher exposed-value total.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 91 lines
exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → -honeypots10 -live9 -swept1 -value exposed~0.006 BTC -fastest sweep1h18m +honeypots15 +live13 +swept2 +value exposed~0.007 BTC +fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty tx -2026-08-05 03:55 -honeypot funded HP-F755 -extreme (dice) -- -2026-08-05 03:43 -honeypot funded HP-C6F6 -2-of-3 multisig -- -2026-08-05 01:07 -honeypot funded HP-0708 -high (pass) -- -2026-08-05 01:06 -honeypot funded HP-25AA -mid (pass) -- -2026-08-05 01:05 -honeypot funded HP-7B35 -low (dice) +2026-08-05 20:49 +honeypot swept HP-5AFC +trivial +62b8e9..6c060b -> +2026-08-05 20:46 +honeypot funded HP-374B +trivial +- +2026-08-05 20:46 +honeypot funded HP-A528 +trivial +- +2026-08-05 20:46 +honeypot funded HP-B052 +trivial +- +2026-08-05 20:46 +honeypot funded HP-3B64 +trivial - honeypots handle est. crack (GPU) status age / time-to-sweep +0 added, random account +external +external +- +- +LIVE +live <elapsed> +1 word passphrase +external +external +- +- +LIVE +live <elapsed> +2 word passphrase +external +external +- +- +LIVE +live <elapsed> +3 word passphrase +external +external +- +- +LIVE +live <elapsed> HP-C6F6 mk3 v4 2-of-3 multisig - LIVE live <elapsed> +0 added bits +external +external +- +- +SWEPT -> +swept in 2m HP-3146 mk3 v4 trivial ~1e23 yr LIVE live <elapsed> -showing 10 - sort: sec(bits) ascending (easiest to sweep first) +showing 15 - sort: sec(bits) ascending (easiest to sweep first) frontier summary difficulty deployed fastest still live trivial +7 2 -1 -1h18m -1 +2m +5 low 5 0Extracted text as captured
CKTRIPWIRE last update 3 minutes ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots15 live13 swept2 value exposed~0.007 BTC fastest sweep2m frontier- recent activity last 5 events time (utc) event difficulty tx 2026-08-05 20:49 honeypot swept HP-5AFC trivial 62b8e9..6c060b -> 2026-08-05 20:46 honeypot funded HP-374B trivial - 2026-08-05 20:46 honeypot funded HP-A528 trivial - 2026-08-05 20:46 honeypot funded HP-B052Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard updated observed sweep-duration fields for several honeypots, including entries now shown at about 88 minutes, two days and 476 days, and revised one projected cracking estimate.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 27 lines
time (utc) event difficulty -value band tx 2026-08-05 03:55 honeypot funded HP-F755 extreme (dice) -0.001-0.01 - 2026-08-05 03:43 honeypot funded HP-C6F6 2-of-3 multisig -<=0.001 - 2026-08-05 01:07 honeypot funded HP-0708 high (pass) -<=0.001 - 2026-08-05 01:06 honeypot funded HP-25AA mid (pass) -<=0.001 - 2026-08-05 01:05 honeypot funded HP-7B35 low (dice) -<=0.001 - honeypots handle difficulty sec(bits) est. crack (GPU) -value band status age / time-to-sweep HP-C6F6 2-of-3 multisig - - -<=0.001 LIVE live <elapsed> HP-3146 mk3 v4 trivial 0 -~5 sec -<=0.001 +~88 min SWEPT -> swept in 1h18m HP-7B35 mk3 v4 low (dice) 5 -~3 min -<=0.001 +~2 days LIVE live <elapsed> HP-96ED low (pass) 11 ~125 days -<=0.001 LIVE live <elapsed> HP-FA90 low (pass) 11 ~125 days -<=0.001 LIVE live <elapsed> HP-8284 mk3 v4 low (dice) 13 -~11 hr -<=0.001 +~476 days LIVE live <elapsed> HP-FC1E mk3 v4 low (dice) 13 -~11 hr -<=0.001 +~476 days LIVE live <elapsed> HP-25AA mid (pass) 22 ~703 yr -<=0.001 LIVE live <elapsed> HP-0708 high (pass) 33 ~1e6 yr -<=0.001 LIVE live <elapsed> HP-F755 mk3 v4 extreme (dice) 90 -~1e20 yr -0.001-0.01 +~1e23 yr LIVE live <elapsed> showing 10 - sort: sec(bits) ascending (easiest to sweep first)Extracted text as captured
CKTRIPWIRE last update 5 hours ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots10 live9 swept1 value exposed~0.006 BTC fastest sweep1h18m frontier- recent activity last 5 events time (utc) event difficulty tx 2026-08-05 03:55 honeypot funded HP-F755 extreme (dice) - 2026-08-05 03:43 honeypot funded HP-C6F6 2-of-3 multisig - 2026-08-05 01:07 honeypot funded HP-0708 high (pass) - 2026-08-05 01:06 honeypot funded HP-25AAExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard added estimated GPU cracking times for its entropy categories, ranging from seconds to very long projected durations.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 11 lines
device difficulty sec(bits) +est. crack (GPU) value band status age / time-to-sweep HP-C6F6 mk3 v4 2-of-3 multisig +- - <=0.001 LIVE mk3 v4 trivial 0 +~5 sec <=0.001 SWEPT -> swept in 1h18m mk3 v4 low (dice) 5 +~3 min <=0.001 LIVE live <elapsed> mk3 v4 low (pass) 11 +~125 days <=0.001 LIVE live <elapsed> mk3 v4 low (pass) 11 +~125 days <=0.001 LIVE live <elapsed> mk3 v4 low (dice) 13 +~11 hr <=0.001 LIVE live <elapsed> mk3 v4 low (dice) 13 +~11 hr <=0.001 LIVE live <elapsed> mk3 v4 mid (pass) 22 +~703 yr <=0.001 LIVE live <elapsed> mk3 v4 high (pass) 33 +~1e6 yr <=0.001 LIVE live <elapsed> mk3 v4 extreme (dice) 90 +~1e20 yr 0.001-0.01 LIVE live <elapsed>Extracted text as captured
CKTRIPWIRE last update 2 hours ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots10 live9 swept1 value exposed~0.006 BTC fastest sweep1h18m frontier- recent activity last 5 events time (utc) event difficulty value band tx 2026-08-05 03:55 honeypot funded HP-F755 extreme (dice) 0.001-0.01 - 2026-08-05 03:43 honeypot funded HP-C6F6 2-of-3 multisig <=0.001 - 2026-08-05 01:07 honeypot funded HP-0708 high (pass)Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The scoreboard added two live Mk3 v4 honeypots, HP-C6F6 (2-of-3 multisig) and HP-F755 (extreme dice), raising its totals from eight to ten honeypots and from seven to nine live ones. Its stated exposed value rose from about 0.003 BTC to about 0.006 BTC.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 52 lines
exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → -honeypots8 -live7 +honeypots10 +live9 swept1 -value exposed~0.003 BTC +value exposed~0.006 BTC fastest sweep1h18m frontier- recent activity last 5 events difficulty value band tx +2026-08-05 03:55 +honeypot funded HP-F755 +extreme (dice) +0.001-0.01 +- +2026-08-05 03:43 +honeypot funded HP-C6F6 +2-of-3 multisig +<=0.001 +- 2026-08-05 01:07 honeypot funded HP-0708 high (pass) low (dice) <=0.001 - -2026-08-04 23:11 -honeypot funded HP-8284 -low (dice) -<=0.001 -- -2026-08-04 23:11 -honeypot funded HP-FC1E -low (dice) -<=0.001 -- honeypots handle device value band status age / time-to-sweep +HP-C6F6 +mk3 v4 +2-of-3 multisig +- +<=0.001 +LIVE +live <elapsed> HP-3146 mk3 v4 trivial <=0.001 LIVE live <elapsed> -showing 8 - sort: sec(bits) ascending (easiest to sweep first) +HP-F755 +mk3 v4 +extreme (dice) +90 +0.001-0.01 +LIVE +live <elapsed> +showing 10 - sort: sec(bits) ascending (easiest to sweep first) frontier summary difficulty deployed fastest still live trivial -1 +2 1 1h18m -0 +1 low 5 0 0 - 1 -extreme -0 +extreme (dice) +1 0 - -0 +1 difficulty bands added entropy over the attacker-known seed · dice ~2.585 bits/roll · passphrase 11 bits/word trivial0 bitsthe control — no dice, no passphrase low1–15 bits1–5 dice rolls, or a 1-word passphraseExtracted text as captured
CKTRIPWIRE last update 4 minutes ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots10 live9 swept1 value exposed~0.006 BTC fastest sweep1h18m frontier- recent activity last 5 events time (utc) event difficulty value band tx 2026-08-05 03:55 honeypot funded HP-F755 extreme (dice) 0.001-0.01 - 2026-08-05 03:43 honeypot funded HP-C6F6 2-of-3 multisig <=0.001 - 2026-08-05 01:07 honeypot funded HP-0708 high (pass)Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
The operator rewrote the warning to cover wallets created without additional entropy, replaced the immediate-move wording with 'move your funds to a safe place', and expanded the timing caveat about still-live honeypots. The page also added an attribution to @jamesob.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 23 lines
last update <relative-time> methodology admin -Own a Coldcard? Treat any wallet created on firmware 4.x as compromised and move -your funds to a freshly generated wallet now. Background and updates: -from -@Rob1Ham +Own a Coldcard? Treat any wallet created without additional entropy as compromised and move +your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true mid16–30 bits6–11 dice rolls, or a 2-word passphrase high31–45 bits12–17 dice rolls, or a 3–4 word passphrase extreme>45 bits18+ dice rolls, or a 5+ word passphrase -A note on timing. This RNG flaw was almost certainly known to attackers well -before these honeypots went live, so the sweep times shown here reflect our own -observation window — not how quickly the first affected coins were taken. The -earliest real batches may have been swept long before we began measuring. By the same -token, an older honeypot that is still live is not necessarily “safe”: it -may simply be a lower-priority target the attackers are still working through. +A note on timing. Just because a particular honeypot here hasn't been taken +yet doesn't mean its entropy class is safe. We don't know long this attack has been going on, but it +started well before our +honeypots existed. The thousands of coins already taken were ground +down over more than a few days, likely much longer than ours have been live. +So read “still live” as not taken yet, nothing more: a honeypot +surviving for weeks says little about the safety of its entropy class (in +terms of older coins real people are still holding) because the +attackers have had a chance to grind those coins for far longer than any of ours have +existed. auto-refresh 60s - coarse public view: no addresses, no exact values, no keys +made by @jamesobExtracted text as captured
CKTRIPWIRE last update 2 hours ago methodology admin Own a Coldcard? Treat any wallet created without additional entropy as compromised and move your funds to a safe place now. What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots8 live7 swept1 value exposed~0.003 BTC fastest sweep1h18m frontier- recent activity last 5 events time (utc) event difficulty value band tx 2026-08-05 01:07 honeypot funded HP-0708 high (pass) <=0.001 - 2026-08-05 01:06 honeypot funded HP-25AA mid (pass) <=0.001 - 2026-08-05 01:05 honeypot funded HP-7B35 low (dice)Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 0 lines
Extracted text as captured
CKTRIPWIRE last update 1 hour ago methodology admin Own a Coldcard? Treat any wallet created on firmware 4.x as compromised and move your funds to a freshly generated wallet now. Background and updates: from @Rob1Ham What is this? Coldcard hardware wallets generated wallet seeds with a broken random-number generator: a predictable software pseudo-RNG instead of true hardware entropy. The private keys can be brute-forced and the coins swept. If affected, migrate your funds now. We fund decoy “honeypot” wallets carrying that exact flaw on mainnet, some hardened with extra dice rolls or a passphrase, and track which ones an attacker sweeps and how fast. This maps the frontier of what coins are being confiscated. Read the methodology → honeypots8 live7 swept1 value exposed~0.003 BTC fastest sweep1h18m frontier- recent activity last 5 events time (utc) event difficulty value band tx 2026-08-05 01:07 honeypot funded HP-0708 high (pass) <=0.001 - 2026-08-05 01:06 honeypot funded HP-25AA mid (pass) <=0.001 - 2026-08-05 01:05Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
0 presentation-noise differences. Sidebar, ticker and other page chrome churn that our review classified as not being changes to what the source says.
The excerpts and plain unified diffs above show the text this project held and how it changed. To verify a quotation, compare it against the page itself or against the Internet Archive's copies, which are independent of this project.
Complete captures are held offline rather than mirrored here, so this page shows diffs and excerpts. If a quotation is ever disputed, the full copy can be produced. Ask.
Compare the screenshot or a quotation against the original while it is available.