COLDCARD RNG incident the public record, collected and explained
Informational only, and this site never asks for your seed words. details

Informational only. This is an open source collection of what others have published about the incident, together with an explanation of it. It is not financial, security or legal advice, and not a substitute for professional advice about your own situation. It is not affiliated with, endorsed by, or speaking for Coinkite. Material is attributed and quoted as published; where sources disagree their scenarios are kept separate with their assumptions rather than reconciled into one answer. Everything is meant to be checked against the linked evidence rather than taken on trust. Act on your own judgement about a particular situation. Editorial standards and corrections.

Do not disclose recovery material to a website, form, message or support account. This site never asks for it, and contributions containing recovery words or private keys are not accepted.

The Coldcard exploit explained: who lost bitcoin and who's at risk

newsbitcom-who-lost-who-at-risk

https://news.bitcoin.com/featured/the-coldcard-exploit-explained-who-lost-bitcoin-and-whos-at-risk/

Latest reviewed change

source content difference between and

The article gained an editor's note dated August 10, 2026, stating the exploit has logged more than 2,000 BTC in stolen funds; the rotating Most Popular module also changed.

seen +1 -11 full history below
 Coldcard-linked thefts drained bitcoin from hundreds of wallets on July 30.
 Coinkite says Mk3 seeds had about 40 bits of entropy instead of 128.
 Coldcard users must install fixed firmware and create new seeds before moving funds.
+Editor’s Note Aug. 10, 2026: Since this editorial was first published, the Coldcard exploit has logged more than 2,000 BTC in stolen funds.
 According to a deep analysis from Galaxy Research, the core theft unfolded in a tightly coordinated burst lasting about 25 minutes, while broader analysis later connected roughly 1,196 addresses and as much as 1,083 bitcoin, valued at nearly $70 million, to activity spanning approximately 41 minutes. The final figures could change as investigators continue tracing transactions on the public Bitcoin blockchain.
 A 5-Year-Old Bug Reaches Bitcoin Wallets Worldwide
 The affected wallets belonged largely to long-term holders who generated their recovery seeds using Coldcard devices running vulnerable firmware released from March 2021 onward. Coldcard is an air-gapped hardware wallet made by Canadian manufacturer Coinkite and designed to keep bitcoin (BTC) keys isolated from internet-connected devices.
 © 2026 Saint Bitts LLC Bitcoin.com. All rights reserved

First lines only. The complete diff is in the timeline below.

Organisation
Bitcoin.com News
Evidence role
Reporting
Published
2026-08-01
Source changes
1
Detected differences
29
Unreviewed
0
Copies held
30

An explainer aimed at owners asking whether they are affected, which is the same audience this site's triage section serves. Held to track how the mainstream explanation of exposure compares with the model-specific firmware ranges, since a reader may arrive here having already read it.

Every check is recorded, including checks that found no text change. A detected edit is therefore bounded between two checks. The publisher's exact save time is not observable from this record. Last checked .

  1. source content difference between and source content +1 -11

    The article gained an editor's note dated August 10, 2026, stating the exploit has logged more than 2,000 BTC in stolen funds; the rotating Most Popular module also changed.

    seen · Captured here 14,325 chars
    What changed from the previous capture 12 lines
     Coldcard-linked thefts drained bitcoin from hundreds of wallets on July 30.
     Coinkite says Mk3 seeds had about 40 bits of entropy instead of 128.
     Coldcard users must install fixed firmware and create new seeds before moving funds.
    +Editor’s Note Aug. 10, 2026: Since this editorial was first published, the Coldcard exploit has logged more than 2,000 BTC in stolen funds.
     According to a deep analysis from Galaxy Research, the core theft unfolded in a tightly coordinated burst lasting about 25 minutes, while broader analysis later connected roughly 1,196 addresses and as much as 1,083 bitcoin, valued at nearly $70 million, to activity spanning approximately 41 minutes. The final figures could change as investigators continue tracing transactions on the public Bitcoin blockchain.
     A 5-Year-Old Bug Reaches Bitcoin Wallets Worldwide
     The affected wallets belonged largely to long-term holders who generated their recovery seeds using Coldcard devices running vulnerable firmware released from March 2021 onward. Coldcard is an air-gapped hardware wallet made by Canadian manufacturer Coinkite and designed to keep bitcoin (BTC) keys isolated from internet-connected devices.
     © 2026 Saint Bitts LLC Bitcoin.com. All rights reserved
     Support
     [email protected]
    -MOST POPULAR
    -Bitcoin Fork Watch: Where to Track BIP-110’s Showdown Live
    -1 day ago
    -Circle Renews Coinbase USDC Deal and Rules Out Dividends
    -1 day ago
    -Michael Saylor Identifies the Next Billion-Dollar Finance Opportunity
    -19 hours ago
    -BIP-110 Splits Bitcoin as Rival Miners Clash at Block 961632
    -22 hours ago
    -Ripple Says EU Crypto Expansion Is Ready to Scale After MiCA Win
    -17 hours ago
    
    Extracted text as captured
    Read In App
    EN
    Launch App
    Home
    News
    Market UpdatesFinanceLearning InsightsRegulation & LegalMiningBlockchainCrypto News
    LearnResearchNewsletters
    Advertise
    Advertise With UsSubmit Press ReleasePodcast Interview
    EN
    Launch App
    Home
    Finance
    Learn
    Research
    Newsletters
    Advertise
    Powered by
    FeaturedPublished:Jul 31, 2026, 8:30 PM
    The Coldcard Exploit Explained: Who Lost Bitcoin and Who's at Risk
    An attacker exploited weak seeds generated by certain Coldcard hardware wallets to steal bitcoin worth roughly tens of millions from hundreds of addresses on July 30.
    WRITTEN BY
    Jamie Redman
    SHARE
    Published: Jul 31, 2026, 8:30 PM
    Key Takeaways
    Coldcard-linked thefts drained bitcoin from hundreds of wallets on July 30.
    Coinkite says Mk3 seeds had about 40 bits of entropy instead of 128.
    Coldcard users must install fixed firmware and create new seeds before moving funds.
    Editor’s Note Aug. 10, 2026: Since this editorial was first published, the Coldcard exploit has logged more than 2,000 BTC in stolen funds.
    According to a deep analysis from Galaxy Research, the core theft unfolded in a tightly coordinated burst lasting about 25 minutes, while broader analysis later connected roughly 1,196 addresses and as much as 1,083 bitcoin, valued at nearly $70 million, to activity spanning approximately 41 minutes. The final figures could change as investigators continue tracing transactions on the public Bitcoin blockchain.
    A 5-Year-Old Bug Reaches Bitcoin Wallets Worldwide
    The affected wallets belonged largely to long-term holders who generated their recovery seeds using Coldcard devices running vulnerable firmware released from March 2021 onward. Coldcard is an air-gapped hardware wallet made by Canadian manufacturer Coinkite and designed to keep bitcoin (BTC) keys isolated from internet-connected devices.
    Many of the emptied addresses had remained dormant for years. The attacker moved rapidly, paid elevated fixed transaction fees, and left no change outputs, meaning each address was emptied completely. That pattern suggested an automated operation using a prepared list of private keys rather than customers independently moving their funds.
    The theft was not caused by phishing, malware on a user’s computer, physical device theft or a conventional remote breach. Instead, a firmware error weakened the randomness used when some Coldcard devices created wallet seeds. Those seeds looked normal but came from a far smaller range of possible combinations than users had been promised.
    Coldcard’s Random Number Generator Quietly Failed
    A Bitcoin wallet seed is a secret, commonly displayed as 12 or 24 words, from which the wallet generates its addresses and private keys. A properly generated 12-word seed contains 128 bits of entropy, a technical measure describing an enormous number of possible combinations that makes guessing the seed effectively impossible.
    Coldcard devices were supposed to obtain that randomness from a hardware random number generator inside the device’s microcontroller. The component draws from physical electrical noise that an outside observer should not be able to predict.
    During a software-library migration in 2021, however, Coinkite disclosed that two random-number functions with matching interfaces became confused. One accessed the device’s proper hardware generator. The other was a weak software fallback intended for boards without suitable hardware.
    A configuration setting disabled the default MicroPython hardware path because Coinkite supplied its own hardware wrapper. The software checked only whether that setting existed, not whether it was enabled. Because the setting was present but assigned a value of zero, the build completed successfully, while seed generation silently shifted to the weaker software generator.

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  2. Earliest copy held
    seen · Captured here 14,393 chars
    Extracted text as captured
    Read In App
    EN
    Launch App
    News
    Market UpdatesFinanceLearning InsightsRegulation & LegalMiningBlockchainCrypto News
    LearnResearchNewsletters
    Advertise
    Advertise With UsSubmit Press ReleasePodcast Interview
    EN
    Launch App
    Finance
    Learn
    Research
    Newsletters
    Advertise
    Powered by
    FeaturedPublished:Jul 31, 2026, 8:30 PM
    The Coldcard Exploit Explained: Who Lost Bitcoin and Who's at Risk
    An attacker exploited weak seeds generated by certain Coldcard hardware wallets to steal bitcoin worth roughly tens of millions from hundreds of addresses on July 30.
    WRITTEN BY
    Jamie Redman
    SHARE
    Published: Jul 31, 2026, 8:30 PM
    Key Takeaways
    Coldcard-linked thefts drained bitcoin from hundreds of wallets on July 30.
    Coinkite says Mk3 seeds had about 40 bits of entropy instead of 128.
    Coldcard users must install fixed firmware and create new seeds before moving funds.
    According to a deep analysis from Galaxy Research, the core theft unfolded in a tightly coordinated burst lasting about 25 minutes, while broader analysis later connected roughly 1,196 addresses and as much as 1,083 bitcoin, valued at nearly $70 million, to activity spanning approximately 41 minutes. The final figures could change as investigators continue tracing transactions on the public Bitcoin blockchain.
    A 5-Year-Old Bug Reaches Bitcoin Wallets Worldwide
    The affected wallets belonged largely to long-term holders who generated their recovery seeds using Coldcard devices running vulnerable firmware released from March 2021 onward. Coldcard is an air-gapped hardware wallet made by Canadian manufacturer Coinkite and designed to keep bitcoin (BTC) keys isolated from internet-connected devices.
    Many of the emptied addresses had remained dormant for years. The attacker moved rapidly, paid elevated fixed transaction fees, and left no change outputs, meaning each address was emptied completely. That pattern suggested an automated operation using a prepared list of private keys rather than customers independently moving their funds.
    The theft was not caused by phishing, malware on a user’s computer, physical device theft or a conventional remote breach. Instead, a firmware error weakened the randomness used when some Coldcard devices created wallet seeds. Those seeds looked normal but came from a far smaller range of possible combinations than users had been promised.
    Coldcard’s Random Number Generator Quietly Failed
    A Bitcoin wallet seed is a secret, commonly displayed as 12 or 24 words, from which the wallet generates its addresses and private keys. A properly generated 12-word seed contains 128 bits of entropy, a technical measure describing an enormous number of possible combinations that makes guessing the seed effectively impossible.
    Coldcard devices were supposed to obtain that randomness from a hardware random number generator inside the device’s microcontroller. The component draws from physical electrical noise that an outside observer should not be able to predict.
    During a software-library migration in 2021, however, Coinkite disclosed that two random-number functions with matching interfaces became confused. One accessed the device’s proper hardware generator. The other was a weak software fallback intended for boards without suitable hardware.
    A configuration setting disabled the default MicroPython hardware path because Coinkite supplied its own hardware wrapper. The software checked only whether that setting existed, not whether it was enabled. Because the setting was present but assigned a value of zero, the build completed successfully, while seed generation silently shifted to the weaker software generator.
    Factory Data and Timing Replaced True Randomness
    That fallback relied heavily on predictable device information, including a chip identifier similar to a serial number and internal clock values associated with startup timing. An attacker who could narrow those inputs would face a much smaller search than the 128-bit range expected from a securely generated seed.
    Coinkite estimated the effective search space for vulnerable Mk3 seeds at about 40 bits under current assumptions. That is still a large number of possibilities, but it can be searched with specialized computing equipment, especially when an attacker can compare candidate seeds against bitcoin addresses visible on the blockchain.

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

28 presentation-noise differences. Sidebar, ticker and other page chrome churn that our review classified as not being changes to what the source says.
  • +0 -11 Only the rotating 'Most Popular' related-content module below the article was removed; the article text was unchanged.
  • +8 -3 Only the rotating 'Most Popular' related-content module below the article changed; the article body was unchanged.
  • +6 -0 Only the rotating Most Popular module below the article changed; the article text was unchanged.
  • +0 -11 The rotating Most Popular module below the article disappeared; the article text was unchanged.
  • +6 -6 Only rotating related-content cards and relative-time labels below the article changed; the article text was unchanged.
  • +11 -0 Only the rotating Most Popular module below the article changed; the article text was unchanged.
  • +11 -0 Only the rotating MOST POPULAR sidebar headlines and their age labels changed; the article body was unchanged.
  • +0 -11 Only the page's rotating Most Popular sidebar changed. The incident explainer itself did not change.
  • +11 -0 Only the page's rotating Most Popular sidebar changed. The explainer text did not change.
  • +0 -11 The rotating Most Popular module disappeared; the article text was unchanged.
  • +11 -0 A rotating Most Popular module appeared below the article.
  • +0 -11 Only the page’s rotating “Most Popular” module disappeared. The article text is unchanged.
  • +11 -0 The MOST POPULAR sidebar block reappeared with rotated headlines and advanced relative-time labels. The article body was unchanged.
  • +0 -11 The MOST POPULAR sidebar block with rotating headlines and relative-time labels disappeared from the end of the extracted text. The article body was unchanged.
  • +11 -0 A MOST POPULAR sidebar block with five rotating headlines and relative-time labels appeared at the end of the extracted text. The article body was unchanged.
  • +2 -0 Only navigation chrome changed: a 'Home' entry appeared in both header menus. The article body was unchanged.
  • +22 -22 The LATEST NEWS sidebar block moved position in the extracted text and its rotation gained the Bitcoin Wasn't Hacked in Coldcard Attack, Pompliano Explains headline. The article body was unchanged.
  • +44 -44 The sidebar block order shifted again with advancing relative-time labels and no new content. The article body was unchanged.
  • +24 -24 The sidebar blocks reordered, the LATEST NEWS rotation gained the CLARITY Act Faces New Senate Threat headline, and a Related articles age ticked from 1 day ago to 2 days ago. The article body was unchanged.
  • +15 -15 Relative-time labels advanced and the sidebar card order shifted, with one card's age ticking from 4 days ago to 5 days ago. The article body was unchanged.
  • +8 -8 Only relative-time labels in the sidebar advanced, for example 32 seconds ago to 31 minutes ago. The article body was unchanged.
  • +17 -17 The LATEST NEWS rotation gained the Bitgo CEO Funds 100 BTC Wallet, Dares Anthropic's AI to Steal It headline. The article body was unchanged.
  • +44 -44 The LATEST NEWS rotation gained the Samson Mow Shares 5 Urgent Steps for Coldcard Users Facing Losses headline and the sidebar blocks reordered. The article body was unchanged.
  • +44 -44 The sidebar blocks reordered again with advancing relative-time labels and no new content. The article body was unchanged.
  • +15 -15 The LATEST NEWS rotation gained the Bitcoin Miners Face August Showdown headline and the sidebar block order shifted with advancing relative-time labels. The article body was unchanged.
  • +44 -44 The same sidebar blocks moved position once more with advancing relative-time labels and no new headlines. The article body was unchanged.
  • +19 -19 The sidebar card blocks reordered again and the LATEST NEWS rotation gained the Coldcard Hacker Gets Brazen Bitcoin Laundering Offer Onchain headline. The article body was unchanged.
  • +45 -45 The LATEST NEWS, PRESS RELEASES and LATEST PODCASTS sidebar blocks moved position in the extracted text and the rotation gained headlines (Coinkite class action, BTC plunge, Hormuz). The article body was unchanged.
How to check this yourself

The excerpts and plain unified diffs above show the text this project held and how it changed. To verify a quotation, compare it against the page itself or against the Internet Archive's copies, which are independent of this project.

Complete captures are held offline rather than mirrored here, so this page shows diffs and excerpts. If a quotation is ever disputed, the full copy can be produced. Ask.