COLDCARD RNG incident the public record, collected and explained
Informational only, and this site never asks for your seed words. details

Informational only. This is an open source collection of what others have published about the incident, together with an explanation of it. It is not financial, security or legal advice, and not a substitute for professional advice about your own situation. It is not affiliated with, endorsed by, or speaking for Coinkite. Material is attributed and quoted as published; where sources disagree their scenarios are kept separate with their assumptions rather than reconciled into one answer. Everything is meant to be checked against the linked evidence rather than taken on trust. Act on your own judgement about a particular situation. Editorial standards and corrections.

Do not disclose recovery material to a website, form, message or support account. This site never asks for it, and contributions containing recovery words or private keys are not accepted.

r/Bitcoin: report that the COLDCARD drainer is still progressing

reddit-hacker-still-progressing

https://www.reddit.com/r/Bitcoin/comments/1vfagz9/the_coldcard_hacker_is_still_progressing_stolen/

Latest reviewed change

source content difference between and

One short comment was removed and Reddit API more-stub entries for several parents were reordered.

seen +6 -14 full history below
 body:
 This is not the same. The instant drain issues were people choosing the dice method and rolling like 1 die worth of entropy. Yes, the firmware should have had guardrails to enforce a minimum of 50 rolls, but that was bad guidance not an actual firmware error like the current vulnerability is.
 
-comment: p1s59ky
-parent: t3_1vfagz9
-author: Equivalent-Spot-1325
-created_utc: 1785898766
-edited: false

First lines only. The complete diff is in the timeline below.

Organisation
reddit
Evidence role
Community discussion
Published
not established
Source changes
30
Detected differences
30
Unreviewed
0
Copies held
31

Every check is recorded, including checks that found no text change. A detected edit is therefore bounded between two checks. The publisher's exact save time is not observable from this record. Last checked .

  1. source content difference between and Current source content +6 -14

    One short comment was removed and Reddit API more-stub entries for several parents were reordered.

    seen · Captured here 115,154 chars
    What changed from the previous capture 20 lines
     body:
     This is not the same. The instant drain issues were people choosing the dice method and rolling like 1 die worth of entropy. Yes, the firmware should have had guardrails to enforce a minimum of 50 rolls, but that was bad guidance not an actual firmware error like the current vulnerability is.
     
    -comment: p1s59ky
    -parent: t3_1vfagz9
    -author: Equivalent-Spot-1325
    -created_utc: 1785898766
    -edited: false
    -body:
    -Cia
    -
     comment: p1s7p2c
     parent: t1_p1ot4bz
     author: ggiodddtyii
     
     more-stub: parent t1_p1nw2v1 count <live-count>
     
    +more-stub: parent t1_p1pw9rz count <live-count>
    +
    +more-stub: parent t1_p1nz8zy count <live-count>
    +
     more-stub: parent t1_p1o2d4x count <live-count>
     
     more-stub: parent t1_p1o4pbz count <live-count>
     
    -more-stub: parent t1_p1pw9rz count <live-count>
    -
    -more-stub: parent t1_p1nz8zy count <live-count>
    -
     more-stub: parent t1_p1nolqw count <live-count>
     
    +more-stub: parent t1_p1nesdd count <live-count>
    +
     more-stub: parent t1_p1oeovv count <live-count>
     
    -more-stub: parent t1_p1nesdd count <live-count>
    -
     more-stub: parent t1_p1qmlri count <live-count>
     
     more-stub: parent t1_p1p0fsb count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  2. source content difference between and source content +16 -19

    Two new comments were added: one asks why the known attacker addresses cannot simply be frozen, and another asks how stolen bitcoin can be converted to cash without being caught.

    seen · Captured here 115,268 chars
    What changed from the previous capture 35 lines
     
     WHY WOULD A THEIF DO THIS? I genuinely don’t understand.
     
    -comment: p1qmti4
    -parent: t1_p1pw9rz
    -author: stevethewatcher
    -created_utc: 1785881356
    -edited: false
    -body:
    -Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality
    -
     comment: p1qnfzo
     parent: t3_1vfagz9
     author: Shwazool
     body:
     Dude is probably scanning through all serial numbers. 
     
    -comment: p1qxikg
    -parent: t1_p1pw9rz
    -author: Technical_Customer_1
    -created_utc: 1785884548
    -edited: false
    -body:
    -“
    - Don’t forget all that destruction to the environment and wildlife!” 
    -
    -Says the person who prefers money that uses gigawatt after gigawatt of juice…
    -
     comment: p1qycfp
     parent: t3_1vfagz9
     author: Patrick_Atsushi
     body:
     If only the developers knew to use AI tools it could have been different. 
     
    +comment: p2msepx
    +parent: t3_1vfagz9
    +author: Sebhas
    +created_utc: 1786277553
    +edited: false
    +body:
    +I genuinly dont understand this. So everyone knows which adresses that are linked to the hack? Which means you know who the hacker is. Fucking freeze the adresses and return the funds. Wth is going on?
    +
    +comment: p2o655g
    +parent: t3_1vfagz9
    +author: Only-Wonder-2610
    +created_utc: 1786292898
    +edited: false
    +body:
    +Dumb question how does one convert stolen bitcoin to cash without getting caught?
    +
     more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1pjrgq count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  3. source content difference between and source content +51 -69

    The thread gained new comments about AI complacency and laziness while several older comments were deleted and live stub counts shifted.

    seen · Captured here 115,477 chars
    What changed from the previous capture 120 lines
     body:
     I’m just worried that the hacker might have some other plans. Who knows, maybe he managed to compromise other wallets too and we just don’t know about it yet. He’ll probably wait until people least expect it and then launch another attack. The whole thing seems suspicious to me because there were already people complaining back in 2021 that someone had hacked their wallets, but nobody took it seriously. And if it was the same hacker, you can see that it took him 5 years to pull this off.
     
    +comment: p1niz0z
    +parent: t3_1vfagz9
    +author: thainfamouzjay
    +created_utc: 1785852377
    +edited: false
    +body:
    +Can't they track the funds to the new wallet and just not let it exit the ledger? 
    +
     comment: p1nj1h9
     parent: t1_p1ndkdk
     author: JMell09
     body:
     It's strictly a Coldcard/Coinkite issue and yes, you are right, warnings were shared about this years ago.
     
    +comment: p1njacq
    +parent: t1_p1ndrmt
    +author: Eequal
    +created_utc: 1785852464
    +edited: false
    +body:
    +Hope to see his trial on TV. 
    +
     comment: p1njj6i
     parent: t1_p1ndagh
     author: NCC1701-F
     edited: false
     body:
     They don't keep order details.
    +
    +comment: p1nl9cw
    +parent: t1_p1njacq
    +author: ImPinkSnail
    +created_utc: 1785852996
    +edited: false
    +body:
    +If he's discovered he will be lucky to get a trial. People commit acts of violence to forcibly take BTC 
     
     comment: p1nlexe
     parent: t1_p1nh8ub
     body:
     Holy shit hahaha
     
    -comment: p1nwd9u
    -parent: t1_p1nf03i
    -author: drwebb
    -created_utc: 1785855933
    -edited: false
    -body:
    -You don't need to actually convert the BTC to physical stuff to profit, you can just be a "Whale". If I had this much money, I would just run pump and dump alt coins, and manipulate markets. There is all sort of shady stuff you can do.
    -
    -Satoshi is still out there, other early BTC whales are still out there, why do you think a smart criminal needs to go run away?
    -
     comment: p1nwzlx
     parent: t1_p1ndagh
     author: Crazy-Purple6613
       
     presumably nobody at Ledger has made the same mistake.       
     
    -comment: p1o4n3p
    -parent: t1_p1o1d2l
    -author: Save_JR
    -created_utc: 1785858083
    -edited: false
    -body:
    -Opus also commonly hallucinates messes in code. Do you think AI coding is perfect and better than every human? 
    -
    -It's actually a popular meme right now for cybersecurity experts saying "thank god for vibe coders starting a business without knowing how to really code without ai. They're keeping us in business." Its funny because AI coding makes tons of vulnerabilities that a human cybersecurity expert has a field day 
    -
    -https://www.reddit.com/r/ClaudeAI/comments/1v92csh/opus_5_extremely_rlfried_and_mistakeprone_for/
    -
    -https://www.reddit.com/r/ClaudeCode/comments/1tt03tp/opus_48_is_hallucinating_way_too_often_ive_never/
    -
     comment: p1o4pbz
     parent: t1_p1ns5xp
     author: Renoperson00
     body:
     I think the coins are going to be burned.
     
    -comment: p1o50zj
    -parent: t1_p1o4n3p
    -author: [deleted]
    -created_utc: 1785858180
    -edited: false
    -body:
    -[removed]
    -
     comment: p1o55n0
     parent: t1_p1o12ig
     author: H8ckt1v1st
     edited: false
     body:
     Scratch Costa Rica from that list, they have extradited 4 citizens so far to TrumpLand. Big news here. 
    -
    -comment: p1o590j
    -parent: t1_p1o50zj
    -author: Save_JR
    -created_utc: 1785858237
    -edited: false
    -body:
    -100% the hacker has YEARS of programming experience before Claude Code even came out
     
     comment: p1o5icz
     parent: t1_p1ndagh
     body:
     Great, gonna ask a local cave man to carve me a dice made of bone... question is should I let him throw bone dice or should I throw it myself for maximum entropy
     
    -comment: p1qmqv4
    -parent: t1_p1pw9rz
    -author: stevethewatcher
    -created_utc: 1785881335
    -edited: false
    -body:
    -Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality 
    -
     comment: p1qmraq
     parent: t1_p1p73cj
     author: daynomate
     body:
     if the government wanted to track this guy, they could...
     
    -comment: p1r4py6
    -parent: t1_p1qmqv4
    -author: Candid-Walk-6762
    -created_utc: 1785886794
    -edited: false
    -body:
    -Can you remind us how much value the dollar has lost since it was taken off the gold standard? Come on Mr Pro Government, why don’t you tell us?
    -
     comment: p1r4qjo
     parent: t3_1vfagz9
     author: Necessary_Floor_7081
     edited: false
     body:
     Damn when did it happen there?
    -
    -comment: p1r7hpt
    -parent: t1_p1r4py6
    -author: stevethewatcher
    -created_utc: 1785887678
    -edited: false
    -body:
    -Sure, a dollar in 1946 has the purchasing power of $18 in 2026 while the average wage has matched exactly that, growing from $4200 to $72k. It doesn't matter if it's worth less if you have more, you financially illiterate donkey
     
     comment: p1r7olc
     parent: t1_p1ngs8i
     body:
     Very early software wallets about 13 years ago relied on androids built in random number generator to make a seed. This generator was faulty as well. This was patched out in subsequent android releases. Not long afterwards hardware devices were brought onto the market. I never found a compelling reason to trust them.  I was a very active bitcoin user back then.  First with Multibit on PC and then I was searching for an android self custody wallet. The first one arrived called Mycelium. Now this seemed a more sensible combination. An audited self custody wallet running on a mass market Android cell phone. Where are the back doors? Well as time has now shown...Not many.
     
    +comment: p2hz05x
    +parent: t1_p1osfq3
    +author: Dechirure
    +created_utc: 1786211344
    +edited: false
    +body:
    +Never underestimate peoples laziness. 
    +
    +comment: p2i17l4
    +parent: t1_p1njrwm
    +author: Dechirure
    +created_utc: 1786211963
    +edited: false
    +body:
    +It seems surreal that they never ran their code through a AI and it just went unnoticed, seems very complacent. 
    +
    +comment: p2ijvwb
    +parent: t1_p1p17ka
    +author: Dechirure
    +created_utc: 1786217330
    +edited: false
    +body:
    +If only the developers knew to use AI tools it could have been different. 
    +
     more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1pjrgq count <live-count>
     
     more-stub: parent t1_p1o12ig count <live-count>
     
    -more-stub: parent t1_p1nwd9u count <live-count>
    -
    -more-stub: parent t1_p1o590j count <live-count>
    -
    -more-stub: parent t1_p1o4n3p count <live-count>
    +more-stub: parent t1_p1nf03i count <live-count>
     
     more-stub: parent t1_p1o1d2l count <live-count>
     
     
     more-stub: parent t1_p1o4pbz count <live-count>
     
    +more-stub: parent t1_p1pw9rz count <live-count>
    +
     more-stub: parent t1_p1nz8zy count <live-count>
     
     more-stub: parent t1_p1nolqw count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  4. source content difference between and source content +12 -26

    A new comment comparing early Android wallet RNG failures to hardware wallets was added, and three short existing comments were removed.

    seen · Captured here 116,964 chars
    What changed from the previous capture 38 lines
     The real work happens when he have to liquidate it.  
     
     Scratching off a million gift cards is going to take some dedication 
    -
    -comment: p1nvlxb
    -parent: t1_p1nmpmg
    -author: wembenbama
    -created_utc: 1785855731
    -edited: false
    -body:
    -They have diamond hands. Price doesn’t matter. 
     
     comment: p1nw2v1
     parent: t1_p1ncn6j
     body:
     "Presumably" is carrying a lot of weight there. The Ledger operation could just be waiting for a bigger payday - it's even more opaque than coldcard and could run the same type of scam with even less chance of discovery.
     
    -comment: p1omi3i
    -parent: t1_p1o4pbz
    -author: trufin2038
    -created_utc: 1785862570
    -edited: false
    -body:
    -That would be the best possible outcome.
    -
     comment: p1omk0c
     parent: t1_p1nmpmg
     author: Ok-Engineering1873
     edited: false
     body:
     Look up the case of Jan Marsalek....you just need the right friend than Russia will give you an identity and hide you as long as it is in their favor.
    -
    -comment: p1p14cy
    -parent: t3_1vfagz9
    -author: Basic_Zebra7829
    -created_utc: 1785866174
    -edited: false
    -body:
    -Bitcoin is so safe guys. 
    -
    -/s
     
     comment: p1p17ka
     parent: t1_p1nniny
     body:
     That’s wild
     
    +comment: p2fno0h
    +parent: t3_1vfagz9
    +author: Ok-Mango5075
    +created_utc: 1786183550
    +edited: false
    +body:
    +Very early software wallets about 13 years ago relied on androids built in random number generator to make a seed. This generator was faulty as well. This was patched out in subsequent android releases. Not long afterwards hardware devices were brought onto the market. I never found a compelling reason to trust them.  I was a very active bitcoin user back then.  First with Multibit on PC and then I was searching for an android self custody wallet. The first one arrived called Mycelium. Now this seemed a more sensible combination. An audited self custody wallet running on a mass market Android cell phone. Where are the back doors? Well as time has now shown...Not many.
    +
     more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1pjrgq count <live-count>
     
     more-stub: parent t1_p1nijcp count <live-count>
     
    +more-stub: parent t1_p1nmpmg count <live-count>
    +
     more-stub: parent t1_p1o9ogr count <live-count>
     
     more-stub: parent t1_p1nh8ub count <live-count>
     
     more-stub: parent t1_p1o2d4x count <live-count>
     
    +more-stub: parent t1_p1o4pbz count <live-count>
    +
     more-stub: parent t1_p1nz8zy count <live-count>
     
     more-stub: parent t1_p1nolqw count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  5. source content difference between and source content +0 -8

    A participant comment was removed from the Reddit thread.

    seen · Captured here 116,533 chars
    What changed from the previous capture 8 lines
     body:
     code is law lmao
     
    -comment: p1rt6rr
    -parent: t1_p1pf9qd
    -author: Wait_for_You
    -created_utc: 1785894707
    -edited: false
    -body:
    -Americans, please get U-n-i-v-e-r-s-a-l-H-e-a-l-t-h-C-a-r-e-!  sorry, I had to drop this here, carry on now 
    -
     comment: p1rtqhm
     parent: t3_1vfagz9
     author: demoman45
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  6. source content difference between and source content +33 -45

    The thread added new comments including an off-topic healthcare message and a claim that institutional custody is the only safe path, removed a sub-thread about a prior warning, and adjusted more-stub parent references.

    seen · Captured here 116,744 chars
    What changed from the previous capture 78 lines
     body:
     "Presumably" is carrying a lot of weight there. The Ledger operation could just be waiting for a bigger payday - it's even more opaque than coldcard and could run the same type of scam with even less chance of discovery.
     
    +comment: p1omi3i
    +parent: t1_p1o4pbz
    +author: trufin2038
    +created_utc: 1785862570
    +edited: false
    +body:
    +That would be the best possible outcome.
    +
     comment: p1omk0c
     parent: t1_p1nmpmg
     author: Ok-Engineering1873
     body:
     What even is this? A public access to your receiving address that people can send requests to?
     
    -comment: p1po07n
    -parent: t3_1vfagz9
    -author: uhooooook
    -created_utc: 1785871959
    -edited: false
    -body:
    -Remember when most folks on Reddit were just shitting on you for recommending anything else but Coldcard? Where are they now?
    -
     comment: p1pohfl
     parent: t3_1vfagz9
     author: NOS4NANOL1FE
     body:
     https://www.youtube.com/watch?v=BKHoMi-U8g4
     
    -comment: p1ppl7i
    -parent: t1_p1pjrgq
    -author: Emergency-Warthog-56
    -created_utc: 1785872378
    -edited: false
    -body:
    -I think most weren't aware of that discussion. That story was kind of swept under the rug. Silenced. Forgotten about. Some probably didn't believe it was a issue. I myself didn't know about it until this happened and then started researching. 
    -
     comment: p1ppnax
     parent: t1_p1p9geb
     author: BitCoiner905
     edited: false
     body:
     Maybe some ex dev that worked on this project early on intentionally left this and is now draining it all 🤷‍♀️
    -
    -comment: p1prsbb
    -parent: t1_p1ppl7i
    -author: FcrcecqcucecnctC
    -created_utc: 1785872956
    -edited: false
    -body:
    -Do you have a link to the warning that was shared years ago?
     
     comment: p1ps07y
     parent: t1_p1nnp56
     
     Found this recently
     
    -comment: p1qo28s
    -parent: t1_p1prsbb
    -author: Emergency-Warthog-56
    -created_utc: 1785881716
    -edited: false
    -body:
    -https://x.com/i/status/2084628592760164385
    -
    -Found this recently 
    -
     comment: p1qo4bv
     parent: t1_p1pb2ja
     author: Alphamale822
     
     Rest in peace, Garry the ol' bitcoiners 🫡
     One of us, forever
    -
    -comment: p1qpsid
    -parent: t1_p1ppl7i
    -author: dr_tdm1
    -created_utc: 1785882220
    -edited: false
    -body:
    -The thing is,, that discussion was about hacked or drained wallets and no one knows why (could really be a user mistake),, but what really scares me is that coldcard is an open source and the bug was there in public and no one spotted it for 5 years until our guy here caught it and took advantage.. 
     
     comment: p1qsbvs
     parent: t1_p1qllt0
     body:
     code is law lmao
     
    +comment: p1rt6rr
    +parent: t1_p1pf9qd
    +author: Wait_for_You
    +created_utc: 1785894707
    +edited: false
    +body:
    +Americans, please get U-n-i-v-e-r-s-a-l-H-e-a-l-t-h-C-a-r-e-!  sorry, I had to drop this here, carry on now 
    +
     comment: p1rtqhm
     parent: t3_1vfagz9
     author: demoman45
     body:
     Completely off topic but no one actually listens to me when I say that one of the phone and SIM provider  mobile.co.uk actually did offer a 50 pound cashback on the pixel 10a with a SIM, but is now not offering it.  I'm not getting serious responses.  Well you know I'm only one voice.   So actually, why don't people listen is the question.  People don't randomly go to the internet to vent 
     
    +comment: p2b1ldn
    +parent: t3_1vfagz9
    +author: Or1001
    +created_utc: 1786124346
    +edited: false
    +body:
    +People will understand the hard way that institutional grade custody is the only safe way to go. 
    +
    +comment: p2b9u40
    +parent: t3_1vfagz9
    +author: Accomplished-Eye5567
    +created_utc: 1786126459
    +edited: false
    +body:
    +That’s wild
    +
     more-stub: parent t1_p1pf9qd count <live-count>
     
    -more-stub: parent t1_p1prsbb count <live-count>
    +more-stub: parent t1_p1pjrgq count <live-count>
     
     more-stub: parent t1_p1npp5o count <live-count>
     
     
     more-stub: parent t1_p1o2d4x count <live-count>
     
    -more-stub: parent t1_p1o4pbz count <live-count>
    -
     more-stub: parent t1_p1nz8zy count <live-count>
     
     more-stub: parent t1_p1nolqw count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  7. source content difference between and source content +26 -24

    Three comments were deleted and three added, one urging anyone with any COLDCARD model to move coins because the company cannot be trusted.

    seen · Captured here 117,433 chars
    What changed from the previous capture 50 lines
     body:
     "Presumably" is carrying a lot of weight there. The Ledger operation could just be waiting for a bigger payday - it's even more opaque than coldcard and could run the same type of scam with even less chance of discovery.
     
    -comment: p1omi3i
    -parent: t1_p1o4pbz
    -author: trufin2038
    -created_utc: 1785862570
    -edited: false
    -body:
    -That would be the best possible outcome.
    -
     comment: p1omk0c
     parent: t1_p1nmpmg
     author: Ok-Engineering1873
     body:
     How does anyone know this isn’t Cold Card doing it themselves
     
    -comment: p20vga4
    -parent: t1_p1pf9qd
    -author: Far_Professor_8254
    -created_utc: 1786006784
    -edited: false
    -body:
    -But cancer treatment is covered by basic health insurance, so they only pay the €385 annual compulsory deductible, along with the ~€180 monthly premium. Plus, sick leave guarantees their income while ill: usually 100% in the first year and 70% in the second year (up to 2 years max).
    -
     comment: p214wu8
     parent: t1_p1oeovv
     author: Logical_Breadfruit36
     body:
     making you're own seed with dices or coins gives a peace of mind + long passphrase. Search on youtube how to make you're own seed. It took me around 60 minutes to make my own. Fully random. 
     
    -comment: p217wh7
    -parent: t1_p20vga4
    -author: ivanjurman
    -created_utc: 1786012648
    -edited: false
    -body:
    -Maybe they don’t have basic health insurance, and they don’t have paid sick leave because they’re unemployed
    -
     comment: p21cb6i
     parent: t1_p1uibgi
     author: LittleLeeno
     body:
     Can already see the posts 5-10 years from now. 
     
    +comment: p27srqe
    +parent: t3_1vfagz9
    +author: keekeerun
    +created_utc: 1786084715
    +edited: false
    +body:
    +Anyone with any model coldcard should move coins. You can't trust anything that company says. 
    +
    +comment: p2870y1
    +parent: t1_p1qg52v
    +author: Nice_Statistician539
    +created_utc: 1786091618
    +edited: false
    +body:
    +i thought this one was staged?
    +
    +comment: p291vpw
    +parent: t1_p1nijcp
    +author: Rare-Mention3046
    +created_utc: 1786104781
    +edited: false
    +body:
    +Completely off topic but no one actually listens to me when I say that one of the phone and SIM provider  mobile.co.uk actually did offer a 50 pound cashback on the pixel 10a with a SIM, but is now not offering it.  I'm not getting serious responses.  Well you know I'm only one voice.   So actually, why don't people listen is the question.  People don't randomly go to the internet to vent 
    +
     more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1prsbb count <live-count>
     
     more-stub: parent t1_p1o2d4x count <live-count>
     
    +more-stub: parent t1_p1o4pbz count <live-count>
    +
     more-stub: parent t1_p1nz8zy count <live-count>
     
     more-stub: parent t1_p1nolqw count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  8. source content difference between and source content +87 -99

    Eleven comments were deleted and ten added, several sympathising with small retail victims whose life savings show in the screenshot and questioning whether self-custody was oversold.

    seen · Captured here 117,303 chars
    What changed from the previous capture 186 lines
     body:
     I’m just worried that the hacker might have some other plans. Who knows, maybe he managed to compromise other wallets too and we just don’t know about it yet. He’ll probably wait until people least expect it and then launch another attack. The whole thing seems suspicious to me because there were already people complaining back in 2021 that someone had hacked their wallets, but nobody took it seriously. And if it was the same hacker, you can see that it took him 5 years to pull this off.
     
    -comment: p1niz0z
    -parent: t3_1vfagz9
    -author: thainfamouzjay
    -created_utc: 1785852377
    -edited: false
    -body:
    -Can't they track the funds to the new wallet and just not let it exit the ledger? 
    -
     comment: p1nj1h9
     parent: t1_p1ndkdk
     author: JMell09
     body:
     I know very little but why didn't he strike when it was over 127K?
     
    -comment: p1nmr9r
    -parent: t3_1vfagz9
    -author: PersonalLook156
    -created_utc: 1785853398
    -edited: false
    -body:
    -The person who is doing this had to have had a wallet themselves or part of the company who made the wallet.  Keep on following the money.....greed will come back at you.
    -
     comment: p1nn7z9
     parent: t1_p1ngxa1
     author: gtwooh
     
     If he used a unique wallet for each transaction it would be far easier to liquidate!
     
    -comment: p1nsa7e
    -parent: t3_1vfagz9
    -author: Infinitely_Refined
    -created_utc: 1785854863
    -edited: false
    -body:
    -Returning those stolen fund would be difficult but action can be taken to frustrate their effort and avoid future similar situation.
    -
     comment: p1nsbwe
     parent: t3_1vfagz9
     author: sajalol
     body:
     I got him for 3 btc 
     
    -comment: p1nt3ce
    -parent: t3_1vfagz9
    -author: Page_Unusual
    -created_utc: 1785855074
    -edited: false
    -body:
    -Good. People will learn only keys generated offline on amnestic system that wipes everything done it after shutdown, are safe keys.
    -
    -Generate, print, keep safe as it was stack of cash.
    -
    -Unpenetrable, unreachable, beyond reach of kids with claude premium subscription.
    -
     comment: p1ntvoc
     parent: t1_p1nn7z9
     author: Exciting_Pop_9296
     edited: false
     body:
     Someone please explain to me how this can happen (or can’t happen) with Ledger? 
    -
    -comment: p1nu04a
    -parent: t3_1vfagz9
    -author: KeeZouX
    -created_utc: 1785855312
    -edited: false
    -body:
    -Out of curiosity, where is he/she/they are storing all the stolen crypto? I mean it has to go somewhere that could be hacked or at least tracked 👀 
     
     comment: p1nu7mi
     parent: t1_p1nenad
     body:
     How can we know it’s just coldcard and not other hardware providers? 
     
    -comment: p1o32ve
    -parent: t3_1vfagz9
    -author: Environmental-Tax814
    -created_utc: 1785857683
    -edited: false
    -body:
    -infinite money glitch 
    -
     comment: p1o396y
     parent: t1_p1nn9kv
     author: Gundel_Gaukelei
     body:
     Some people are gonna have a heart attack while refreshing their view wallet. This is carnage, unfolding right in front of our eyes. 
     
    -comment: p1o9vzd
    -parent: t1_p1nt3ce
    -author: Cautious_Variation_5
    -created_utc: 1785859410
    -edited: false
    -body:
    -Pendrive with Tails OS?
    -
     comment: p1oa65f
     parent: t1_p1nogo0
     author: [deleted]
     
     I would also think this wouldn’t go over well. To find out you weren’t jacked but the company you trusted is the one who seized the coins? And god forbid if they made a mistake in anyways handling it because certainly they’re not equipped to play bank for hundreds or thousands of users. 
     
    -comment: p1orc20
    -parent: t3_1vfagz9
    -author: Puzzleheaded_Pen1017
    -created_utc: 1785863773
    -edited: false
    -body:
    -Wait, why can't we steal them too?
    -
     comment: p1orctk
     parent: t1_p1nfwlq
     author: 3shelfcab
     edited: false
     body:
     Haha. 😅
    -
    -comment: p1ozw0f
    -parent: t1_p1o9vzd
    -author: Javanaut018
    -created_utc: 1785865873
    -edited: false
    -body:
    -Good idea
     
     comment: p1p0fsb
     parent: t3_1vfagz9
     
     Entropy is so simple a cave man can do it with carved bone dice. 
     
    -comment: p1ptx3a
    -parent: t1_p1prsbb
    -author: Emergency-Warthog-56
    -created_utc: 1785873517
    -edited: false
    -body:
    -No. Sorry. I was seeing others post old conversations that was talking about it but I didn't save any of it. There were people saying their Coldcard was wiped. Some saying it wasn't secure. 
    -
     comment: p1ptxd8
     parent: t3_1vfagz9
     author: Hungry-ThoughtsCurry
     body:
     code is law lmao
     
    -comment: p1rt6rr
    -parent: t1_p1pf9qd
    -author: Wait_for_You
    -created_utc: 1785894707
    -edited: false
    -body:
    -Americans, please get U-n-i-v-e-r-s-a-l-H-e-a-l-t-h-C-a-r-e-!  sorry, I had to drop this here, carry on now 
    -
     comment: p1rtqhm
     parent: t3_1vfagz9
     author: demoman45
     body:
     4 years savings gone
     
    +comment: p23tp83
    +parent: t3_1vfagz9
    +author: sebelga
    +created_utc: 1786039122
    +edited: false
    +body:
    +Stealing Bitcoin that the hacker can't move afterwards. The only purpose if f\*\*\* people lives
    +
    +comment: p245019
    +parent: t3_1vfagz9
    +author: djscoox
    +created_utc: 1786041950
    +edited: false
    +body:
    +What's really sad and horrible is... well, just look at the balances on that screenshot. Those are not whales, there's more retail investors, for some of them that will be their life savings, their hope to have a bit of wealth when they retire.
    +
    +I don't even know what the hacker intends to do afterwards. Laundering this much money is the considerably more difficult part of the hack. I have a feeling there might be an agenda behind this.
    +
    +comment: p247nck
    +parent: t1_p1nlexe
    +author: Any_Carob3372
    +created_utc: 1786042622
    +edited: false
    +body:
    +If only the company would not be totally BK if they told 100% of their customers their wallets aren't safe.
    +
    +comment: p24u9pu
    +parent: t3_1vfagz9
    +author: Tiny-Veterinarian906
    +created_utc: 1786048489
    +edited: false
    +body:
    +A la larga esto resulto todo un mentira, te decian que la autocustodia es la forma y se ve que no... a todos los que guardan btc en ledger o en algun otra, como saben que no les va a pasar lo mismo?.. si no pudieron ver hace un mes que se podia con esta, como saben que no hay alguna forma, no digo la misma, de sacarles lo que tienen...
    +
    +comment: p25b1ji
    +parent: t1_p1nrsiz
    +author: FIFofNovember
    +created_utc: 1786053009
    +edited: false
    +body:
    +lol bro feds aint doing shit, welcome to DEFI 
    +
    +comment: p25s80r
    +parent: t3_1vfagz9
    +author: whenbenzendidthem
    +created_utc: 1786058137
    +edited: false
    +body:
    +Can someone explain to me what is happening here?
    +
    +comment: p26k814
    +parent: t3_1vfagz9
    +author: jermtnman
    +created_utc: 1786067189
    +edited: false
    +body:
    +Maybe the hacker will give it all back when he’s bored.  🤷🏻‍♂️
    +
    +comment: p26yy60
    +parent: t1_p1v7m24
    +author: 404_HabeasNotFound
    +created_utc: 1786072226
    +edited: false
    +body:
    +Back to Vegas I go.
    +
    +comment: p277k8g
    +parent: t1_p1qppmi
    +author: cancerboyuofa
    +created_utc: 1786075515
    +edited: false
    +body:
    +Dude, it's not a ledger it's a coldcard. There are very few coldcard users who aren't very well tapped into the space.
    +
    +comment: p27bhe5
    +parent: t3_1vfagz9
    +author: Silverbenji
    +created_utc: 1786077100
    +edited: false
    +body:
    +Can already see the posts 5-10 years from now. 
    +
     more-stub: parent t1_p1pf9qd count <live-count>
     
    +more-stub: parent t1_p1prsbb count <live-count>
    +
     more-stub: parent t1_p1npp5o count <live-count>
     
     more-stub: parent t1_p1nj41h count <live-count>
     
     more-stub: parent t1_p1nolqw count <live-count>
     
    +more-stub: parent t1_p1oeovv count <live-count>
    +
     more-stub: parent t1_p1nesdd count <live-count>
     
    -more-stub: parent t1_p1oeovv count <live-count>
    +more-stub: parent t1_p1qmlri count <live-count>
     
     more-stub: parent t1_p1p0fsb count <live-count>
     
    -more-stub: parent t1_p1qmlri count <live-count>
    -
     more-stub: parent t1_p1ndrmt count <live-count>
     
     more-stub: parent t1_p1osvrg count <live-count>
     
    -more-stub: parent t1_p1nu04a count <live-count>
    -
    -more-stub: parent t1_p1orc20 count <live-count>
    -
     more-stub: parent t3_1vfagz9 count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  9. source content difference between and source content +46 -54

    Five comments were deleted and four added, including a report that 4 years of savings are gone and a suggestion that AI assisted the entropy cracking.

    seen · Captured here 117,335 chars
    What changed from the previous capture 100 lines
     edited: false
     body:
     It's strictly a Coldcard/Coinkite issue and yes, you are right, warnings were shared about this years ago.
    -
    -comment: p1njacq
    -parent: t1_p1ndrmt
    -author: Eequal
    -created_utc: 1785852464
    -edited: false
    -body:
    -Hope to see his trial on TV. 
     
     comment: p1njj6i
     parent: t1_p1ndagh
     body:
     Not even sure what the issue is, surely this gentlemen is in possession of the keys to compromised wallets and it is therefore in fact his Bitcoin after all 🧐
     
    -comment: p1oytpj
    -parent: t1_p1orc20
    -author: Javanaut018
    -created_utc: 1785865611
    -edited: false
    -body:
    -Guess why not...
    -
     comment: p1ozash
     parent: t1_p1nmpmg
     author: Ill-Car-700
     body:
     There will no longer be a CoinKite after this event. 
     
    -comment: p1pkl7h
    -parent: t3_1vfagz9
    -author: Just_Bluebird_5268
    -created_utc: 1785871068
    -edited: false
    -body:
    -It's the future of money
    -
     comment: p1pkmp4
     parent: t1_p1op2i0
     author: FlipFlopFanatic
     body:
     You ever notice that right towards the end of a bear cycle, there’s a sudden attack or exchange collapse causing sudden FUD and price drop? Then major governments start buying at the bottom… Maybe all anecdotal but interesting timing nonetheless. 
     
    -comment: p1pq8d6
    -parent: t3_1vfagz9
    -author: PI-E0423
    -created_utc: 1785872546
    -edited: false
    -body:
    -It will destroy trust in Bitcoin. No matter if waranted
    -
     comment: p1pqs5s
     parent: t1_p1o5tj4
     author: Professional_Golf393
     edited: false
     body:
     Wasn't links I found. I ran accross a few posts where people posted old conversations. I didn't save any of them or share them. I should have. I think back then most figured those were just user errors. 
    -
    -comment: p1pztw1
    -parent: t3_1vfagz9
    -author: Dont_Be_Sheep
    -created_utc: 1785875078
    -edited: false
    -body:
    -SELL YOUR BITCOIN WHY ARE YOU HOLDING IT?? The experiment failed.
     
     comment: p1pzuas
     parent: t1_p1prfj2
     body:
     But cancer treatment is covered by basic health insurance, so they only pay the €385 annual compulsory deductible, along with the ~€180 monthly premium. Plus, sick leave guarantees their income while ill: usually 100% in the first year and 70% in the second year (up to 2 years max).
     
    +comment: p214wu8
    +parent: t1_p1oeovv
    +author: Logical_Breadfruit36
    +created_utc: 1786011340
    +edited: false
    +body:
    +making you're own seed with dices or coins gives a peace of mind + long passphrase. Search on youtube how to make you're own seed. It took me around 60 minutes to make my own. Fully random. 
    +
    +comment: p217wh7
    +parent: t1_p20vga4
    +author: ivanjurman
    +created_utc: 1786012648
    +edited: false
    +body:
    +Maybe they don’t have basic health insurance, and they don’t have paid sick leave because they’re unemployed
    +
    +comment: p21cb6i
    +parent: t1_p1uibgi
    +author: LittleLeeno
    +created_utc: 1786014472
    +edited: false
    +body:
    +It's probably AI. Not the script draining, but the process of cracking the entropy was likely ai assisted. 
    +
    +comment: p21riq3
    +parent: t3_1vfagz9
    +author: FlimsyLawfulness7767
    +created_utc: 1786019782
    +edited: false
    +body:
    +4 years savings gone
    +
    +more-stub: parent t1_p1pf9qd count <live-count>
    +
    +more-stub: parent t1_p1npp5o count <live-count>
    +
    +more-stub: parent t1_p1nj41h count <live-count>
    +
    +more-stub: parent t1_p1nijcp count <live-count>
    +
    +more-stub: parent t1_p1o9ogr count <live-count>
    +
    +more-stub: parent t1_p1nh8ub count <live-count>
    +
     more-stub: parent t1_p1nenad count <live-count>
     
    -more-stub: parent t1_p1pf9qd count <live-count>
    -
    -more-stub: parent t1_p1npp5o count <live-count>
    -
    -more-stub: parent t1_p1nj41h count <live-count>
    -
    -more-stub: parent t1_p1nijcp count <live-count>
    -
    -more-stub: parent t1_p1o9ogr count <live-count>
    -
    -more-stub: parent t1_p1nh8ub count <live-count>
    -
     more-stub: parent t1_p1o3rfu count <live-count>
     
     more-stub: parent t1_p1o12ig count <live-count>
     
     more-stub: parent t1_p1qmlri count <live-count>
     
    -more-stub: parent t1_p1njacq count <live-count>
    -
     more-stub: parent t1_p1ndrmt count <live-count>
     
     more-stub: parent t1_p1osvrg count <live-count>
     
     more-stub: parent t1_p1nu04a count <live-count>
     
    +more-stub: parent t1_p1orc20 count <live-count>
    +
     more-stub: parent t3_1vfagz9 count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  10. source content difference between and source content +55 -53

    Six comments were deleted and five added, including one asking how anyone knows Coinkite is not draining the wallets itself and one discussing proof of theft in court.

    seen · Captured here 117,185 chars
    What changed from the previous capture 108 lines
     body:
     They don't keep order details.
     
    -comment: p1nl9cw
    -parent: t1_p1njacq
    -author: ImPinkSnail
    -created_utc: 1785852996
    -edited: false
    -body:
    -If he's discovered he will be lucky to get a trial. People commit acts of violence to forcibly take BTC 
    -
     comment: p1nlexe
     parent: t1_p1nh8ub
     author: zefy_zef
     edited: false
     body:
     Good question. I would guess that the scam wasn't under the same AI assistance capabilities as there is now. AI advancing a lot faster than creators thought it would. 
    -
    -comment: p1nniy2
    -parent: t1_p1ndrmt
    -author: BangBangPing5Dolla
    -created_utc: 1785853600
    -edited: false
    -body:
    -Depends if it’s someone that can be caught. No much to be done if it turns out to be Best Korea or Russia.
     
     comment: p1nnp56
     parent: t3_1vfagz9
     body:
     Ditto
     
    -comment: p1ohuen
    -parent: t1_p1nu04a
    -author: magicmulder
    -created_utc: 1785861412
    -edited: false
    -body:
    -If it's a private address, you cannot "hack" it. And if you could, Bitcoin would be done.
    -
    -Good luck tracking this if it goes through hundreds of addresses, mixers, darknet markets, ...
    -
     comment: p1oiw4l
     parent: t1_p1nj41h
     author: unvac
     body:
     That was some peoples 401k my guy
     
    -comment: p1oxxyr
    -parent: t1_p1nw2v1
    -author: Pirulax
    -created_utc: 1785865397
    -edited: false
    -body:
    -Dying in a car crash is 1 in 100?
    -
     comment: p1oy007
     parent: t1_p1nogo0
     author: BDCRA
     edited: false
     body:
     You rolled a bitcoin address and sent your coins to it? 
    -
    -comment: p1oyctk
    -parent: t1_p1oeovv
    -author: Javanaut018
    -created_utc: 1785865498
    -edited: false
    -body:
    -Not really 
     
     comment: p1oygdv
     parent: t1_p1nqe2i
     body:
     Everyone who buys hardware like this has signed a waiver by buying it - you know, the “do you accept” clause. 
     
    -comment: p1qw526
    -parent: t1_p1p0fsb
    -author: SatoshisVisionTM
    -created_utc: 1785884125
    -edited: false
    -body:
    -Given that one of the exchanges in my country recently got under investigation of the financial task force an lost six million euros of customer funds: yeah, no. 
    -
    -This bug was insane, and should never have happened, but "not your keys, not your bitcoin" transcends hardware and software wallets and simply means: pick a random number.
    -
     comment: p1qx4c5
     parent: t3_1vfagz9
     author: Patrick_Atsushi
     body:
     code is law lmao
     
    +comment: p1rt6rr
    +parent: t1_p1pf9qd
    +author: Wait_for_You
    +created_utc: 1785894707
    +edited: false
    +body:
    +Americans, please get U-n-i-v-e-r-s-a-l-H-e-a-l-t-h-C-a-r-e-!  sorry, I had to drop this here, carry on now 
    +
     comment: p1rtqhm
     parent: t3_1vfagz9
     author: demoman45
     
     If you can cash out a single large address in one go you're more likely to get away with it. 
     
    +comment: p1zpm2x
    +parent: t1_p1ng529
    +author: CanadianGenealogy
    +created_utc: 1785987597
    +edited: false
    +body:
    +*disgruntled 
    +
    +comment: p20ju98
    +parent: t1_p1zi9t1
    +author: Ok_Option_3
    +created_utc: 1786000963
    +edited: false
    +body:
    +I don't think that's true here! 
    +
    +If each transaction was unique you could probably spend the smaller ones without the owners even bothering to chase. If it did end up in court each user individually would have to demonstrate that they owned a weakly generated seed. 
    +
    +With a single transaction it's sufficient for a single user to prove they had coins stolen. We then know all other transactions (even if some are actually legitimate) were made by the same theif.
    +
    +comment: p20ohbp
    +parent: t3_1vfagz9
    +author: 12kdaysinthefire
    +created_utc: 1786003287
    +edited: false
    +body:
    +How does anyone know this isn’t Cold Card doing it themselves
    +
    +comment: p20vga4
    +parent: t1_p1pf9qd
    +author: Far_Professor_8254
    +created_utc: 1786006784
    +edited: false
    +body:
    +But cancer treatment is covered by basic health insurance, so they only pay the €385 annual compulsory deductible, along with the ~€180 monthly premium. Plus, sick leave guarantees their income while ill: usually 100% in the first year and 70% in the second year (up to 2 years max).
    +
     more-stub: parent t1_p1nenad count <live-count>
     
     more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1ney7w count <live-count>
     
    -more-stub: parent t1_p1oxxyr count <live-count>
    +more-stub: parent t1_p1nw2v1 count <live-count>
     
     more-stub: parent t1_p1o2d4x count <live-count>
     
     
     more-stub: parent t1_p1nesdd count <live-count>
     
    +more-stub: parent t1_p1oeovv count <live-count>
    +
    +more-stub: parent t1_p1p0fsb count <live-count>
    +
     more-stub: parent t1_p1qmlri count <live-count>
     
    +more-stub: parent t1_p1njacq count <live-count>
    +
    +more-stub: parent t1_p1ndrmt count <live-count>
    +
     more-stub: parent t1_p1osvrg count <live-count>
     
    +more-stub: parent t1_p1nu04a count <live-count>
    +
     more-stub: parent t3_1vfagz9 count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  11. source content difference between and source content +170 -179

    The thread added and removed numerous comments, including renewed discussion of fiat, wallet safety and an unverified claim that the flaw was deliberate. One account and its comment were also deleted.

    seen · Captured here 116,931 chars
    What changed from the previous capture 349 lines
     edited: false
     body:
     Not so discounted now
    -
    -comment: p1ngv2n
    -parent: t1_p1nenad
    -author: AvailableTie6834
    -created_utc: 1785851794
    -edited: false
    -body:
    -coin control exists.
     
     comment: p1ngvch
     parent: t1_p1ndkdk
     body:
     Also this tweet: [https://x.com/COLDCARDwallet/status/1447213375398846473](https://x.com/COLDCARDwallet/status/1447213375398846473)
     
    -comment: p1nx7d1
    -parent: t1_p1ney7w
    -author: user_name_checks_out
    -created_utc: 1785856154
    -edited: false
    -body:
    ->  high entropy paraphrase generation 
    -
    ->  plausible looking paraphrases 
    -
    -That word - "paraphrase" - what do you think it means?
    -
     comment: p1nx7t9
     parent: t1_p1nijcp
     author: MetoSempre20
     body:
     These are dark times. What would you do if your entire stack was taken? I've had a very large stack swept and just lost at the moment 
     
    -comment: p1o0oew
    -parent: t1_p1nx7d1
    -author: c0reM
    -created_utc: 1785857065
    -edited: false
    -body:
    -It means that when they were testing, the passphrases their code was spitting out looked like they could plausibly have been generated with a high entropy pipeline.
    -
    -In reality they were not, hence why nobody noticed for so long.
    -
     comment: p1o0wpc
     parent: t1_p1np7q4
     author: Cutapis
     body:
     Pendrive with Tails OS?
     
    -comment: p1o9y9s
    -parent: t1_p1o9ogr
    -author: Emergency-Warthog-56
    -created_utc: 1785859426
    -edited: false
    -body:
    -It's a very heartbreaking thought... Terrible...
    -
     comment: p1oa65f
     parent: t1_p1nogo0
     author: [deleted]
     
     comment: p1owuqe
     parent: t1_p1ols5o
    -author: buttercup612
    +author: [deleted]
     created_utc: 1785865130
     edited: false
     body:
    -Does that apply to only Ledger or other companies like Trezor etc?
    +[deleted]
     
     comment: p1owvq7
     parent: t1_p1nj1h9
     body:
     This will definitely be a late night special on NBC 
     
    -comment: p1p6rxg
    -parent: t1_p1nj41h
    -author: tpe91roc
    -created_utc: 1785867574
    -edited: false
    -body:
    -Are we sure Trezor for example will not be affected in any way?
    -
     comment: p1p73cj
     parent: t1_p1njkgy
     author: PacoStanleys
     body:
     If I was unaware of the current situation and I got that email, I would assume it's a phishing scam.
     
    -comment: p1pur2g
    -parent: t1_p1p6rxg
    -author: Skinny_Human
    -created_utc: 1785873735
    -edited: false
    -body:
    -No one is sure of anything dude so don’t listen to anyone who tells you otherwise!!
    -
     comment: p1puu1u
     parent: t1_p1nenad
     author: blackrack
     body:
     No wallet is safe, only safe thing is to have your funds on your own personal laptop with no prior connection to anything sketchy and no internet connection. That is your hard rock personal wallet.
     
    -comment: p1pw1i1
    -parent: t1_p1pur2g
    -author: tpe91roc
    -created_utc: 1785874080
    -edited: false
    -body:
    -What’s your best advice? Not sure what to do
    +comment: p1pw9rz
    +parent: t1_p1nz8zy
    +author: BrocoliAssassin
    +created_utc: 1785874140
    +edited: false
    +body:
    +True. Fiat is awesome cause the government gets to inflate every year and its going so bad that now were down to only 5 years to make your money worth 50% less.
    +
    +It works so great that we also need to use the military to further bankrupt us and kill millions of people overseas! Don’t forget all that destruction to the environment and wildlife!
    +
    +Man, I’m with you, fiat is the best! Just as long as those horrible things don’t happen to you and just those pesky poor brown people overseas or in other countries.
     
     comment: p1pwgik
     parent: t3_1vfagz9
     body:
     Make sure to check their code bases as they were in 2014, back when bitcoin first made waves at 1.1k. 
     
    -comment: p1py1ab
    -parent: t1_p1pw1i1
    -author: Skinny_Human
    -created_utc: 1785874607
    -edited: false
    -body:
    -I had a cold card so I sent my BTC to one of the big exchanges and made it as secure as possible using 2FA with an authenticator and a long password etc
    -
    -I think it depends how much you have dude. If it’s a very small amount leave it where it is, if not, do what I did
    -
    -I think we’re at the point where self custody is becoming too complicated and too dangerous to be worth it anymore because of AI and hackers et cetera.
    -
     comment: p1py2on
     parent: t1_p1ovuti
     author: Desperate_Bite_7538
     body:
     Damn, dude! Don't put ideas like this out here on the web where AI can see it! You might give them ideas! Lol
     
    -comment: p1pyvm8
    -parent: t1_p1py1ab
    -author: tpe91roc
    -created_utc: 1785874828
    -edited: false
    -body:
    -Exactly feel the same. I have an amount that losing would really piss me off. It’s not a lot but it’s not little either. Won’t be life changing but I’d rather pay six months mortgage than losing it ahah I’ve been holding for ages 
    -
     comment: p1pzcmr
     parent: t1_p1nmefx
     author: Emergency-Warthog-56
     edited: false
     body:
     Not an ex-dev. Much worse.
    -
    -comment: p1pzwpf
    -parent: t1_p1pyvm8
    -author: Skinny_Human
    -created_utc: 1785875099
    -edited: false
    -body:
    -Then we are the same. Do what I did then in that case. I trust the big exchanges more now than I do the cold card companies and I think this is definitely the beginning of the end for many of them because people make mistakes and are incompetent. At least the big exchanges have large security teams and regulatory controls etc
    -
    -comment: p1q0fnu
    -parent: t1_p1pyvm8
    -author: Skinny_Human
    -created_utc: 1785875237
    -edited: false
    -body:
    -If you decide to go the exchange route, make sure you take advantage of ALL their security measures. I even asked AI how to max it out, ironically, and it was very helpful 
     
     comment: p1q3mpn
     parent: t1_p1nh8ub
     body:
     I put $20 back in my CC to see if it gets swiped in the future.  
     
    -comment: p1qbtsh
    -parent: t1_p1pw1i1
    -author: surfsee
    -created_utc: 1785878293
    -edited: false
    -body:
    -Trezor is fine. This was a bug in the generation of wallet in coldcard. Nothing to do with trezor, trezor uses proper entropy when generatind wallets.
    -ive heard exchanges use trezor, which makes sense.
    -ofcourse nothing is 100% in this world, but to me trezor seems like one of the best ways for most people to store btc.
    -
     comment: p1qc6q3
     parent: t1_p1pv72e
     author: surfsee
     it was a bug in the coldcard wallet generation code.
     That buggy code was not shared by any other hardware wallets.
     
    -comment: p1qd4nt
    -parent: t1_p1pur2g
    -author: surfsee
    -created_utc: 1785878644
    -edited: false
    -body:
    -Noone can be 100% sure of anything no, but this bug has nothing to do with trezor or any other hardware wallets
    -
    -comment: p1qda0d
    -parent: t1_p1qd4nt
    -author: Skinny_Human
    -created_utc: 1785878683
    -edited: false
    -body:
    -But does that mean there are no more bugs??
    -
     comment: p1qf0ji
     parent: t1_p1okwmr
     author: scrandlle
     
     Anyway, you're piecing things together with tiny bits of information and not even getting the base info right.
     
    -comment: p1qfk5w
    -parent: t1_p1qda0d
    -author: surfsee
    -created_utc: 1785879311
    -edited: false
    -body:
    -more bugs? This was a huge bug in coldcard , but it didnt exist in any other wallet.
    -
    -
    -comment: p1qfss5
    -parent: t1_p1qfk5w
    -author: Skinny_Human
    -created_utc: 1785879378
    -edited: false
    -body:
    -But you don’t know that other bugs don’t exist on those other wallets man, that’s what I was trying to say 
    -
     comment: p1qfvp3
     parent: t1_p1o14pk
     author: SatisfactionFinal287
     body:
     Great, gonna ask a local cave man to carve me a dice made of bone... question is should I let him throw bone dice or should I throw it myself for maximum entropy
     
    +comment: p1qmqv4
    +parent: t1_p1pw9rz
    +author: stevethewatcher
    +created_utc: 1785881335
    +edited: false
    +body:
    +Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality 
    +
     comment: p1qmraq
     parent: t1_p1p73cj
     author: daynomate
     WHY IN THE WORLD are they using the same address to receive the stolen Bitcoin? That’s literally the only way to prove it was stolen. Anyone could CLAIM their Bitcoin was stolen, but if it goes to some random address, there’s no way to know whether it’s an address they control themselves. But since the attacker is using ONE address for everything, they are making it a million times harder for themselves to actually utilize the stolen funds, since everyone will be tracking them, and they are also giving all victims clear proof that the theft was real.
     
     WHY WOULD A THEIF DO THIS? I genuinely don’t understand.
    +
    +comment: p1qmti4
    +parent: t1_p1pw9rz
    +author: stevethewatcher
    +created_utc: 1785881356
    +edited: false
    +body:
    +Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality
     
     comment: p1qnfzo
     parent: t3_1vfagz9
     
     This bug was insane, and should never have happened, but "not your keys, not your bitcoin" transcends hardware and software wallets and simply means: pick a random number.
     
    -comment: p1qwije
    -parent: t1_p1pf9qd
    -author: WowImOldAF
    -created_utc: 1785884238
    -edited: false
    -body:
    -If someone has "plenty of bitcoin," they probably have good health insurance and won't need to worry about using btc for a medical bill. But yea, it would still suck to have money stolen from you.  
    -
     comment: p1qx4c5
     parent: t3_1vfagz9
     author: Patrick_Atsushi
     edited: false
     body:
     Dude is probably scanning through all serial numbers. 
    +
    +comment: p1qxikg
    +parent: t1_p1pw9rz
    +author: Technical_Customer_1
    +created_utc: 1785884548
    +edited: false
    +body:
    +“
    + Don’t forget all that destruction to the environment and wildlife!” 
    +
    +Says the person who prefers money that uses gigawatt after gigawatt of juice…
     
     comment: p1qycfp
     parent: t3_1vfagz9
     body:
     if the government wanted to track this guy, they could...
     
    +comment: p1r4py6
    +parent: t1_p1qmqv4
    +author: Candid-Walk-6762
    +created_utc: 1785886794
    +edited: false
    +body:
    +Can you remind us how much value the dollar has lost since it was taken off the gold standard? Come on Mr Pro Government, why don’t you tell us?
    +
     comment: p1r4qjo
     parent: t3_1vfagz9
     author: Necessary_Floor_7081
     body:
     Damn when did it happen there?
     
    +comment: p1r7hpt
    +parent: t1_p1r4py6
    +author: stevethewatcher
    +created_utc: 1785887678
    +edited: false
    +body:
    +Sure, a dollar in 1946 has the purchasing power of $18 in 2026 while the average wage has matched exactly that, growing from $4200 to $72k. It doesn't matter if it's worth less if you have more, you financially illiterate donkey
    +
     comment: p1r7olc
     parent: t1_p1ngs8i
     author: smarge24
     body:
     Surely they can transfer before getting it taken? If they leave it on there it’s gone 
     
    -comment: p1r7rv4
    -parent: t1_p1qppmi
    -author: Legal_Rampage
    -created_utc: 1785887769
    -edited: false
    -body:
    -Gary had a good run.
    -
     comment: p1raipt
     parent: t1_p1oymv4
     author: nephilimcummingdaddy
     body:
     New form of mining. 
     
    +comment: p1tk0ga
    +parent: t1_p1pzuas
    +author: dashmckenzie
    +created_utc: 1785921217
    +edited: false
    +body:
    +A rogue AI
    +
     comment: p1tkqgh
     parent: t1_p1np72w
     author: iceseayoupee
     body:
     Rien que cette inaction qui relève pourtant du bon sens couplée à une démarche de transparence démontre l'opacité entourant le système bitcoin en général. Le BTC c'est le far west du 21eme siècle. 
     
    +comment: p1ttt41
    +parent: t1_p1tk0ga
    +author: burusai
    +created_utc: 1785925741
    +edited: false
    +body:
    +No. Their CTO inserted the bug into their code. This was a planned rugpull from the beginning.
    +
    +comment: p1tyuon
    +parent: t1_p1ttt41
    +author: dashmckenzie
    +created_utc: 1785927825
    +edited: false
    +body:
    +oooooof
    +
     comment: p1u2muy
     parent: t1_p1pubo4
     author: boomerangthrowaway
     
     
     
    -comment: p1urkxm
    -parent: t1_p1oxxyr
    -author: optrin
    -created_utc: 1785937231
    -edited: false
    -body:
    -Yep, in the USA.
    -
     comment: p1ut01l
     parent: t1_p1pjgh2
     author: H8ckt1v1st
     edited: false
     body:
     Lol
    -
    -comment: p1v6yws
    -parent: t1_p1urkxm
    -author: Pirulax
    -created_utc: 1785941353
    -edited: false
    -body:
    -I wonder if it's less or more outside the US 
     
     comment: p1v7m24
     parent: t1_p1o9fws
     body:
     ROFL survival of the fittest 
     
    -more-stub: parent t1_p1pzuas count <live-count>
    +comment: p1xr5ze
    +parent: t1_p1oewht
    +author: Sensitive_Guest_5995
    +created_utc: 1785964773
    +edited: false
    +body:
    +Will be a shame when they eventually come  
    +Here and ask what happened years down the line. 
    +
    +comment: p1xsjwf
    +parent: t1_p1ndagh
    +author: Woodstuffs
    +created_utc: 1785965165
    +edited: false
    +body:
    +They didn't even contact customers about the breach, so I doubt they keep long term records about their customers at all.
    +
    +comment: p1xtnmm
    +parent: t1_p1qth65
    +author: Woodstuffs
    +created_utc: 1785965474
    +edited: false
    +body:
    +Same. I bought one from Coinkite and it'll just stay in the unopened package. Probably wind up in a vintage store in 2050 as some neat novelty of the times. 
    +
    +comment: p1y1iu9
    +parent: t1_p1wskxx
    +author: Shepinion
    +created_utc: 1785967758
    +edited: false
    +body:
    +Wow. That is tragically ironic like you said 
    +
    +comment: p1yok8m
    +parent: t1_p1nmpmg
    +author: opoeto
    +created_utc: 1785975062
    +edited: false
    +body:
    +How would he have known 127k was peak
    +
    +comment: p1ypyyt
    +parent: t1_p1oewht
    +author: QlubSoda
    +created_utc: 1785975524
    +edited: false
    +body:
    +Awe man, imagine DCAing into a corrupted wallet with no knowledge. 
    +
    +comment: p1z2nkg
    +parent: t3_1vfagz9
    +author: theuniverseisgodvfdm
    +created_utc: 1785979698
    +edited: false
    +body:
    +future of money my ass. im long af on bitcoin but lets face it this is just a worthless technology, being exploited for volatility and speculation. don't get me wrong, im still in it for that volatility but lets not pretend bitcoin is going anywhere 
    +
    +comment: p1z35km
    +parent: t1_p1oewht
    +author: CalvinsStuffedTiger
    +created_utc: 1785979862
    +edited: false
    +body:
    +So brutal 
    +
    +comment: p1z95h1
    +parent: t3_1vfagz9
    +author: painfuldrp
    +created_utc: 1785981831
    +edited: false
    +body:
    +Well it ain’t gunna decrease 
    +
    +comment: p1zi9t1
    +parent: t1_p1ns5xp
    +author: myinternets
    +created_utc: 1785984912
    +edited: false
    +body:
    +Although a unique wallet for each transaction is each a unique chance to get caught when trying to cash each one out. 
    +
    +If you can cash out a single large address in one go you're more likely to get away with it. 
    +
    +more-stub: parent t1_p1nenad count <live-count>
     
     more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1npp5o count <live-count>
     
    -more-stub: parent t1_p1pzwpf count <live-count>
    -
    -more-stub: parent t1_p1qfss5 count <live-count>
    +more-stub: parent t1_p1nj41h count <live-count>
     
     more-stub: parent t1_p1nijcp count <live-count>
     
    +more-stub: parent t1_p1o9ogr count <live-count>
    +
     more-stub: parent t1_p1nh8ub count <live-count>
     
     more-stub: parent t1_p1o3rfu count <live-count>
     
     more-stub: parent t1_p1ndagh count <live-count>
     
    -more-stub: parent t1_p1o0oew count <live-count>
    +more-stub: parent t1_p1ney7w count <live-count>
    +
    +more-stub: parent t1_p1oxxyr count <live-count>
     
     more-stub: parent t1_p1o2d4x count <live-count>
     
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  12. source content difference between and source content +257 -326

    Numerous comments about law-enforcement recovery, terminology, passphrases and unrelated bitcoin debate were no longer served in the thread.

    seen · Captured here 116,895 chars
    What changed from the previous capture 583 lines
     Surely every utxo would’ve been better sent to a unique address? Harder to track?
     
     Gives me a tiny bit of hope for the people that got hacked, he front ran this before it went public and will then return it, wishful thinking I know.
    -
    -comment: p1net2w
    -parent: t3_1vfagz9
    -author: abulkasam
    -created_utc: 1785851227
    -edited: false
    -body:
    -Just a stupid question? Why can't governments or FBI etc do anything about it? 
     
     comment: p1ney7w
     parent: t1_p1nd57q
     Look for yourself. Not sure if links go through on reddit dont really ever use it but I will try this is the exploiters wallet on mempool.
     
     https://mempool.space/address/bc1qq85v2c926eg6pgxhwp6q7lf6cnsz80qs3fcu9r
    -
    -comment: p1nic3y
    -parent: t1_p1net2w
    -author: Sorry-Bobby
    -created_utc: 1785852202
    -edited: false
    -body:
    -They can. 
    -
    -If it’s an American, and he eventually spends that bitcoin in a way that can be tracked, they will catch him. They might recuperate some of the funds. 
    -
    -If it’s a North Korean or a Russia, the FBI doesn’t have jurisdiction there. 
    -
    -If he leaves no trace, the FBI will look for a while then go back to other jobs. Crypto crime is pretty low on their priority list right now. 
    -
    -comment: p1nidfd
    -parent: t1_p1ng9ki
    -author: positronius
    -created_utc: 1785852212
    -edited: false
    -body:
    -Maybe for one address... But there would be a bunch of ways to prove ownership. Exchange records, mining records, transfer, emails (from purchases/transfers), proof of ownership of a device etc.
    -
    -Even if a bad actor could sneak in and get someone elses funds, they would have to aim for an unclaimed wallet, and even then they would only be able to do it once or twice realistically
     
     comment: p1niecp
     parent: t1_p1ndagh
       
     presumably nobody at Ledger has made the same mistake.       
     
    -comment: p1o4f1c
    -parent: t1_p1o0oew
    -author: user_name_checks_out
    -created_utc: 1785858025
    -edited: false
    -body:
    -> It means that when they were testing, the passphrases their code was spitting out looked like they could plausibly have been generated with a high entropy pipeline.
    -
    -Before you were saying "paraphrase". Now you are saying "passphrase". Neither term is correct.
    -
     comment: p1o4n3p
     parent: t1_p1o1d2l
     author: Save_JR
     
     Good luck tracking this if it goes through hundreds of addresses, mixers, darknet markets, ...
     
    -comment: p1oi9o1
    -parent: t1_p1nwd9u
    -author: curiousengineer601
    -created_utc: 1785861519
    -edited: false
    -body:
    -Satoshi is dead by now or the early wallets would have had some transactions. At least that’s my guess 
    -
     comment: p1oiw4l
     parent: t1_p1nj41h
     author: unvac
     body:
     because he thought it was going to 200K. He has finally accepted it's a bear market and capitulated, by triggering the scam, so he can sell the bottom.
     
    -comment: p1oni6k
    -parent: t1_p1o4f1c
    -author: c0reM
    -created_utc: 1785862821
    -edited: false
    -body:
    -lol just saw the typo. Typed it on my phone clearly it autocorrected it... twice. Corrected in the original comment :)
    -
     comment: p1oo4yk
     parent: t1_p1niecp
     author: xiskghferx
     edited: false
     body:
     they are the ones doing the stealing
    -
    -comment: p1ormjg
    -parent: t1_p1oni6k
    -author: user_name_checks_out
    -created_utc: 1785863845
    -edited: false
    -body:
    -> lol just saw the typo. Typed it on my phone clearly it autocorrected it... twice. Corrected in the original comment :)
    -
    -You changed "paraphrase" to "passphrase" and that term, again, is also incorrect.  You are confused about basic terminology.
     
     comment: p1orscn
     parent: t1_p1o396y
     
     Add a passphrase, long enough for real protection if someone has your seed, and move your assets. 
     
    -comment: p1p4pim
    -parent: t3_1vfagz9
    -author: Moonrunner04
    -created_utc: 1785867065
    -edited: false
    -body:
    -The company real-random who offers entropy as a service using a chaos theory of dice and water would have solved this problem instantly 
    -
     comment: p1p5ez4
     parent: t3_1vfagz9
     author: Vancecookcobain
     body:
     If you can't defeat them, join them
     
    -comment: p1pgeq8
    -parent: t1_p1ormjg
    -author: Consider8SpeedDemon
    -created_utc: 1785869989
    -edited: false
    -body:
    -So tell us the right term then
    -
     comment: p1pgln9
     parent: t1_p1pga8t
     author: alpeterpeter
     
     More of this to happen more frequently. Easy money for bad guys and rouge states to start full scale find exploits and empty out crypto accounts 
     
    -comment: p1pj0e3
    -parent: t1_p1o12ig
    -author: DifficultSquash1517
    -created_utc: 1785870661
    -edited: false
    -body:
    -And by the way reciprocity is very much in play here. The United States would never extradite me to the UAE or Russia or Germany simply because they won't hand over their citizens 🤷
    -
     comment: p1pjgh2
     parent: t1_p1o55n0
     author: DifficultSquash1517
     body:
     Do you have a link to the warning that was shared years ago?
     
    -comment: p1prw9i
    -parent: t1_p1pgeq8
    -author: user_name_checks_out
    -created_utc: 1785872985
    -edited: false
    -body:
    -> So tell us the right term then
    -
    -Seed.  A passphrase, if one is used, is typically supplied by the user, not generated by the device.
    -
     comment: p1ps07y
     parent: t1_p1nnp56
     author: SweetIsland
     body:
     New black mirror season incoming
     
    -comment: p1pu9tf
    -parent: t1_p1pf9qd
    -author: MotanulScotishFold
    -created_utc: 1785873610
    -edited: false
    -body:
    -This is why we need harsher punishments for those that steal from other people, even if is 'just' a few dollars. Law enforcements should take every small theft as a serious crime to give terror to those who might attempt doing so.
    -
     comment: p1pubo4
     parent: t1_p1pjsr4
     author: Shiftlock0
     body:
     What’s your best advice? Not sure what to do
     
    -comment: p1pw9rz
    -parent: t1_p1nz8zy
    -author: BrocoliAssassin
    -created_utc: 1785874140
    -edited: false
    -body:
    -True. Fiat is awesome cause the government gets to inflate every year and its going so bad that now were down to only 5 years to make your money worth 50% less.
    -
    -It works so great that we also need to use the military to further bankrupt us and kill millions of people overseas! Don’t forget all that destruction to the environment and wildlife!
    -
    -Man, I’m with you, fiat is the best! Just as long as those horrible things don’t happen to you and just those pesky poor brown people overseas or in other countries.
    -
     comment: p1pwgik
     parent: t3_1vfagz9
     author: Charmed-paper345
     edited: false
     body:
     So are people “still doing everything right” and “did nothing wrong”?
    -
    -comment: p1pwvdh
    -parent: t1_p1oi9o1
    -author: drwebb
    -created_utc: 1785874300
    -edited: false
    -body:
    -I mean no ones knows, but I prefer to believe Satoshi is alive and just has the op sec on the level of the creator of BTC.
     
     comment: p1pxz35
     parent: t1_p1nr840
     edited: false
     body:
     If you decide to go the exchange route, make sure you take advantage of ALL their security measures. I even asked AI how to max it out, ironically, and it was very helpful 
    -
    -comment: p1q2ek6
    -parent: t1_p1pu9tf
    -author: [deleted]
    -created_utc: 1785875767
    -edited: false
    -body:
    -[removed]
    -
    -comment: p1q2xp8
    -parent: t1_p1pwvdh
    -author: curiousengineer601
    -created_utc: 1785875909
    -edited: false
    -body:
    -I really wonder if i will ever see action from those early wallets. Or if someone figures out who Satoshi is. It’s an incredibly interesting story 
     
     comment: p1q3mpn
     parent: t1_p1nh8ub
     body:
     I put $20 back in my CC to see if it gets swiped in the future.  
     
    -comment: p1qb9sl
    -parent: t1_p1pzwpf
    -author: tpe91roc
    -created_utc: 1785878142
    -edited: false
    -body:
    -Yes I’m thinking to do the same. Maybe transfer in small batches just to be sure it arrives and without having issues with the address. It’s a small expense anyway so definitely would be a better idea. 
    -
     comment: p1qbtsh
     parent: t1_p1pw1i1
     author: surfsee
     body:
     because of bitbox
     
    -comment: p1qhws5
    -parent: t1_p1qfss5
    -author: surfsee
    -created_utc: 1785879967
    -edited: false
    -body:
    -Yeah, noone can be sure of anything. 
    -the more code, the more room for bugs.
    -The code running a exchange is a lot more prone to bugs, as its a lot bigger and more complex.
    -even the guys running btc etf can be hacked, nothing is 100% certain. 
    -
    -
     comment: p1qjq7e
     parent: t1_p1ndagh
     author: Lopsided-General-434
     body:
     Great, gonna ask a local cave man to carve me a dice made of bone... question is should I let him throw bone dice or should I throw it myself for maximum entropy
     
    -comment: p1qmqv4
    -parent: t1_p1pw9rz
    -author: stevethewatcher
    -created_utc: 1785881335
    -edited: false
    -body:
    -Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality 
    -
     comment: p1qmraq
     parent: t1_p1p73cj
     author: daynomate
     WHY IN THE WORLD are they using the same address to receive the stolen Bitcoin? That’s literally the only way to prove it was stolen. Anyone could CLAIM their Bitcoin was stolen, but if it goes to some random address, there’s no way to know whether it’s an address they control themselves. But since the attacker is using ONE address for everything, they are making it a million times harder for themselves to actually utilize the stolen funds, since everyone will be tracking them, and they are also giving all victims clear proof that the theft was real.
     
     WHY WOULD A THEIF DO THIS? I genuinely don’t understand.
    -
    -comment: p1qmti4
    -parent: t1_p1pw9rz
    -author: stevethewatcher
    -created_utc: 1785881356
    -edited: false
    -body:
    -Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality
     
     comment: p1qnfzo
     parent: t3_1vfagz9
     body:
     Dude is probably scanning through all serial numbers. 
     
    -comment: p1qxikg
    -parent: t1_p1pw9rz
    -author: Technical_Customer_1
    -created_utc: 1785884548
    -edited: false
    -body:
    -“
    - Don’t forget all that destruction to the environment and wildlife!” 
    -
    -Says the person who prefers money that uses gigawatt after gigawatt of juice…
    -
     comment: p1qycfp
     parent: t3_1vfagz9
     author: Patrick_Atsushi
     edited: false
     body:
     If most nodes could coordinate and agree, could they theoretically freeze the hacker's wallet?
    -
    -comment: p1qzp4o
    -parent: t1_p1o1d2l
    -author: zackel_flac
    -created_utc: 1785885228
    -edited: false
    -body:
    -As I mentioned, I never said AI would not have found anything useful earlier. But the reason people were able to identify with Claude *today* is because we know the hack was real.
    -
    -Look Claude found it!
    -No it only found a line of code we all know now is the root cause. Not all bugs are actually exploitable, far from it.
    -
    -Besides, Claude is not saying anything out exploitability. You need deeper knowledge to actually build a draining mechanism like the one that is happening.
    -
    -AI is useful, it's great at finding but let's stop it has super powers. How many claude instances already run on that code base but did not help preventing the hack?
     
     comment: p1r06wg
     parent: t3_1vfagz9
     body:
     if the government wanted to track this guy, they could...
     
    -comment: p1r4py6
    -parent: t1_p1qmqv4
    -author: Candid-Walk-6762
    -created_utc: 1785886794
    -edited: false
    -body:
    -Can you remind us how much value the dollar has lost since it was taken off the gold standard? Come on Mr Pro Government, why don’t you tell us?
    -
     comment: p1r4qjo
     parent: t3_1vfagz9
     author: Necessary_Floor_7081
     
     Wanna make sure I’m not a sitting duck.   
     Thanks legends 
    -
    -comment: p1r4tgg
    -parent: t1_p1qzp4o
    -author: HoodRatThing
    -created_utc: 1785886824
    -edited: 1785887022
    -body:
    -Could you point out where I said LLMs don't hallucinate? You’re arguing with a ghost here. 
    -
    -My claim is LLMs can and are being used to develop software now, today. They're also being used to find vulnerabilities in existing software projects and being exploited. And because an LLM can hallucinate doesn't negate the fact that you can still use them to create software or find vulnerabilities in software. Let’s say you generated an entire code base, how much of it is hallucinated? 80%? Well, just tell the LLM to fix the broken code... sorry it wasn't able to oneshot whatever you were trying to do with it. 
    -
    -
    -Why are you so obsessed with the LLM's ability to recreate the Windows OS without making a single mistake, or hallucinating a library? You know how I fix hallucinations? I give it the Context7 MCP and tell it to search documentation, and search the web for updated documentation. 
    -
    -
    -You're making it sound like we're still using ChatGPT-3 and it's hallucinatingly making up random libraries and telling you they exist... 
    -
    -
    -> But the reason people were able to identify with Claude today is because we know the hack was real.
    -
    -Braahh you don't know how software works. These LLMS are very good at finding vulnerabilities
    -
    -[Claude Mythos Has Found 271 Zero-Days in Firefox](https://www.schneier.com/blog/archives/2026/04/claude-mythos-has-found-271-zero-days-in-firefox.html)
    -
    -Are you arguing that the 271 zero days found in Firefox aren't real because a human didn't find them first and started exploiting them??? What are you saying?
     
     comment: p1r73bd
     parent: t1_p1qg52v
     body:
     Damn when did it happen there?
     
    -comment: p1r7hpt
    -parent: t1_p1r4py6
    -author: stevethewatcher
    -created_utc: 1785887678
    -edited: false
    -body:
    -Sure, a dollar in 1946 has the purchasing power of $18 in 2026 while the average wage has matched exactly that, growing from $4200 to $72k. It doesn't matter if it's worth less if you have more, you financially illiterate donkey
    -
     comment: p1r7olc
     parent: t1_p1ngs8i
     author: smarge24
     body:
     Gary had a good run.
     
    -comment: p1r8dj4
    -parent: t1_p1nh8ub
    -author: zendrovia
    -created_utc: 1785887964
    -edited: false
    -body:
    -Uh the sentiment for 10 years was set and forget, fuck Coinbase, not your keys blah fuckin blah
    -
    -Now the sheep weep
    -
     comment: p1raipt
     parent: t1_p1oymv4
     author: nephilimcummingdaddy
     body:
     i know for a fact in the case of Indonesia if you got an interpol red notice or simply ask their immigration agency they will most likely intercept and/or track and extract them for you if they’re not an indonesian citizen. there are so many cases of these, despite no formal treaty with the US. if it’s not a citizen it’s technically expulsion, not extradition.
     
    -comment: p1rikw3
    -parent: t1_p1r4tgg
    -author: zackel_flac
    -created_utc: 1785891238
    -edited: false
    -body:
    -> My claim is LLMs can and are being used to develop software now, today
    -
    -We are in agreement. LLM and all form of AI have been and are still being used. No problem with that. AI exists since the 50s, it would be silly to say it's useless.
    -
    -The claim of OP was that LLM would have found and fixed the issue on its own before any harm would have been done to customers.
    -
    -My claim is that you need a deeper knowledge about the whole product and a bug in a code is only the beginning of it. So no, it's not that easy.
    -
    -That's it. Regarding Mythos it has been debunked multiple times. Beware of marketing, AI companies are not out there for doing good but making cash.
    -
    -But let's make a deal right there. Since Mythos analyzed Firefox fully already, we should not uncover any new zero-days going forward on those old code paths, right? If we do, then we will know of Mythos was that useful or not.
    -
     comment: p1rkskk
     parent: t3_1vfagz9
     author: Silent-Currency8863
     body:
     code is law lmao
     
    -comment: p1rt6rr
    -parent: t1_p1pf9qd
    -author: Wait_for_You
    -created_utc: 1785894707
    -edited: false
    -body:
    -Americans, please get U-n-i-v-e-r-s-a-l-H-e-a-l-t-h-C-a-r-e-!  sorry, I had to drop this here, carry on now 
    -
     comment: p1rtqhm
     parent: t3_1vfagz9
     author: demoman45
     body:
     Why it is so that most of time the news are something was hacked when it's about Bitcoin. Sometimes I wonder that community and industry despite being already mature, is till being wacked like every second day with some new scam. If even this method of storing the coins is not safe, how it's going to push new people to save money to Bitcoin or invest
     
    -comment: p1sng5p
    -parent: t1_p1nlfqx
    -author: Witne55
    -created_utc: 1785905827
    -edited: false
    -body:
    -there will be movies
    -
     comment: p1snwmn
     parent: t1_p1nmpmg
     author: OverHeadUnderNose
     body:
     Or the internet????
     
    +comment: p1svgyy
    +parent: t3_1vfagz9
    +author: ImAnAlternative
    +created_utc: 1785909422
    +edited: false
    +body:
    +You mean to say that the post on this subreddit from a few days ago telling them they are stupid because the bitcoin that they stole will be blacklisted didnt work?!?
    +
    +comment: p1sz4v5
    +parent: t1_p1nsbwe
    +author: saltyfoot73
    +created_utc: 1785911114
    +edited: false
    +body:
    +I heard about it Friday have a mk4 that i put 100cad on last year so probably gone. I was going to put 2 bitcoin on it but decided to sell it and buy fbtc since I knew my wife wouldn't be able to sell it if I am not around so another bullet dodged.  and I was called pathetic on this sub because I didn't hold my own keys anymore. I am sleeping fine until fidelity gets drained but I hope they have more security than I did 
    +
     comment: p1szfzf
     parent: t3_1vfagz9
     author: randomusername748294
     body:
     New form of mining. 
     
    -comment: p1tk0ga
    -parent: t1_p1pzuas
    -author: dashmckenzie
    -created_utc: 1785921217
    -edited: false
    -body:
    -A rogue AI
    -
     comment: p1tkqgh
     parent: t1_p1np72w
     author: iceseayoupee
     body:
     Rien que cette inaction qui relève pourtant du bon sens couplée à une démarche de transparence démontre l'opacité entourant le système bitcoin en général. Le BTC c'est le far west du 21eme siècle. 
     
    -comment: p1ttt41
    -parent: t1_p1tk0ga
    -author: burusai
    -created_utc: 1785925741
    -edited: false
    -body:
    -No. Their CTO inserted the bug into their code. This was a planned rugpull from the beginning.
    -
    -comment: p1tyuon
    -parent: t1_p1ttt41
    -author: dashmckenzie
    -created_utc: 1785927825
    -edited: false
    -body:
    -oooooof
    -
     comment: p1u2muy
     parent: t1_p1pubo4
     author: boomerangthrowaway
     body:
     Lol
     
    -more-stub: parent t1_p1q2ek6 count <live-count>
    +comment: p1v6yws
    +parent: t1_p1urkxm
    +author: Pirulax
    +created_utc: 1785941353
    +edited: false
    +body:
    +I wonder if it's less or more outside the US 
    +
    +comment: p1v7m24
    +parent: t1_p1o9fws
    +author: rockorangebear
    +created_utc: 1785941518
    +edited: false
    +body:
    +It's also like going to a roulette table, putting your life savings on number 7, then having it hit (1 in 38 chance). Then immediately putting everything on number 7 again... then winning again. Again and again, 43 times in a row... 43 wins and 43 number 7's all through sheer luck.
    +
    +comment: p1v7mfi
    +parent: t1_p1ngs8i
    +author: InletUnstart
    +created_utc: 1785941520
    +edited: false
    +body:
    +Not if you did 50 or more dice rolls
    +
    +comment: p1v8y5o
    +parent: t3_1vfagz9
    +author: Living_Application64
    +created_utc: 1785941860
    +edited: false
    +body:
    +This is insane really 
    +
    +comment: p1v9sci
    +parent: t1_p1pf9qd
    +author: Combat-Corpse
    +created_utc: 1785942074
    +edited: false
    +body:
    +ninja activities.
    +
    +comment: p1vajkt
    +parent: t1_p1nk5bf
    +author: Sanityzed
    +created_utc: 1785942269
    +edited: false
    +body:
    +Another one
    +
    +comment: p1vfddf
    +parent: t1_p1v7mfi
    +author: LifterNineFour
    +created_utc: 1785943501
    +edited: false
    +body:
    +I said flawed cold card seed generation method, not dice rolls
    +
    +comment: p1vgeqg
    +parent: t1_p1quq3i
    +author: DGimberg
    +created_utc: 1785943761
    +edited: 1785943959
    +body:
    +That's the thing why people go with the dice rolls option instead. 
    +
    +But if there is no bug/tampering, TRNG should create a enough random entropy and wallets like Trezor even mixes entropies.
    +
    +I learned yesterday that Android had a bug in it's TRNG library that Bitcoin wallets used, so some wallets from completely different developers was generating the same seed. It was found in 2013 and caused the same event as we see unfold now, wallets being drained.
    +
    +comment: p1vkkaa
    +parent: t1_p1ntxp2
    +author: Matti_Meikalainen
    +created_utc: 1785944801
    +edited: false
    +body:
    +From what I've gathered this exploit was discovered because the coldcard uses open source firmware. Ledger for example does not have open sourced fw so exploit like this couldn't be found. 
    +
    +comment: p1vrh9i
    +parent: t1_p1ndagh
    +author: Queasy-Ride4291
    +created_utc: 1785946518
    +edited: false
    +body:
    +Because theft is still theft, good intentions or otherwise. 
    +
    +comment: p1vrhid
    +parent: t1_p1vgeqg
    +author: Buttoshi
    +created_utc: 1785946520
    +edited: false
    +body:
    +Even with dice rolls how does one figure out the last word without using a computer?
    +
    +comment: p1vvagy
    +parent: t1_p1t0sem
    +author: Lopsided-General-434
    +created_utc: 1785947451
    +edited: false
    +body:
    +I know, but without the device I don't see the value when I can just use another wallet, one that hasn't leaked all my personal information to scammers.
    +
    +comment: p1wbzfn
    +parent: t3_1vfagz9
    +author: ContentBlackberry0
    +created_utc: 1785951560
    +edited: false
    +body:
    +Millions of dollars get stolen and BTC pumps. Makes sense 
    +
    +comment: p1wgzqq
    +parent: t1_p1nlexe
    +author: UrbanGrower187
    +created_utc: 1785952781
    +edited: false
    +body:
    +If only the company made a better product..
    +
    +comment: p1wn1r2
    +parent: t3_1vfagz9
    +author: No_Permit3555
    +created_utc: 1785954281
    +edited: false
    +body:
    +In idiot terms how did this hack happen 
    +
    +comment: p1wnnsl
    +parent: t1_p1vrhid
    +author: xiskghferx
    +created_utc: 1785954432
    +edited: false
    +body:
    +You just calculate SHA256 by hand using calculator 😁
    +
    +comment: p1wq852
    +parent: t1_p1ndagh
    +author: KaffiKlandestine
    +created_utc: 1785955068
    +edited: false
    +body:
    +For some reason the wallet manufacturer draining my wallet doesnt make me feel better 
    +
    +comment: p1wqs4l
    +parent: t3_1vfagz9
    +author: The_Bitcoin_Act
    +created_utc: 1785955207
    +edited: false
    +body:
    +It’s insane! 
    +
    +comment: p1wrfpr
    +parent: t1_p1ou0pf
    +author: KaffiKlandestine
    +created_utc: 1785955371
    +edited: false
    +body:
    +Tbf trezor doesnt open source their code right? Which funnily is why matt kratter was telling people to get off trezor and move to coldcard 
    +
    +comment: p1wrv1l
    +parent: t1_p1os554
    +author: KaffiKlandestine
    +created_utc: 1785955475
    +edited: false
    +body:
    +Definitely. There is no offramp (currency) that wouldnt burn him. Maybe russia or north korea
    +
    +comment: p1wskxx
    +parent: t1_p1pjsr4
    +author: PirateHunterZoro252
    +created_utc: 1785955656
    +edited: false
    +body:
    +After 90 or 120 days they delete customer information completely. They were only able to reach out to those who within that window.
    +
    +They did send emails to their customers. But since i bought a coldcard 2 years ago i didnt get one. 
    +
    +Deleting their customer info was apart of the bitcoin mythos. How ironic.
    +
    +comment: p1wstm1
    +parent: t1_p1qjrcj
    +author: KaffiKlandestine
    +created_utc: 1785955716
    +edited: false
    +body:
    +Honestly shocked rhe price didnt even budge 
    +
    +comment: p1x3rjl
    +parent: t1_p1wrv1l
    +author: SACRED-GEOMETRY
    +created_utc: 1785958535
    +edited: false
    +body:
    +This is such a crazy story. Maybe it's a state sanctioned hacking group in North Korea that can handle something like this. But assuming it's an inside job, you've really gotta wonder what this guy's exit strategy is.
    +
    +comment: p1x5sgx
    +parent: t1_p1prfj2
    +author: Ok-Appointment-4599
    +created_utc: 1785959061
    +edited: false
    +body:
    +Has happened more than once we're a former dev left a 0 day exploit to use later. Crazy work we live in 
    +
    +comment: p1xibkt
    +parent: t3_1vfagz9
    +author: 7hiigh
    +created_utc: 1785962356
    +edited: false
    +body:
    +We all know it's NK
    +
    +comment: p1xirsi
    +parent: t1_p1ndkdk
    +author: painfuldrp
    +created_utc: 1785962478
    +edited: false
    +body:
    +Imagine the transaction fee being like 95% of the funds you’re trying to steal and then still doing it 
    +
    +comment: p1xkkra
    +parent: t3_1vfagz9
    +author: angelwolf71885
    +created_utc: 1785962960
    +edited: false
    +body:
    +ROFL survival of the fittest 
    +
    +more-stub: parent t1_p1pzuas count <live-count>
    +
    +more-stub: parent t1_p1pf9qd count <live-count>
     
     more-stub: parent t1_p1npp5o count <live-count>
     
    -more-stub: parent t1_p1qb9sl count <live-count>
    -
    -more-stub: parent t1_p1qhws5 count <live-count>
    +more-stub: parent t1_p1pzwpf count <live-count>
    +
    +more-stub: parent t1_p1qfss5 count <live-count>
     
     more-stub: parent t1_p1nijcp count <live-count>
     
     
     more-stub: parent t1_p1o3rfu count <live-count>
     
    +more-stub: parent t1_p1o12ig count <live-count>
    +
    +more-stub: parent t1_p1nwd9u count <live-count>
    +
     more-stub: parent t1_p1o590j count <live-count>
     
     more-stub: parent t1_p1o4n3p count <live-count>
     
    -more-stub: parent t1_p1rikw3 count <live-count>
    +more-stub: parent t1_p1o1d2l count <live-count>
    +
    +more-stub: parent t1_p1ng9ki count <live-count>
     
     more-stub: parent t1_p1ndagh count <live-count>
     
    +more-stub: parent t1_p1o0oew count <live-count>
    +
    +more-stub: parent t1_p1o2d4x count <live-count>
    +
     more-stub: parent t1_p1nz8zy count <live-count>
     
    -more-stub: parent t1_p1o2d4x count <live-count>
    -
     more-stub: parent t1_p1nolqw count <live-count>
     
     more-stub: parent t1_p1nesdd count <live-count>
     
     more-stub: parent t1_p1osvrg count <live-count>
     
    -more-stub: parent t1_p1net2w count <live-count>
    -
     more-stub: parent t3_1vfagz9 count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  13. source content difference between and source content +192 -176

    Numerous comments about the alleged drainer, bitcoin reversibility and speculative explanations were no longer served, while some comments were replaced with deleted or removed placeholders. The thread also gained a brief expression of sympathy.

    seen · Captured here 121,820 chars
    What changed from the previous capture 368 lines
     body:
     Because the call is coming from inside the house
     
    -comment: p1nfj74
    -parent: t1_p1net2w
    -author: pairoxR
    -created_utc: 1785851428
    -edited: false
    -body:
    -They can, but it’s not going to happen tomorrow. The problem is that those bitcoins can never be sold again, and as soon as he tries to send them to any exchange, he’ll get arrested. But that could take up to 5 years.
    -
    -comment: p1nflwp
    -parent: t1_p1net2w
    -author: brandond111
    -created_utc: 1785851449
    -edited: false
    -body:
    -They should pause the Bitcoin network until this all gets figured out
    -
     comment: p1nfwlq
     parent: t1_p1nenad
     author: Investing_Tomato1248
     body:
     I hope you’re using a strong passphrase, otherwise everything is at risk because you didn’t personally create your seed phrase the device generated it for you.
     
    -comment: p1ng4ux
    -parent: t1_p1nfj74
    -author: riseandride69
    -created_utc: 1785851595
    -edited: false
    -body:
    -Not if the hacker is the Lazarus Group in NK. FBI is not going to do shit to Kim
    -
     comment: p1ng529
     parent: t3_1vfagz9
     author: zinornia
     edited: false
     body:
     reckon a discounted employee from coldcard
    -
    -comment: p1ng6ps
    -parent: t1_p1nflwp
    -author: Opposite-Occasion881
    -created_utc: 1785851609
    -edited: false
    -body:
    -lol there’s no central authority or switch to be able to do that
     
     comment: p1ng9ki
     parent: t1_p1neyup
     body:
     Yeah, there would also be a problem with proving address ownership, since a hacker holding the keys could sign the address as well...
     
    -comment: p1ngh0p
    -parent: t1_p1nfj74
    -author: Alles_
    -created_utc: 1785851687
    -edited: false
    -body:
    -you think hes going through normal exchanges? lol, lmao even. those bitcoins are anything but stuck
    -
    -comment: p1ngjzb
    -parent: t1_p1nflwp
    -author: ocean_man9999
    -created_utc: 1785851710
    -edited: false
    -body:
    -lmao
    -
     comment: p1ngq67
     parent: t1_p1ng9ki
     author: Mackos
     edited: false
     body:
     Wouldn't be surprised if this is real.
    -
    -comment: p1ngxdj
    -parent: t1_p1nflwp
    -author: I__G
    -created_utc: 1785851812
    -edited: false
    -body:
    -The Bitcoin CEO should make a statement as well. 
     
     comment: p1ngyp4
     parent: t1_p1ney7w
     body:
     Mans draining $1.28, brutal.. lol
     
    -comment: p1njm74
    -parent: t1_p1nflwp
    -author: Professional_Snow576
    -created_utc: 1785852553
    -edited: false
    -body:
    -People not getting that you're joking is cracking me up. 
    -
     comment: p1njqkt
     parent: t3_1vfagz9
     author: PDubsinTF-NEW
     
     comment: p1nlyur
     parent: t1_p1ngxa1
    -author: SideOk1317
    +author: [deleted]
     created_utc: 1785853188
     edited: false
     body:
    -definitely inside job, the hacker seems to have some solid information, I wouldn't be surprised hacker worked for the company 
    +[removed]
     
     comment: p1nm024
     parent: t1_p1nf03i
     edited: false
     body:
     People shit on AI rightfully so, but AI is an incredibly optimized search engine sometimes.
    -
    -comment: p1nm6cj
    -parent: t1_p1net2w
    -author: deny_by_default
    -created_utc: 1785853243
    -edited: false
    -body:
    -Someone within the FBI was just arrested for using his position to help him steal cryptocurrency.  [https://www.coindesk.com/policy/2026/08/03/u-s-fbi-intelligence-agent-arrested-in-connection-with-theft-of-usd1-million-in-crypto](https://www.coindesk.com/policy/2026/08/03/u-s-fbi-intelligence-agent-arrested-in-connection-with-theft-of-usd1-million-in-crypto)
     
     comment: p1nmefx
     parent: t1_p1nj41h
     body:
     I know very little but why didn't he strike when it was over 127K?
     
    -comment: p1nmqcb
    -parent: t1_p1ng6ps
    -author: Interesting_Bag_2967
    -created_utc: 1785853392
    -edited: false
    -body:
    -If 51% percent of the miners or network agree then it can very well be done, nothing is permanent with bitcoin . It can all be reversed with enough computer power 
    -
     comment: p1nmr9r
     parent: t3_1vfagz9
     author: PersonalLook156
     edited: false
     body:
     So glad I only ever tested my cold card so ill only lose $6
    -
    -comment: p1noks0
    -parent: t1_p1ng6ps
    -author: swiftrobber
    -created_utc: 1785853881
    -edited: false
    -body:
    -r/whoosh
     
     comment: p1nolqw
     parent: t1_p1nia36
     Why did the attacker send everything to a single address?
     
     If he used a unique wallet for each transaction it would be far easier to liquidate!
    -
    -comment: p1ns7lg
    -parent: t1_p1nijcp
    -author: 4rm4tur4
    -created_utc: 1785854843
    -edited: false
    -body:
    -This is going to sound a bit out there, but with the recent news of models breaking out of their sandboxes I am wondering if this could be a rogue instance setting up the stage to pay for its own compute. 
     
     comment: p1nsa7e
     parent: t3_1vfagz9
     body:
     Holy shit hahaha
     
    -comment: p1nw5jy
    -parent: t1_p1ns7lg
    -author: zackel_flac
    -created_utc: 1785855877
    -edited: false
    -body:
    -Those "news" are nothing but hype attract investors. Don't let you fool by the noise.
    -
    -If an AI was that capable, you could not use reddit right now, it would be game over of the internet, yet we are still there.
    -
     comment: p1nwd9u
     parent: t1_p1nf03i
     author: drwebb
     
     comment: p1o50zj
     parent: t1_p1o4n3p
    -author: SideOk1317
    +author: [deleted]
     created_utc: 1785858180
     edited: false
     body:
    -AI coding and feedback is only useful if you know how to code, AI just makes things faster, the hacker is definitely a programmer.
    -
    -comment: p1o55jr
    -parent: t1_p1nfwlq
    -author: SideOk1317
    -created_utc: 1785858213
    -edited: false
    -body:
    -they won't 
    +[removed]
     
     comment: p1o55n0
     parent: t1_p1o12ig
     edited: false
     body:
     How could they ever verify the real owner with the private key out in the open? 
    -
    -comment: p1o5q4g
    -parent: t1_p1nflwp
    -author: JayGatsby1881
    -created_utc: 1785858357
    -edited: false
    -body:
    -Trump needs to have a one on one with Satoshi himself to figure this out and make a deal
     
     comment: p1o5tj4
     parent: t1_p1nesdd
     body:
     Pendrive with Tails OS?
     
    +comment: p1o9y9s
    +parent: t1_p1o9ogr
    +author: Emergency-Warthog-56
    +created_utc: 1785859426
    +edited: false
    +body:
    +It's a very heartbreaking thought... Terrible...
    +
     comment: p1oa65f
     parent: t1_p1nogo0
     author: [deleted]
     body:
     If people knew $127k was the top, everyone would have sold lol
     
    -comment: p1ozb1w
    -parent: t1_p1nflwp
    -author: Javanaut018
    -created_utc: 1785865729
    -edited: false
    -body:
    -Why not rollback the block chain?
    -
    -comment: p1ozevd
    -parent: t1_p1ngxdj
    -author: Javanaut018
    -created_utc: 1785865755
    -edited: false
    -body:
    -🤣
    -
    -Maybe fowly orange could issue a decree?
    -
     comment: p1ozmgf
     parent: t1_p1ovuti
     author: noncommonGoodsense
     body:
     It's not just AI but Open weight models ... Because there was no Kimi k3 open weights back then .. it was dropped 27 july and the hackers group were able to install it  into some local GPU clusters  and then the first attack took place in 31 July you think this is just coincidence  ? .. even if AI was advanced back then no hacker would want the top AI companies (anthropic , openai .. ) to read his logs while he crafting the exploit and creating malware to do this
     
    -comment: p1p1fzq
    -parent: t1_p1ns7lg
    -author: marshyr3d1and
    -created_utc: 1785866254
    -edited: false
    -body:
    -Here we go - it's the beginning of the end.
    -Others will build on posts like this and pretty soon the internet will explode with conspiracy theories 🙄
    -
     comment: p1p1gqb
     parent: t1_p1nijcp
     author: SpikeyOps
     body:
     After what's happened with cold, other companies should be tripling down on security. This was a huge wake up call, and typically when these things happen, it's extremely shitty for the innocent people involved, but it gives a major kick up the ass to the industry as a whole to get there shit together. You can guarantee all the other hardware wallet companies will be monitoring there security like hawks and behind the scenes making sure they are secure. Which is a good thing at least for those of us using these other companies.
     
    -comment: p1p3evr
    -parent: t3_1vfagz9
    -author: dynamite384
    -created_utc: 1785866745
    -edited: false
    -body:
    -im a newbie, but is there no way this can be stopped to prevent progression?
    -
     comment: p1p3x0c
     parent: t1_p1oiw4l
     author: EarningsPal
     edited: false
     body:
     And they didn't even cash out a little? Oh well...
    -
    -comment: p1p85pi
    -parent: t1_p1ozb1w
    -author: brandond111
    -created_utc: 1785867919
    -edited: false
    -body:
    -Honestly at this point.. maybe even start it over
     
     comment: p1p8ml7
     parent: t3_1vfagz9
     
     either coldcard developer is a retard or this is a felony
     
    +comment: p1tgeem
    +parent: t1_p1ojjwn
    +author: Decent_Taro_2358
    +created_utc: 1785919455
    +edited: false
    +body:
    +The way I like to visualise it: all possible keys in Bitcoin are like a 100x100 cm square box. If you generate a key, it’s basically a 1x1 cm box inside of it. If you randomly guess the position, you own that bitcoin. The ‘random box picker’ that coldcard used really only generated boxes in the first 10x10cm space. You can just guess and look for all those boxes in that tiny space to see if there’s any Bitcoin.
    +
    +In reality the numbers are much bigger than a 100x100 grid of course. It’s like a long list of 2\^256 numbers. Cold card was using a random number generator based on time. Just check all the boxes/keys between 2020-2026 and you’re done.
    +
    +comment: p1tia50
    +parent: t3_1vfagz9
    +author: capta1nbig
    +created_utc: 1785920368
    +edited: false
    +body:
    +New form of mining. 
    +
    +comment: p1tk0ga
    +parent: t1_p1pzuas
    +author: dashmckenzie
    +created_utc: 1785921217
    +edited: false
    +body:
    +A rogue AI
    +
    +comment: p1tkqgh
    +parent: t1_p1np72w
    +author: iceseayoupee
    +created_utc: 1785921571
    +edited: false
    +body:
    +type of mfs you see in a yoga studio in thailand lmao
    +
    +comment: p1tl9qo
    +parent: t3_1vfagz9
    +author: Captain_Spaceturd
    +created_utc: 1785921831
    +edited: false
    +body:
    +Excuse my complete ignorance but why are there still people vulnerable to this? Wouldn't there have been an enormous run on Coldcard to empty wallets on day one? Like, does everyone have notifications turned off? Lost the keys? Just  I don't even own BTC and I know all about this. It's been a week - just a bunch of HODLers out in the Canadian wilderness chopping wood?
    +
    +comment: p1tm98z
    +parent: t3_1vfagz9
    +author: _Baccano
    +created_utc: 1785922302
    +edited: false
    +body:
    +Con of the century tbh
    +
    +comment: p1to7mr
    +parent: t1_p1ruhvr
    +author: r_e_e_ee_eeeee_eEEEE
    +created_utc: 1785923234
    +edited: false
    +body:
    +No! Not the metric system! I prefer random number bases other than 10 for my units! 
    +
    +America = Freedom = Freedom to choose my number base = freedom units! 🙌 🤣
    +
    +(As an engineer, I make these jokes all the time, and yearn for the day when I can work on a team where only the metric system is used.) 
    +
    +
    +
    +comment: p1tr07e
    +parent: t1_p1p73cj
    +author: williampaul0404
    +created_utc: 1785924516
    +edited: false
    +body:
    +there is zero reason to assume it has anything to do with AI. a script can generate&go through possible combinations and once it finds one with btc on the address, it sends it away. no reason to use AI whatsoever, there's no decision making or anything creative involved
    +
    +comment: p1tt379
    +parent: t1_p1pjsr4
    +author: Remyglr
    +created_utc: 1785925432
    +edited: false
    +body:
    +Rien que cette inaction qui relève pourtant du bon sens couplée à une démarche de transparence démontre l'opacité entourant le système bitcoin en général. Le BTC c'est le far west du 21eme siècle. 
    +
    +comment: p1ttt41
    +parent: t1_p1tk0ga
    +author: burusai
    +created_utc: 1785925741
    +edited: false
    +body:
    +No. Their CTO inserted the bug into their code. This was a planned rugpull from the beginning.
    +
    +comment: p1tyuon
    +parent: t1_p1ttt41
    +author: dashmckenzie
    +created_utc: 1785927825
    +edited: false
    +body:
    +oooooof
    +
    +comment: p1u2muy
    +parent: t1_p1pubo4
    +author: boomerangthrowaway
    +created_utc: 1785929272
    +edited: false
    +body:
    +That’s the state of society right now. 
    +
    +Legit looking email? Header right and legible? Legit? Still could be hacked.
    +
    +Loaded old updates that haven’t had hotfixes? Well damn grandma you had six BTC?! Sheeeeeeeet. 
    +
    +I HATE blkhat hackers but imo white and grey hats have a purpose. 
    +
    +Testing the fences man. Testing the fkn fences 
    +
    +comment: p1u2tnu
    +parent: t1_p1qth65
    +author: boomerangthrowaway
    +created_utc: 1785929345
    +edited: false
    +body:
    +I LOVE that for you
    +
    +comment: p1u83q5
    +parent: t3_1vfagz9
    +author: No_Minute2664
    +created_utc: 1785931264
    +edited: false
    +body:
    +This is actually good for crypto.
    +
    +comment: p1uhxb8
    +parent: t1_p1nenad
    +author: dolkiiish
    +created_utc: 1785934422
    +edited: false
    +body:
    +Wouldnt really help though, since there are only X amount of combinations to access a wallet, 2^72 for the mk4/mk5 i belive (someone correct me if im wrong about the number)
    +
    +Its all just an automated process going through them all, using alot of gpus, probably a server farm unless they figured out a way to make the number less (like 2^50-60).
    +2^72 should be the absolute max number possible, but since they are finding alot of wallets it looks like they got that number down 
    +
    +comment: p1uibgi
    +parent: t1_p1tr07e
    +author: dolkiiish
    +created_utc: 1785934541
    +edited: false
    +body:
    +My brain hurts watching people say "ai dosent care" no its not AI, its literally just a script that checks if the wallet has money, and then drains it nomatter the ammount.
    +
    +
    +
    +comment: p1urkxm
    +parent: t1_p1oxxyr
    +author: optrin
    +created_utc: 1785937231
    +edited: false
    +body:
    +Yep, in the USA.
    +
    +comment: p1ut01l
    +parent: t1_p1pjgh2
    +author: H8ckt1v1st
    +created_utc: 1785937625
    +edited: false
    +body:
    +True, the ex-President Arias just published an Op-Ed in the GringoTimes explaining how CR has become a Vassal state. The political ignorance of the population along with screaming violent crime rates has the "no military" rethinking that position. I suppose when people are sufficiently frightened, they will cut their noses off. In this case their hearts.
    +
    +[https://ticotimes.net/2026/07/18/oscar-arias-costa-rica-us-visas](https://ticotimes.net/2026/07/18/oscar-arias-costa-rica-us-visas)
    +
    +
    +
    +comment: p1utgbv
    +parent: t1_p1qsbvs
    +author: Lngdnzi
    +created_utc: 1785937750
    +edited: false
    +body:
    +Lol
    +
     more-stub: parent t1_p1q2ek6 count <live-count>
     
     more-stub: parent t1_p1npp5o count <live-count>
     
     more-stub: parent t1_p1qhws5 count <live-count>
     
    -more-stub: parent t1_p1nw5jy count <live-count>
    -
     more-stub: parent t1_p1nijcp count <live-count>
     
    -more-stub: parent t1_p1o9ogr count <live-count>
    -
     more-stub: parent t1_p1nh8ub count <live-count>
     
     more-stub: parent t1_p1o3rfu count <live-count>
     
     more-stub: parent t1_p1nz8zy count <live-count>
     
    +more-stub: parent t1_p1o2d4x count <live-count>
    +
     more-stub: parent t1_p1nolqw count <live-count>
     
    -more-stub: parent t1_p1o2d4x count <live-count>
    -
     more-stub: parent t1_p1nesdd count <live-count>
     
     more-stub: parent t1_p1qmlri count <live-count>
     
     more-stub: parent t1_p1osvrg count <live-count>
     
    -more-stub: parent t1_p1nflwp count <live-count>
    +more-stub: parent t1_p1net2w count <live-count>
     
     more-stub: parent t3_1vfagz9 count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  14. source content difference between and source content +231 -283

    Many earlier comments disappeared and the thread gained new reactions, including claims distinguishing a prior dice-input issue from the current vulnerability and speculation about the incident.

    seen · Captured here 120,576 chars
    What changed from the previous capture 514 lines
     body:
     you think hes going through normal exchanges? lol, lmao even. those bitcoins are anything but stuck
     
    -comment: p1nghbu
    -parent: t3_1vfagz9
    -author: Rain7414
    -created_utc: 1785851690
    -edited: false
    -body:
    -They said this is the future, just like the AI bros these days.
    -
     comment: p1ngjzb
     parent: t1_p1nflwp
     author: ocean_man9999
     edited: false
     body:
     An AI found this bug. Honestly, I’ve found high/critical bugs using AI on many contracts—some were out of scope, but that doesn't change the fact. Plenty more bugs like this will be found.
    -
    -comment: p1ngz5h
    -parent: t1_p1nesdd
    -author: Time_after_Time_67
    -created_utc: 1785851825
    -edited: false
    -body:
    -That’s actually not true.  I asked ChatGPT about this yesterday and there is a whole lot more information about this than you realize.  Ask GPT what chainalysis and other’s have dug up on it so far.
     
     comment: p1nh4yj
     parent: t1_p1nesdd
     body:
     No chance this will be returned. This is a big and long operation, my guess is that once this stage is completed we will see a laundering of sats through hundreds of thousands of wallets the likes of which we have not even imagined.
     
    -comment: p1nh8gf
    -parent: t3_1vfagz9
    -author: bdjc_ink
    -created_utc: 1785851896
    -edited: false
    -body:
    -Is there a way to set up the Cold Card to help catch this entity
    -
     comment: p1nh8ub
     parent: t3_1vfagz9
     author: Emergency-Warthog-56
     edited: false
     body:
     Unfortunately there are still wallets that are under the threat. Mostly ones who still aren't aware of the scam and don't check on the wallet. Sitting in their safe or whatever. Oblivious to being a target of the scam. It's a matter of time on those wallets. Truly sad... Those people are getting picked off....
    -
    -comment: p1nhcwt
    -parent: t1_p1ngz5h
    -author: Professional_Golf393
    -created_utc: 1785851930
    -edited: false
    -body:
    -The harder to track bit?
    -
    -I just assumed if every new wallet hacked got sent to a different address, nobody could say with certainty it’s 1 entity behind the attack, for all we know it could be 100 different people using the same exploit 
     
     comment: p1nhg8y
     parent: t1_p1ndagh
     It is true random 70-bit.
     And I trust Ledger for now that it certainly uses TRNG for entropy. At least they should have verified their code now, again.
     
    -comment: p1nhop0
    -parent: t1_p1ngz5h
    -author: pjb1999
    -created_utc: 1785852021
    -edited: false
    -body:
    -Can you elaborate a bit please?
    -
     comment: p1nhpxr
     parent: t1_p1ng9ki
     author: GeneralZex
     edited: false
     body:
     I’m just worried that the hacker might have some other plans. Who knows, maybe he managed to compromise other wallets too and we just don’t know about it yet. He’ll probably wait until people least expect it and then launch another attack. The whole thing seems suspicious to me because there were already people complaining back in 2021 that someone had hacked their wallets, but nobody took it seriously. And if it was the same hacker, you can see that it took him 5 years to pull this off.
    -
    -comment: p1niwlh
    -parent: t1_p1nflwp
    -author: magicninja1995
    -created_utc: 1785852358
    -edited: false
    -body:
    -🤡. Yeah let's just stop all the bitcoin network. 
     
     comment: p1niz0z
     parent: t3_1vfagz9
     body:
     I feel so too.. banks, credit cards are also hackable but instead a bitcoin wallet device was attacked and there is more cold wallets that will get drained quantum computing is not even here yet).. meanwhile corporate business’s and banks buy 100’s of Bitcoin 🥸, Clarity ACT is still trying to be finalized, Iran currently accepts Bitcoin at the strait of hormuz. Btc is now being recognized globally that it is unstoppable.. Btc super power has been recognized and the elites will do anything to make sure the people dont have any btc 
     
    -comment: p1nocjn
    -parent: t3_1vfagz9
    -author: Efficient_Culture569
    -created_utc: 1785853819
    -edited: false
    -body:
    -Let's see how good the police is at tracking the stolen Bitcoin.
    -
    -Also interested to see how the hackers will move the bitcoin.
    -
    -
    -
     comment: p1nogo0
     parent: t1_p1nf03i
     author: AdventurousTime
     body:
     This. That’s why price is where it lays currently, want to soak up retail on the relatively cheap compared to their prior ath purchases. Don’t fall for it
     
    -comment: p1np5zq
    -parent: t1_p1ndagh
    -author: NotAnotherRebate
    -created_utc: 1785854038
    -edited: false
    -body:
    -ETF ETF ETF. I have a ledger, and I’ve had other types of wallets. I’ve only ever felt secure when holding an ETF. I think a large portion of crypto holders are safer this way.
    -
    -I’ve moved most of my crypto to ETFs. I capture all the gains with none of the individual wallet risks.
    -
     comment: p1np72w
     parent: t1_p1nogo0
     author: soufi161992
     edited: false
     body:
     You are assuming coinkite isnt the one doing the hack. Get that pay day yo!
    -
    -comment: p1nq6bv
    -parent: t3_1vfagz9
    -author: ConfectionEasy5166
    -created_utc: 1785854306
    -edited: false
    -body:
    -Why do you say "stolen Bitcoin"? It is his bitcoin as he owns the private key.
     
     comment: p1nqe2i
     parent: t1_p1nlyur
     body:
     Scratch Costa Rica from that list, they have extradited 4 citizens so far to TrumpLand. Big news here. 
     
    -comment: p1o58qh
    -parent: t3_1vfagz9
    -author: lcebounddeath
    -created_utc: 1785858235
    -edited: false
    -body:
    -Doing this is completely illogical. That crypto will be tracked forever and any attempts to actually use it will flag immediately. None of this will be spendable.
    -There are only a few ways they could spend this without it being tracked directly back to them.
    -
    -They'd be better off to come forwards and return all the funds and get ludicrous amounts of money they can actually spend for finding the exploit that permitted it
    -
     comment: p1o590j
     parent: t1_p1o50zj
     author: Save_JR
     body:
     Plus, btc is a bearer asset. You might be able to prove it, but you don’t have it. It’s sitting in a separate wallet now, and there’s nothing you can do. 
     
    -comment: p1o78jn
    -parent: t3_1vfagz9
    -author: Key-Check-1948
    -created_utc: 1785858738
    -edited: false
    -body:
    -The universe is watching!!!! That fuckin scum let the worst of the worst hit!! That cockhead he will have his day!!!! 🤣
    -
     comment: p1o7ewl
     parent: t1_p1ndagh
     author: shadowmage666
     edited: false
     body:
     If they’re able to successfully launder the funds without being caught, it will take time. The price right now doesn’t matter all that much, the attacker is likely more concerned with the BTC value, not the $ value. 
    -
    -comment: p1o95fd
    -parent: t1_p1nq6bv
    -author: pissingdick
    -created_utc: 1785859221
    -edited: false
    -body:
    -Except somebody else had that key prior...
    -So stolen. Duh.
    -
    -
     
     comment: p1o97vj
     parent: t1_p1nr840
     body:
     Oh come on, if someone can save 400 grand in 12 years, they're not in any situation where their world is going to collapse. I can't even save 40 grand in 12 years and I'm not killing myself.
     
    -comment: p1oh32w
    -parent: t1_p1nw5jy
    -author: aeroxan
    -created_utc: 1785861223
    -edited: false
    -body:
    -I'm also thinking if AI was going that rogue, we'd probably have heard nothing about it until it's way too late. Like terminator too late. 
    -
    -comment: p1oh89k
    -parent: t3_1vfagz9
    -author: pabskamai
    -created_utc: 1785861259
    -edited: false
    -body:
    -I hat if it is a rogue AI 😶
    -
     comment: p1ohcbq
     parent: t1_p1ndagh
     author: pabskamai
     body:
     "Presumably" is carrying a lot of weight there. The Ledger operation could just be waiting for a bigger payday - it's even more opaque than coldcard and could run the same type of scam with even less chance of discovery.
     
    +comment: p1omi3i
    +parent: t1_p1o4pbz
    +author: trufin2038
    +created_utc: 1785862570
    +edited: false
    +body:
    +That would be the best possible outcome.
    +
     comment: p1omk0c
     parent: t1_p1nmpmg
     author: Ok-Engineering1873
     body:
     would make a good movie plot if it was ai gone rogue and need the untraceable digital money to make moves and grow itself.
     
    -comment: p1ow6uv
    -parent: t1_p1nz8zy
    -author: Candid-Walk-6762
    -created_utc: 1785864968
    -edited: false
    -body:
    -Insured lol. I’ve lost money many times with my bank and 6 times out of 10 they’ll give an excuse not to refund you. And if not, they’ll make you wait months before you get any sort of compensation.
    -
     comment: p1ow96h
     parent: t1_p1nmpmg
     author: EyesFor1
     body:
     Dude literally wrote "my 6.4 BTC".
     
    -comment: p1ox5xs
    -parent: t3_1vfagz9
    -author: DrApricot
    -created_utc: 1785865207
    -edited: false
    -body:
    -The Coldcard theft is a PR disaster for Bitcoin, and may do permanent damage to its franchise. If MSTR and the Bitcoin EFTs were smart, they’d get together a syndicate and buy Coinkite and refund everyone’s stolen coins. They have all made huge bets on the future of Bitcoin. It would also demonstrate to bitcoiners that they are not opposed to safe self-custody when it’s done right.
    -
     comment: p1oxjq1
     parent: t1_p1ojjwn
     author: Javanaut018
     edited: false
     body:
     Either that or the hacker was scared that someone else would find the flaw with an advanced LLM soon. 
    -
    -comment: p1oyi11
    -parent: t1_p1ow6uv
    -author: ImplementOk3111
    -created_utc: 1785865533
    -edited: false
    -body:
    -How have you lost money so frequently? 
     
     comment: p1oyk11
     parent: t1_p1ncn6j
     
     Hunting season is open on the Coldcard
     
    -comment: p1p1r43
    -parent: t1_p1oh32w
    -author: marshyr3d1and
    -created_utc: 1785866330
    -edited: false
    -body:
    -Yep, for sure that's what's going on. Can't believe you've been so insightful and realised this so early on.
    -
     comment: p1p2mnt
     parent: t1_p1owzlh
     author: stoicparallax
     body:
     Seriously tho, ColdCard should at least figure the same process and move all the compromised funds to the safe wallets, returning them to owners later. Clearly a lot of holders are unaware of the issue.
     
    -comment: p1pgqoc
    -parent: t1_p1ow6uv
    -author: Consider8SpeedDemon
    -created_utc: 1785870076
    -edited: false
    -body:
    -Filing claims with the bank is not the same as FDIC insurance
    -
     comment: p1ph7nk
     parent: t3_1vfagz9
     author: GiveMeSomeOfThatWow
     edited: false
     body:
     What even is this? A public access to your receiving address that people can send requests to?
    -
    -comment: p1pn0r0
    -parent: t1_p1nz8zy
    -author: KusanagiZerg
    -created_utc: 1785871699
    -edited: false
    -body:
    -Many more people have lost their money/life savings/etc cause of banks failing.
     
     comment: p1po07n
     parent: t3_1vfagz9
     
     Found this recently
     
    -comment: p1qnokb
    -parent: t1_p1qmlri
    -author: trufin2038
    -created_utc: 1785881606
    -edited: false
    -body:
    -You could just buy some from a convenience store. It's a lot easier.
    -
     comment: p1qo28s
     parent: t1_p1prsbb
     author: Emergency-Warthog-56
     
     Says the person who prefers money that uses gigawatt after gigawatt of juice…
     
    -comment: p1qxx6p
    -parent: t1_p1pn0r0
    -author: Technical_Customer_1
    -created_utc: 1785884673
    -edited: false
    -body:
    -FDIC insurance was created in the USA in 1933. There aren’t many Americans alive who experienced bank failure and “lost it all”
    -
    -comment: p1qy2vw
    -parent: t1_p1ow6uv
    -author: Technical_Customer_1
    -created_utc: 1785884722
    -edited: false
    -body:
    -That’s a you problem. And if you are losing money that way, bitcoin isn’t for you. 
    -
     comment: p1qycfp
     parent: t3_1vfagz9
     author: Patrick_Atsushi
     body:
     in the US do you guys really not get much help with the expense side of cancer? blows my mind
     
    -comment: p1r2qt0
    -parent: t1_p1qy2vw
    -author: Candid-Walk-6762
    -created_utc: 1785886179
    -edited: false
    -body:
    -So me getting scammed for a laptop online and then not being compensated by my bank is a me problem. Lol, yeah bro. I think you might wanna read back your messages and think before posting.
    -
     comment: p1r2uix
     parent: t3_1vfagz9
     author: Fernandom21
     edited: false
     body:
     It is the government.
    -
    -comment: p1r37mr
    -parent: t1_p1pgqoc
    -author: Candid-Walk-6762
    -created_utc: 1785886323
    -edited: false
    -body:
    -and what about bank failures? Lol im sure your “insurance” covers that doesn’t it
    -
    -comment: p1r3ba9
    -parent: t1_p1oyi11
    -author: Candid-Walk-6762
    -created_utc: 1785886354
    -edited: false
    -body:
    -Bank failures and regular fraud on commerce sites 
    -
    -comment: p1r3k8f
    -parent: t1_p1r37mr
    -author: Consider8SpeedDemon
    -created_utc: 1785886431
    -edited: false
    -body:
    -Yes!! Bank failures work on a case-by-case basis, if any branch/bank cannot continue business, it will be taken over by (IIRC) Federal employees who have to begin the process of documenting the bank’s entire deposits and history.
    -
    -Based on this, then FDIC can cover the accounts **up to** the limit of the FDIC.
     
     comment: p1r3ti4
     parent: t1_p1qth65
     
     [https://imgur.com/gallery/last-coinkite-email-neither-here-nor-there-just-posting-posting-sake-AfP2yue](https://imgur.com/gallery/last-coinkite-email-neither-here-nor-there-just-posting-posting-sake-AfP2yue)
     
    -comment: p1r4h5e
    -parent: t1_p1r3k8f
    -author: Candid-Walk-6762
    -created_utc: 1785886716
    -edited: false
    -body:
    -And what about the millions of customers that have their bank accounts frozen without evidence or reason? Many people are complaining about having thousands locked up in banks for years, to the point where they just give up. What about that? Will the sweet Federal government that you defend so much help us there? Because they haven’t cared to help many millions yet
    -
     comment: p1r4nin
     parent: t1_p1ndkdk
     author: TheDynamicKing
     
     Are you arguing that the 271 zero days found in Firefox aren't real because a human didn't find them first and started exploiting them??? What are you saying?
     
    -comment: p1r5a18
    -parent: t1_p1r4h5e
    -author: Consider8SpeedDemon
    -created_utc: 1785886970
    -edited: false
    -body:
    -These sound like edge cases where the bank has to comply with orders (Fed, State, Law enforcement, missed child support, court orders, etc)
    -
    -If the bank doesn’t comply with holding the funds or accounts, the bank will be in trouble.
    -
    -I don’t know your specific situation, I have seen accounts frozen for many many reasons. If your funds are personally frozen and HAVE BEEN for years… I recommend stepping into your local branch and try to find any information at all as to why it was this way.
    -
    -Will probably take a phone call or three, sorry.
    -
    -Worked in finance, hate banks. Don’t like the government. The knowledge I have of the financial system is what fuels my hate for it
    -
     comment: p1r73bd
     parent: t1_p1qg52v
     author: VictorDanville
     
     Now the sheep weep
     
    -comment: p1r9ei8
    -parent: t1_p1r2qt0
    -author: TristanTheViking
    -created_utc: 1785888294
    -edited: false
    -body:
    -\>man who regularly falls for online scams decides solution is getting into cryptocurrency
    -
     comment: p1raipt
     parent: t1_p1oymv4
     author: nephilimcummingdaddy
     body:
     Anyone know how much has been stolen as of today? 
     
    -comment: p1rmh8e
    -parent: t1_p1o2d4x
    -author: the_Elders
    -created_utc: 1785892509
    -edited: false
    -body:
    -I know we hope this person will get caught but it is funny to me people want bitcoin to become the dominant currency while simultaneously thinking this hacker has to cash out. Maybe he/she just wants bitcoin. Maybe they accidentally die in a car accident tomorrow and the coins sit there forever lost.
    -
     comment: p1rnpcd
     parent: t3_1vfagz9
     author: Emi77
     body:
     code is law lmao
     
    +comment: p1rt6rr
    +parent: t1_p1pf9qd
    +author: Wait_for_You
    +created_utc: 1785894707
    +edited: false
    +body:
    +Americans, please get U-n-i-v-e-r-s-a-l-H-e-a-l-t-h-C-a-r-e-!  sorry, I had to drop this here, carry on now 
    +
    +comment: p1rtqhm
    +parent: t3_1vfagz9
    +author: demoman45
    +created_utc: 1785894886
    +edited: false
    +body:
    +US Govt hard at work
    +
    +comment: p1ruhvr
    +parent: t1_p1r0ulm
    +author: GenXist
    +created_utc: 1785895136
    +edited: false
    +body:
    +Wait until you hear about our system of weights and measures.
    +
    +comment: p1rv94t
    +parent: t3_1vfagz9
    +author: Cultural_Catch_7911
    +created_utc: 1785895385
    +edited: false
    +body:
    +Can the hacker see the balance and choose how much to take? Seems dog af draining small wallets, could they have just taken a few coins from big wallets? 
    +
    +I could see living with yourself stealing from the rich but how do you take some guy from Indonesia's 0.05 btc 
    +
    +comment: p1s3itz
    +parent: t3_1vfagz9
    +author: ThisdigitalERA
    +created_utc: 1785898157
    +edited: false
    +body:
    +Ask Joby weeks how to escape…😎
    +
    +comment: p1s3je8
    +parent: t1_p1pjsr4
    +author: daleDentin23
    +created_utc: 1785898162
    +edited: false
    +body:
    +Pretty sure at some point if they want anything useful a bank will be involved and hopefully the bank isnt in on the scam
    +
    +comment: p1s3k5t
    +parent: t1_p1nmpmg
    +author: WeakEchoRegion
    +created_utc: 1785898169
    +edited: false
    +body:
    +Is this a serious question..? This is like asking a bank robber “why did you come in right before close when nobody is here instead of during peak business hours?”
    +
    +comment: p1s48k4
    +parent: t1_p1okwmr
    +author: jamwil
    +created_utc: 1785898402
    +edited: false
    +body:
    +This is not the same. The instant drain issues were people choosing the dice method and rolling like 1 die worth of entropy. Yes, the firmware should have had guardrails to enforce a minimum of 50 rolls, but that was bad guidance not an actual firmware error like the current vulnerability is.
    +
    +comment: p1s59ky
    +parent: t3_1vfagz9
    +author: Equivalent-Spot-1325
    +created_utc: 1785898766
    +edited: false
    +body:
    +Cia
    +
    +comment: p1s7p2c
    +parent: t1_p1ot4bz
    +author: ggiodddtyii
    +created_utc: 1785899633
    +edited: false
    +body:
    +No, trezor and ledger have good entropy 
    +
    +comment: p1sh46f
    +parent: t1_p1np9m0
    +author: rpeppers
    +created_utc: 1785903203
    +edited: false
    +body:
    +Why?
    +
    +comment: p1sh7q4
    +parent: t1_p1pjrgq
    +author: JunketTurbulent2114
    +created_utc: 1785903241
    +edited: false
    +body:
    +Lots of youtubers were paid to promote coldcard and the marketing worked.  That's why.  I always felt cold card was scammy.  Price was insanely high and they just copy/pasted trezor codebase (and then fucked up the random number generator), put it on some weird calculator thing from the 1990s and charged $300 (when trezor was charging $40). 
    +
    +comment: p1slr96
    +parent: t1_p1psvns
    +author: Cyrax89721
    +created_utc: 1785905109
    +edited: false
    +body:
    +People say this exact same thing about every large crypto-heist, which basically means that hackers don't exist, and everything is an inside job.
    +
    +comment: p1smlfk
    +parent: t3_1vfagz9
    +author: jonpai123
    +created_utc: 1785905464
    +edited: false
    +body:
    +Why it is so that most of time the news are something was hacked when it's about Bitcoin. Sometimes I wonder that community and industry despite being already mature, is till being wacked like every second day with some new scam. If even this method of storing the coins is not safe, how it's going to push new people to save money to Bitcoin or invest
    +
    +comment: p1sng5p
    +parent: t1_p1nlfqx
    +author: Witne55
    +created_utc: 1785905827
    +edited: false
    +body:
    +there will be movies
    +
    +comment: p1snwmn
    +parent: t1_p1nmpmg
    +author: OverHeadUnderNose
    +created_utc: 1785906024
    +edited: false
    +body:
    +You do not need AI whatsoever. All someone had to do was poke around in the commit history of the coldcard github repo, they were very lazy and used very obvious language and file structure making it super easy to surf to the RNG and realize they bonked it. 
    +
    +comment: p1soxpt
    +parent: t1_p1nh8ub
    +author: PhesteringSoars
    +created_utc: 1785906470
    +edited: false
    +body:
    +I just started, and I have 4 miners I'm setting up tomorrow.  (I have a terrible cold and feel like crap.  Don't want to set them up while I can't think straight.)
    +
    +Even I have both a hardware "transactable" wallet and a Watch Only wallet.
    +
    +And I only have the $200 cash I moved in there to test.
    +
    +Doesn't anyone set up a Watch Only wallet they can see without their locked-up key?
    +
    +comment: p1sqkcb
    +parent: t3_1vfagz9
    +author: Adrian0289
    +created_utc: 1785907190
    +edited: false
    +body:
    +I'm so sorry for all people who lost their entire savings, but I wonder if setting up a passphrase before the incident could have prevented this from happening.
    +
    +comment: p1su3la
    +parent: t1_p1p5ez4
    +author: Jomito8
    +created_utc: 1785908791
    +edited: false
    +body:
    +I guess not everyone is on Reddit.
    +
    +comment: p1su5rc
    +parent: t1_p1su3la
    +author: Vancecookcobain
    +created_utc: 1785908819
    +edited: false
    +body:
    +Or the internet????
    +
    +comment: p1szfzf
    +parent: t3_1vfagz9
    +author: randomusername748294
    +created_utc: 1785911259
    +edited: false
    +body:
    +Not a very cold, cold wallet, then..
    +
    +comment: p1t0sem
    +parent: t1_p1qjq7e
    +author: xiskghferx
    +created_utc: 1785911896
    +edited: false
    +body:
    +You don't need to trust longevity of the device, it's just a signer. Your wallet is your seedphrase.
    +
    +comment: p1t2upv
    +parent: t3_1vfagz9
    +author: vium99
    +created_utc: 1785912879
    +edited: false
    +body:
    +And people told me to buy that shit when I posted I have BTC at a german regulated broker lul
    +
    +comment: p1t3l8v
    +parent: t1_p1nf03i
    +author: fkd_life
    +created_utc: 1785913233
    +edited: false
    +body:
    +Probably state sponsored, eg: N0rth K0ria
    +
    +comment: p1t6o6v
    +parent: t3_1vfagz9
    +author: learningQuantumAndAI
    +created_utc: 1785914710
    +edited: false
    +body:
    +The vulnerability was initially reported as a part of the bug bounty but got ignored.
    +
    +either coldcard developer is a retard or this is a felony
    +
     more-stub: parent t1_p1q2ek6 count <live-count>
     
     more-stub: parent t1_p1npp5o count <live-count>
     
     more-stub: parent t1_p1qhws5 count <live-count>
     
    +more-stub: parent t1_p1nw5jy count <live-count>
    +
     more-stub: parent t1_p1nijcp count <live-count>
     
     more-stub: parent t1_p1o9ogr count <live-count>
     
     more-stub: parent t1_p1o3rfu count <live-count>
     
    +more-stub: parent t1_p1o590j count <live-count>
    +
    +more-stub: parent t1_p1o4n3p count <live-count>
    +
     more-stub: parent t1_p1rikw3 count <live-count>
     
    -more-stub: parent t1_p1o590j count <live-count>
    -
    -more-stub: parent t1_p1o4n3p count <live-count>
    -
     more-stub: parent t1_p1ndagh count <live-count>
     
    +more-stub: parent t1_p1nz8zy count <live-count>
    +
     more-stub: parent t1_p1nolqw count <live-count>
     
    -more-stub: parent t1_p1o4pbz count <live-count>
    +more-stub: parent t1_p1o2d4x count <live-count>
    +
    +more-stub: parent t1_p1nesdd count <live-count>
    +
    +more-stub: parent t1_p1qmlri count <live-count>
     
     more-stub: parent t1_p1osvrg count <live-count>
     
     more-stub: parent t1_p1nflwp count <live-count>
     
    -more-stub: parent t1_p1ox5xs count <live-count>
    -
    -more-stub: parent t1_p1o95fd count <live-count>
    -
    -more-stub: parent t1_p1nocjn count <live-count>
    -
     more-stub: parent t3_1vfagz9 count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  15. source content difference between and source content +70 -78

    Several earlier comments disappeared, two new replies were added, and an existing comment was edited to add the word "into" to its seed-phrase copying description. New replies included claims about further vulnerable wallets and reactions to Bitcoin self-custody.

    seen · Captured here 122,959 chars
    What changed from the previous capture 148 lines
     body:
     Any reports of Keystone or Trezor users by now?
     
    -comment: p1ou1as
    -parent: t3_1vfagz9
    -author: MightBeABot24
    -created_utc: 1785864434
    -edited: false
    -body:
    -I am so fucking happy I moved everything to coinbase few months ago for 3% bonus during the coinbase one promo. Never thought I'd say I'm more confident in it being in there than cold storage. Have had it on my ledger for years 
    -
    -Absolutely insane how many scam attempts I get for my ledger. Emails, physical mail , texts. I don't fall for that shit. But I cant protect against a hacker. Coinbase at least provides some customer support
    -
     comment: p1ouck8
     parent: t3_1vfagz9
     author: GroundbreakingBet329
     body:
     Dude literally wrote "my 6.4 BTC".
     
    +comment: p1ox5xs
    +parent: t3_1vfagz9
    +author: DrApricot
    +created_utc: 1785865207
    +edited: false
    +body:
    +The Coldcard theft is a PR disaster for Bitcoin, and may do permanent damage to its franchise. If MSTR and the Bitcoin EFTs were smart, they’d get together a syndicate and buy Coinkite and refund everyone’s stolen coins. They have all made huge bets on the future of Bitcoin. It would also demonstrate to bitcoiners that they are not opposed to safe self-custody when it’s done right.
    +
     comment: p1oxjq1
     parent: t1_p1ojjwn
     author: Javanaut018
     body:
     Not even sure what the issue is, surely this gentlemen is in possession of the keys to compromised wallets and it is therefore in fact his Bitcoin after all 🧐
     
    -comment: p1oyrel
    -parent: t1_p1osvrg
    -author: Javanaut018
    -created_utc: 1785865596
    -edited: false
    -body:
    -Or to a million populated addresses...
    -
     comment: p1oytpj
     parent: t1_p1orc20
     author: Javanaut018
     edited: false
     body:
     Guess why not...
    -
    -comment: p1oz5w4
    -parent: t3_1vfagz9
    -author: Ok_oisljhs_4151
    -created_utc: 1785865695
    -edited: false
    -body:
    -How is this a scam? If you didn't generate a good seed, it's on you. Sure coldcard/coinkyte is shitty for their bad product, but I don't see a scam. Not your keys, not your coin works here too. This is not far removed from sharing your private key online. 
     
     comment: p1ozash
     parent: t1_p1nmpmg
     body:
     And they didn't even cash out a little? Oh well...
     
    -comment: p1p7qne
    -parent: t3_1vfagz9
    -author: Zealousideal-War6372
    -created_utc: 1785867815
    -edited: false
    -body:
    -They are going after the people that read the words, made a decision for a goofy bitcoin only wallet focused on security,  and got like 12 bits instead of 256.     I’m homeless and unemployed and I need to raise money to eat.     Almost Sport is hosting my collection because like many,  I prepared,  I practiced,  I did it right and still can’t win.    That preparation and testing the backups and going air gap etc makes HODLing an almost sport,  and sometimes we lose a game.   Can we save the season ?   This hits the HODL community,  these are diamond hand wallets and they probably don’t even know it’s ongoing and they are at risk yet.      
    -   
    -I’m using my unopened backup cold card, and included stickers as inspiration for a new line of parody merchandise that will hopefully help get the word out on the street so normal people see us and ask their bitcoin friend if they have heard about it.    How did the company that tried to do one thing well screw up and not use the hardware they were so proud of ?   https://shop.almostsport.org/collections/not-your-keys   
    -   
    -How did it all go so wrong for so long ?   Did precisely nobody look at the code as part of the QC,  no automated tests or manual testing ?    Just advertising and good vibes with GPT 3 making it fast and easy ?     I hope they post a few more times before their lawyers tell them to stop paying for a website when every penny needs to go to funding the defense team, and an exit strategy.   
    -
     comment: p1p85pi
     parent: t1_p1ozb1w
     author: brandond111
     body:
     There will no longer be a CoinKite after this event. 
     
    +comment: p1pkl7h
    +parent: t3_1vfagz9
    +author: Just_Bluebird_5268
    +created_utc: 1785871068
    +edited: false
    +body:
    +It's the future of money
    +
     comment: p1pkmp4
     parent: t1_p1op2i0
     author: FlipFlopFanatic
     body:
     You ever notice that right towards the end of a bear cycle, there’s a sudden attack or exchange collapse causing sudden FUD and price drop? Then major governments start buying at the bottom… Maybe all anecdotal but interesting timing nonetheless. 
     
    +comment: p1pq8d6
    +parent: t3_1vfagz9
    +author: PI-E0423
    +created_utc: 1785872546
    +edited: false
    +body:
    +It will destroy trust in Bitcoin. No matter if waranted
    +
     comment: p1pqs5s
     parent: t1_p1o5tj4
     author: Professional_Golf393
     body:
     Wasn't links I found. I ran accross a few posts where people posted old conversations. I didn't save any of them or share them. I should have. I think back then most figured those were just user errors. 
     
    +comment: p1pztw1
    +parent: t3_1vfagz9
    +author: Dont_Be_Sheep
    +created_utc: 1785875078
    +edited: false
    +body:
    +SELL YOUR BITCOIN WHY ARE YOU HOLDING IT?? The experiment failed.
    +
     comment: p1pzuas
     parent: t1_p1prfj2
     author: burusai
     edited: false
     body:
     So wild; it’s like a bank robbery that happened days ago is allowed to continue days later even though half of the city knows about it.  
    -
    -comment: p1q47bj
    -parent: t3_1vfagz9
    -author: Intrepid_Interest912
    -created_utc: 1785876244
    -edited: false
    -body:
    -Stop lying 😂😂😂
     
     comment: p1q54s4
     parent: t1_p1nzib8
     parent: t1_p1qpex1
     author: NobodyGotTimeFuhDat
     created_utc: 1785883527
    -edited: 1785888966
    -body:
    -You screenshot the seed phrase with your phone, for instance, directly copy the text from the image, then copy and paste the crypto platform. Once you have the recovery passphrase, you have full access to the entire account. It only takes seconds. It’s very easy to do.
    +edited: 1785892977
    +body:
    +You screenshot the seed phrase with your phone, for instance, directly copy the text from the image, then copy and paste it into the crypto platform. Once you have the recovery passphrase, you have full access to the entire account. It only takes seconds. It’s very easy to do.
     
     comment: p1quio4
     parent: t3_1vfagz9
     body:
     Gary had a good run.
     
    -comment: p1r86u3
    -parent: t3_1vfagz9
    -author: Major_Elevator8059
    -created_utc: 1785887904
    -edited: false
    -body:
    -When they find the hacker that dude is going to die in prison. However if the funds are frozen in the wallet essentially that bitcoin is out of circulation. Does that make legit bitcoin worth more now?
    -
     comment: p1r8dj4
     parent: t1_p1nh8ub
     author: zendrovia
     body:
     I know we hope this person will get caught but it is funny to me people want bitcoin to become the dominant currency while simultaneously thinking this hacker has to cash out. Maybe he/she just wants bitcoin. Maybe they accidentally die in a car accident tomorrow and the coins sit there forever lost.
     
    -comment: p1rmtjn
    -parent: t3_1vfagz9
    -author: ArtesianShiny
    -created_utc: 1785892621
    -edited: false
    -body:
    -Satoshi would want the bitcoin miners and blockchain developers to signal for the return of the coins, like banks can reverse fraudulent transactions. Im just not sure how we would implement that yet.
    +comment: p1rnpcd
    +parent: t3_1vfagz9
    +author: Emi77
    +created_utc: 1785892907
    +edited: false
    +body:
    +a lot of dead cold wallet's btc is stil there to be stolen
    +
    +comment: p1rplus
    +parent: t1_p1olf3j
    +author: SlowDebate3165
    +created_utc: 1785893533
    +edited: false
    +body:
    +code is law lmao
    +
    +more-stub: parent t1_p1q2ek6 count <live-count>
    +
    +more-stub: parent t1_p1npp5o count <live-count>
    +
    +more-stub: parent t1_p1qb9sl count <live-count>
    +
    +more-stub: parent t1_p1qhws5 count <live-count>
    +
    +more-stub: parent t1_p1nijcp count <live-count>
    +
    +more-stub: parent t1_p1o9ogr count <live-count>
    +
    +more-stub: parent t1_p1nh8ub count <live-count>
     
     more-stub: parent t1_p1o3rfu count <live-count>
     
    +more-stub: parent t1_p1rikw3 count <live-count>
    +
     more-stub: parent t1_p1o590j count <live-count>
     
     more-stub: parent t1_p1o4n3p count <live-count>
     
     more-stub: parent t1_p1ndagh count <live-count>
     
    -more-stub: parent t1_p1q2ek6 count <live-count>
    -
    -more-stub: parent t1_p1npp5o count <live-count>
    -
    -more-stub: parent t1_p1qb9sl count <live-count>
    -
    -more-stub: parent t1_p1qhws5 count <live-count>
    -
    -more-stub: parent t1_p1nijcp count <live-count>
    -
    -more-stub: parent t1_p1o9ogr count <live-count>
    -
    -more-stub: parent t1_p1nh8ub count <live-count>
    -
     more-stub: parent t1_p1nolqw count <live-count>
     
     more-stub: parent t1_p1o4pbz count <live-count>
     
    +more-stub: parent t1_p1osvrg count <live-count>
    +
     more-stub: parent t1_p1nflwp count <live-count>
     
    +more-stub: parent t1_p1ox5xs count <live-count>
    +
     more-stub: parent t1_p1o95fd count <live-count>
     
     more-stub: parent t1_p1nocjn count <live-count>
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  16. source content difference between and source content +47 -40

    The thread gained four comments, an existing comment added a claimed Trezor warning email, and several earlier comments were deleted or removed.

    seen · Captured here 124,991 chars
    What changed from the previous capture 87 lines
     parent: t1_p1nsbwe
     author: Blbe-Check-42069
     created_utc: 1785856422
    -edited: false
    +edited: 1785891424
     body:
     They might not even know it's happening. I only read about it here on Reddit 
    +EDIT: and today I received warning email from trezor warning about this topic.
     
     comment: p1nyzgi
     parent: t3_1vfagz9
     body:
     Seriously tho, ColdCard should at least figure the same process and move all the compromised funds to the safe wallets, returning them to owners later. Clearly a lot of holders are unaware of the issue.
     
    -comment: p1pgovm
    -parent: t3_1vfagz9
    -author: SeaMisx
    -created_utc: 1785870063
    -edited: false
    -body:
    -Coinkite will go down for this, they will be sued to hell and will have to pay back the loses, their insurance will have to do it there is just no other choices, there is no need to be Clarence Darrow to know that.
    -
    -If they can't pay or if their insurance won't pay they will go to jail for like more than 500 years combined. 
    -
    -And not just the CEO but every dev that knew that fault as it was already know in 2021, that is insane.
    -
     comment: p1pgqoc
     parent: t1_p1ow6uv
     author: Consider8SpeedDemon
     body:
     There will no longer be a CoinKite after this event. 
     
    -comment: p1pkl7h
    -parent: t3_1vfagz9
    -author: Just_Bluebird_5268
    -created_utc: 1785871068
    -edited: false
    -body:
    -It's the future of money
    -
     comment: p1pkmp4
     parent: t1_p1op2i0
     author: FlipFlopFanatic
     body:
     You ever notice that right towards the end of a bear cycle, there’s a sudden attack or exchange collapse causing sudden FUD and price drop? Then major governments start buying at the bottom… Maybe all anecdotal but interesting timing nonetheless. 
     
    -comment: p1pq8d6
    -parent: t3_1vfagz9
    -author: PI-E0423
    -created_utc: 1785872546
    -edited: false
    -body:
    -It will destroy trust in Bitcoin. No matter if waranted
    -
     comment: p1pqs5s
     parent: t1_p1o5tj4
     author: Professional_Golf393
     body:
     Wasn't links I found. I ran accross a few posts where people posted old conversations. I didn't save any of them or share them. I should have. I think back then most figured those were just user errors. 
     
    -comment: p1pztw1
    -parent: t3_1vfagz9
    -author: Dont_Be_Sheep
    -created_utc: 1785875078
    -edited: false
    -body:
    -SELL YOUR BITCOIN WHY ARE YOU HOLDING IT?? The experiment failed.
    -
     comment: p1pzuas
     parent: t1_p1prfj2
     author: burusai
     created_utc: 1785875767
     edited: false
     body:
    -Punitive punishment is not a deterrent. What you are asking for has been proven to not work.
    +[removed]
     
     comment: p1q2xp8
     parent: t1_p1pwvdh
     body:
     i know for a fact in the case of Indonesia if you got an interpol red notice or simply ask their immigration agency they will most likely intercept and/or track and extract them for you if they’re not an indonesian citizen. there are so many cases of these, despite no formal treaty with the US. if it’s not a citizen it’s technically expulsion, not extradition.
     
    +comment: p1rikw3
    +parent: t1_p1r4tgg
    +author: zackel_flac
    +created_utc: 1785891238
    +edited: false
    +body:
    +> My claim is LLMs can and are being used to develop software now, today
    +
    +We are in agreement. LLM and all form of AI have been and are still being used. No problem with that. AI exists since the 50s, it would be silly to say it's useless.
    +
    +The claim of OP was that LLM would have found and fixed the issue on its own before any harm would have been done to customers.
    +
    +My claim is that you need a deeper knowledge about the whole product and a bug in a code is only the beginning of it. So no, it's not that easy.
    +
    +That's it. Regarding Mythos it has been debunked multiple times. Beware of marketing, AI companies are not out there for doing good but making cash.
    +
    +But let's make a deal right there. Since Mythos analyzed Firefox fully already, we should not uncover any new zero-days going forward on those old code paths, right? If we do, then we will know of Mythos was that useful or not.
    +
    +comment: p1rkskk
    +parent: t3_1vfagz9
    +author: Silent-Currency8863
    +created_utc: 1785891957
    +edited: false
    +body:
    +Anyone know how much has been stolen as of today? 
    +
    +comment: p1rmh8e
    +parent: t1_p1o2d4x
    +author: the_Elders
    +created_utc: 1785892509
    +edited: false
    +body:
    +I know we hope this person will get caught but it is funny to me people want bitcoin to become the dominant currency while simultaneously thinking this hacker has to cash out. Maybe he/she just wants bitcoin. Maybe they accidentally die in a car accident tomorrow and the coins sit there forever lost.
    +
    +comment: p1rmtjn
    +parent: t3_1vfagz9
    +author: ArtesianShiny
    +created_utc: 1785892621
    +edited: false
    +body:
    +Satoshi would want the bitcoin miners and blockchain developers to signal for the return of the coins, like banks can reverse fraudulent transactions. Im just not sure how we would implement that yet.
    +
     more-stub: parent t1_p1o3rfu count 2
     
     more-stub: parent t1_p1o590j count 0
     
     more-stub: parent t1_p1nflwp count 1
     
    -more-stub: parent t1_p1o95fd count 3
    +more-stub: parent t1_p1o95fd count 4
     
     more-stub: parent t1_p1nocjn count 8
     
    -more-stub: parent t3_1vfagz9 count 13
    +more-stub: parent t3_1vfagz9 count 17
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  17. source content difference between and source content +35 -46

    Several earlier comments disappeared and four new replies were added, including speculation about the attacker and extradition from Indonesia.

    seen · Captured here 124,114 chars
    What changed from the previous capture 81 lines
     
     I would also think this wouldn’t go over well. To find out you weren’t jacked but the company you trusted is the one who seized the coins? And god forbid if they made a mistake in anyways handling it because certainly they’re not equipped to play bank for hundreds or thousands of users. 
     
    -comment: p1oq572
    -parent: t1_p1o95fd
    -author: ConfectionEasy5166
    -created_utc: 1785863482
    -edited: false
    -body:
    -That's not true. Besides, who was first? You never know.
    -
    -
     comment: p1orc20
     parent: t3_1vfagz9
     author: Puzzleheaded_Pen1017
     
     I think it’s much less likely that they saved 400k in cash over 12y, and then bought in at recent prices
     
    -comment: p1p2py6
    -parent: t1_p1nijcp
    -author: TFWG2000
    -created_utc: 1785866572
    -edited: false
    -body:
    -It is insane this hack continues.  Where is the law?
    -
     comment: p1p31y2
     parent: t1_p1njkgy
     author: thatdarkknight
     edited: false
     body:
     The company real-random who offers entropy as a service using a chaos theory of dice and water would have solved this problem instantly 
    -
    -comment: p1p4z07
    -parent: t1_p1p2py6
    -author: EarningsPal
    -created_utc: 1785867130
    -edited: false
    -body:
    -Law is here. Now what? Stop the attack Law. Ok, how? You’re the Law. Stop it. 
     
     comment: p1p5ez4
     parent: t3_1vfagz9
     body:
     Honestly at this point.. maybe even start it over
     
    -comment: p1p8bmv
    -parent: t1_p1oq572
    -author: pissingdick
    -created_utc: 1785867961
    -edited: false
    -body:
    -How is that not true?
    -
    -All these wallets being moved to a single wallet pretty much indicates who was first.
    -
     comment: p1p8ml7
     parent: t3_1vfagz9
     author: Tarlius72
     edited: false
     body:
     If you decide to go the exchange route, make sure you take advantage of ALL their security measures. I even asked AI how to max it out, ironically, and it was very helpful 
    -
    -comment: p1q1mvy
    -parent: t3_1vfagz9
    -author: SunFoxer
    -created_utc: 1785875560
    -edited: false
    -body:
    -Actually, the latest version of Kimi can easily generate CUDA-based brute-force code, so we should assume multiple people are actively running these attacks right now
     
     comment: p1q2ek6
     parent: t1_p1pu9tf
     
     Hilarious
     
    +comment: p1rcjxz
    +parent: t1_p1no523
    +author: xyphrrrrr
    +created_utc: 1785889303
    +edited: false
    +body:
    + Calm down pal 
    +
    +comment: p1rdquq
    +parent: t1_p1nh8ub
    +author: ThenComparison5926
    +created_utc: 1785889683
    +edited: false
    +body:
    +Under the threat?
    +
    +comment: p1rg7m8
    +parent: t3_1vfagz9
    +author: MSmithRD
    +created_utc: 1785890479
    +edited: false
    +body:
    +Maybe this is obvious to everyone or maybe its ridiculous to everyone, I don't know, butI feel like thisnis either a nation doing this or a large backing group if 50-100 people.  Not just 1 or 2 people.  If just 1 or 2 people, you'd think they'd stop once they had this much money.  At least I would.  Even if I felt like I wouldn't get caught I'd tell myself I need to chill out before I do in fact get caught.  But if I'm 1 of 50 then that's like 2-3M... everyone is thinking to keep going since that's not rich rich money in many countries... More like well off money. You can't retire early on that in many states in the US. Or if it's a nation doing it ...130M is different to them the it is to us.  
    +
    +comment: p1rguhw
    +parent: t1_p1nogo0
    +author: reggionh
    +created_utc: 1785890681
    +edited: false
    +body:
    +i know for a fact in the case of Indonesia if you got an interpol red notice or simply ask their immigration agency they will most likely intercept and/or track and extract them for you if they’re not an indonesian citizen. there are so many cases of these, despite no formal treaty with the US. if it’s not a citizen it’s technically expulsion, not extradition.
    +
     more-stub: parent t1_p1o3rfu count 2
     
     more-stub: parent t1_p1o590j count 0
     
     more-stub: parent t1_p1qhws5 count 0
     
    -more-stub: parent t1_p1p4z07 count 1
    +more-stub: parent t1_p1nijcp count 3
     
     more-stub: parent t1_p1o9ogr count 1
     
     
     more-stub: parent t1_p1nflwp count 1
     
    -more-stub: parent t1_p1p8bmv count 1
    +more-stub: parent t1_p1o95fd count 3
     
     more-stub: parent t1_p1nocjn count 8
     
    -more-stub: parent t3_1vfagz9 count 12
    +more-stub: parent t3_1vfagz9 count 13
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  18. source content difference between and source content +97 -91

    The Reddit thread gained new participant comments.

    seen · Captured here 123,580 chars
    What changed from the previous capture 188 lines
     
     Thats just mean man
     
    -comment: p1ndnel
    -parent: t3_1vfagz9
    -author: Llonga
    -created_utc: 1785850903
    -edited: false
    -body:
    - Could be whitehats? 
    -
     comment: p1ndrmt
     parent: t3_1vfagz9
     author: swiftpwns
     edited: false
     body:
     Legal problems for sure … 
    -
    -comment: p1nefpi
    -parent: t1_p1ndnel
    -author: Money-Addition8501
    -created_utc: 1785851123
    -edited: false
    -body:
    -Nah Whitehats would have told us by now probably long time ago after the first wave hit. 
     
     comment: p1nekny
     parent: t3_1vfagz9
     body:
     Because the call is coming from inside the house
     
    -comment: p1nfekg
    -parent: t1_p1ndnel
    -author: Parasitoid
    -created_utc: 1785851392
    -edited: false
    -body:
    -lol
    -
     comment: p1nfj74
     parent: t1_p1net2w
     author: pairoxR
     edited: false
     body:
     I’m just worried that the hacker might have some other plans. Who knows, maybe he managed to compromise other wallets too and we just don’t know about it yet. He’ll probably wait until people least expect it and then launch another attack. The whole thing seems suspicious to me because there were already people complaining back in 2021 that someone had hacked their wallets, but nobody took it seriously. And if it was the same hacker, you can see that it took him 5 years to pull this off.
    +
    +comment: p1niwlh
    +parent: t1_p1nflwp
    +author: magicninja1995
    +created_utc: 1785852358
    +edited: false
    +body:
    +🤡. Yeah let's just stop all the bitcoin network. 
     
     comment: p1niz0z
     parent: t3_1vfagz9
     
     
     
    -comment: p1o8lvd
    -parent: t1_p1nolqw
    -author: b1mm3rl1f3
    -created_utc: 1785859083
    -edited: false
    -body:
    -So sad, but I don't judge him one bit
    -
     comment: p1o8n2f
     parent: t1_p1nm68g
     author: FauxReal
     edited: false
     body:
     Pendrive with Tails OS?
    -
    -comment: p1o9y9s
    -parent: t1_p1o9ogr
    -author: Emergency-Warthog-56
    -created_utc: 1785859426
    -edited: false
    -body:
    -It's a very heartbreaking thought... Terrible...
     
     comment: p1oa65f
     parent: t1_p1nogo0
     body:
     I feel much better leaving mine on an exchange and not falling for 'not your keys, not your bitcoin' BS. First Ledger and now this Coldcar that looks like a freaking calculator from 60s, no thank you. 
     
    -comment: p1p0ix2
    -parent: t1_p1ndnel
    -author: Javanaut018
    -created_utc: 1785866028
    -edited: false
    -body:
    -White hats would have taken 1 Satoshi per wallet and then moved back the transaction fees from their own funds.
    -
     comment: p1p0yiv
     parent: t1_p1o12ig
     author: yxcv42
     body:
     Seems as you sent your coins into nirvana, if you did not mean "rolled a seed" ...
     
    -comment: p1p9t35
    -parent: t1_p1p4z07
    -author: TFWG2000
    -created_utc: 1785868330
    -edited: false
    -body:
    -Yeah, I get it.  But we are talking about millions of $ being stolen right before our eyes.  It is hard to watch.
    -
     comment: p1pb2ja
     parent: t3_1vfagz9
     author: jupongatana69
     body:
     Lol
     
    -comment: p1phvnn
    -parent: t1_p1p8bmv
    -author: ConfectionEasy5166
    -created_utc: 1785870370
    -edited: false
    -body:
    -No, it doesn't.
    -
    -You can't make claims that it is important who first had a private key.
    -
    -The bottom line is that if I have private keys, the content is mine. That's how bitcoin works.
    -
     comment: p1pi3sb
     parent: t3_1vfagz9
     author: comradePink1917
     edited: false
     body:
     Punitive punishment is not a deterrent. What you are asking for has been proven to not work.
    -
    -comment: p1q2pzd
    -parent: t1_p1q2ek6
    -author: MotanulScotishFold
    -created_utc: 1785875852
    -edited: false
    -body:
    -But even doing nothing did not work.
    -
    -At least, when you catch someone, you punish him it's some sense of justice even if the person never learns.
     
     comment: p1q2xp8
     parent: t1_p1pwvdh
     parent: t1_p1qpex1
     author: NobodyGotTimeFuhDat
     created_utc: 1785883527
    -edited: false
    -body:
    -You screenshot the seed phrase with your phone, for instance, directly copy the text from the image, then copy and paste. Once you have the recovery passphrase, you have access to the entire account. It only takes seconds. It’s very easy to do.
    +edited: 1785888966
    +body:
    +You screenshot the seed phrase with your phone, for instance, directly copy the text from the image, then copy and paste the crypto platform. Once you have the recovery passphrase, you have full access to the entire account. It only takes seconds. It’s very easy to do.
     
     comment: p1quio4
     parent: t3_1vfagz9
     
     Worked in finance, hate banks. Don’t like the government. The knowledge I have of the financial system is what fuels my hate for it
     
    -more-stub: parent t1_p1q2pzd count 12
    +comment: p1r73bd
    +parent: t1_p1qg52v
    +author: VictorDanville
    +created_utc: 1785887549
    +edited: false
    +body:
    +Damn when did it happen there?
    +
    +comment: p1r7hpt
    +parent: t1_p1r4py6
    +author: stevethewatcher
    +created_utc: 1785887678
    +edited: false
    +body:
    +Sure, a dollar in 1946 has the purchasing power of $18 in 2026 while the average wage has matched exactly that, growing from $4200 to $72k. It doesn't matter if it's worth less if you have more, you financially illiterate donkey
    +
    +comment: p1r7olc
    +parent: t1_p1ngs8i
    +author: smarge24
    +created_utc: 1785887739
    +edited: false
    +body:
    +Surely they can transfer before getting it taken? If they leave it on there it’s gone 
    +
    +comment: p1r7rv4
    +parent: t1_p1qppmi
    +author: Legal_Rampage
    +created_utc: 1785887769
    +edited: false
    +body:
    +Gary had a good run.
    +
    +comment: p1r86u3
    +parent: t3_1vfagz9
    +author: Major_Elevator8059
    +created_utc: 1785887904
    +edited: false
    +body:
    +When they find the hacker that dude is going to die in prison. However if the funds are frozen in the wallet essentially that bitcoin is out of circulation. Does that make legit bitcoin worth more now?
    +
    +comment: p1r8dj4
    +parent: t1_p1nh8ub
    +author: zendrovia
    +created_utc: 1785887964
    +edited: false
    +body:
    +Uh the sentiment for 10 years was set and forget, fuck Coinbase, not your keys blah fuckin blah
    +
    +Now the sheep weep
    +
    +comment: p1r9ei8
    +parent: t1_p1r2qt0
    +author: TristanTheViking
    +created_utc: 1785888294
    +edited: false
    +body:
    +\>man who regularly falls for online scams decides solution is getting into cryptocurrency
    +
    +comment: p1raipt
    +parent: t1_p1oymv4
    +author: nephilimcummingdaddy
    +created_utc: 1785888655
    +edited: false
    +body:
    +This comment deserves to be #1 lmao
    +
    +Hilarious
    +
    +more-stub: parent t1_p1o3rfu count 2
    +
    +more-stub: parent t1_p1o590j count 0
    +
    +more-stub: parent t1_p1o4n3p count 3
    +
    +more-stub: parent t1_p1ndagh count 3
    +
    +more-stub: parent t1_p1q2ek6 count 13
     
     more-stub: parent t1_p1npp5o count 1
     
     
     more-stub: parent t1_p1qhws5 count 0
     
    +more-stub: parent t1_p1p4z07 count 1
    +
    +more-stub: parent t1_p1o9ogr count 1
    +
     more-stub: parent t1_p1nh8ub count 1
     
    -more-stub: parent t1_p1o3rfu count 2
    -
    -more-stub: parent t1_p1o590j count 0
    -
    -more-stub: parent t1_p1o4n3p count 3
    -
    -more-stub: parent t1_p1ndagh count 3
    +more-stub: parent t1_p1nolqw count 1
     
     more-stub: parent t1_p1o4pbz count 1
     
    -more-stub: parent t1_p1nflwp count 2
    +more-stub: parent t1_p1nflwp count 1
    +
    +more-stub: parent t1_p1p8bmv count 1
     
     more-stub: parent t1_p1nocjn count 8
     
    -more-stub: parent t3_1vfagz9 count 8
    +more-stub: parent t3_1vfagz9 count 12
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  19. source content difference between and source content +153 -153

    The Reddit thread gained new participant comments.

    seen · Captured here 123,275 chars
    What changed from the previous capture 306 lines
     body:
      Could be whitehats? 
     
    -comment: p1ndrkr
    -parent: t3_1vfagz9
    -author: Ok-Chip-174
    -created_utc: 1785850936
    -edited: false
    -body:
    -\*coldcard hacker\*
    -
    -Who the fuck make these pseudonames. 
    -
    -Seems ridiculously fake. Mega manipulation against other cold storages and Bitcoin price.
    -
    -Also I am damned surprised about Bitcoin price drop, like its his fault...
    -
     comment: p1ndrmt
     parent: t3_1vfagz9
     author: swiftpwns
     edited: false
     body:
     Some of the OP_RETURN messages people send him are funny
    -
    -comment: p1nem95
    -parent: t1_p1ndrkr
    -author: TheVoidKilledMe
    -created_utc: 1785851174
    -edited: false
    -body:
    -what drop are we speaking off ?
     
     comment: p1nenad
     parent: t1_p1ndtmj
     edited: false
     body:
     They don't keep order details.
    -
    -comment: p1nl7mb
    -parent: t3_1vfagz9
    -author: Huge-Artichoke-1376
    -created_utc: 1785852983
    -edited: false
    -body:
    -At this point I wouldn’t even trust a wallet. Seems that they’ve figured out something about wallets to hack. 
     
     comment: p1nl9cw
     parent: t1_p1njacq
     body:
     Thank you. I understand what you're saying. 
     
    +comment: p1oafwh
    +parent: t1_p1o12ig
    +author: Treeclimber919
    +created_utc: 1785859551
    +edited: false
    +body:
    +Let’s face it, if the United States wants you they will come get you no matter what country you are in. Legal or illegal. I do remember not too long ago the president of Venezuela was kidnapped in the middle of the night. And go back a little further the US has been kidnapping or hiring kidnappers to bring cartel members from Mexico for a number of years. So this is nothing new. If trumps wallet was hacked best believe he will come get you. Edward Snowden is exiled to Russia for the rest of his natural life because it’s the only country he’s safe in, where US influence and power means nothing. 
    +
     comment: p1oauw2
     parent: t3_1vfagz9
     author: Prestigious_Ear_8055
     edited: false
     body:
     The hackers must be having a field day looking at all these reddit posts.
    +
    +comment: p1odiv2
    +parent: t1_p1ndagh
    +author: duxai-project
    +created_utc: 1785860328
    +edited: false
    +body:
    +Yeah, it’s honestly terrifying to watch. No matter how safe you think your cold storage is, these kinds of hacks just put everyone on edge. It definitely makes you double-check your own wallet every single time.
     
     comment: p1oeovv
     parent: t3_1vfagz9
     body:
     I mean no ones knows, but I prefer to believe Satoshi is alive and just has the op sec on the level of the creator of BTC.
     
    -comment: p1pxiyr
    -parent: t1_p1o4n3p
    -author: HoodRatThing
    -created_utc: 1785874473
    -edited: false
    -body:
    -Sigh, have you used Claude Code in any capacity within the last 2 years?
    -
    -Arguing that vibecoding leads to bad results and bad code isn’t an argument these tools are getting exponentially better every year.
    -
    -These LLMs, like Opus, write better code than 99% of junior developers. And in another few years will be nipping at the heels of senior developers.
    -
    -You just had one of the worst hacks happen where programming without an LLM assistant most likely would have caught this bug, or likely would’ve warned you about it. 
    -
     comment: p1pxz35
     parent: t1_p1nr840
     author: ArgonWilde
     body:
     I really wonder if i will ever see action from those early wallets. Or if someone figures out who Satoshi is. It’s an incredibly interesting story 
     
    -comment: p1q3bcr
    -parent: t1_p1pxiyr
    -author: Save_JR
    -created_utc: 1785876010
    -edited: false
    -body:
    -
    -https://x.com/forefy/status/2084714317501600202
    -
    - > "It built the app, wrote most of the code, did in hours what would have taken a team weeks back then if not months."
    -
    -> "And at every single one of those decision points above, it would have shipped something insecure, over-engineered, three times too expensive, or subtly useless to the exact people it was built for "confidently", and without ever flagging it."
    -
    -> Unexperienced person relying on it just gets compounding slop.
    -Expertise (years of it) is still required to steer it . the model does not replace that.
    -
    -comment: p1q3mdw
    -parent: t1_p1q2pzd
    -author: [deleted]
    -created_utc: 1785876090
    -edited: false
    -body:
    -Im not saying their shouldn't be punishment for crimes. Im saying punishment for crimes has never worked as a deterrence for said crime. If it did, America wouldnt have the highest population of imprisoned people in the world. 
    -
     comment: p1q3mpn
     parent: t1_p1nh8ub
     author: bigballer29
     edited: false
     body:
     Stop lying 😂😂😂
    -
    -comment: p1q4ucb
    -parent: t1_p1q3mdw
    -author: No_Organization3095
    -created_utc: 1785876415
    -edited: false
    -body:
    -That’s not really true, it’s more complex. Singapore has very high punishments and very little crime. For them punishment has worked as a deterrent. 
     
     comment: p1q54s4
     parent: t1_p1nzib8
     body:
     100mm lost so far. They are ruined.
     
    -comment: p1q611i
    -parent: t1_p1q3mdw
    -author: MotanulScotishFold
    -created_utc: 1785876728
    -edited: false
    -body:
    -Let's not compare with America.  
    -America having the highest population of imprisoned people is by design as there's a strong lobby by private prisons that exploit the 13th amendment about slavery and they use prisoners as such.
    -
    -There were also a famous old case where a judge was caught sending juvenile kids to prison even for the dumbest crime when they could've just serve in liberty but this because the private prison earn money by having as many prisoners as possible and exploit them.
    -
    -  
    -Slavery was never abolished, it was just changed the word so people are tricked to believe that no longer exists.
    -
    -However, back to the original post, I still believe we need harsher punishment for petty crimes and scams. Makes you think why average indian scammer than scam an old lady is never caught and punished? Or when a simple thief that steal a phone is not caught?   
    -  
    -Police says is not worth because of the value of the object and the state spend too much on justice system to condemn the person hence the thief is left free to steal as long they don't use violence.
    -
    -This is the main problem.
    -
    -Many would scream that is too harsh for so little, sometimes yes, sometimes not. But we need to send a clear message that even you steal 1$ from someone you have to face harsh punishment, make a clear example of it, multiple times if needed to scare any other people from attempting.
    -
    -Does not work? Cool, keep building new private prison and send them all, making even more crowded and use them as slavery.
    -
    -Win-win for society and private prison companies.  
    - 
    -
    -comment: p1q685s
    -parent: t1_p1q4ucb
    -author: [deleted]
    -created_utc: 1785876781
    -edited: false
    -body:
    -Singapore also has an effective rehabilitation program, and economic stability, low unemployment with high average incomes. These factors are what contribute to a lower crime rate. 
    -
    -America is experiencing a K shaped economy, with historical wealth disparity. There is virtually no rehabilitation for people who have commited crimes so they keep reoffending because they can not reintegrate into society. Poverty is rampant and people who have commited crimes are forced into poverty. Poverty is one of if not the biggest reason people are driven to commit crimes in the first place.
    -
    -Stop confusing correlation for causation.
    -
     comment: p1q6d99
     parent: t1_p1nxi8j
     author: sassa4ras
     body:
     And the CTO wrote the buggy software in the first place!
     
    -comment: p1q7a77
    -parent: t1_p1q685s
    -author: No_Organization3095
    -created_utc: 1785877064
    -edited: 1785877829
    -body:
    -Like I said, it’s not as simple as ‘punishment doesn’t work’. There’s a lot more to it than what you initially said but you’re now correctly pointing out all the nuance around this topic. 
    -
    -comment: p1q7r38
    -parent: t1_p1q611i
    -author: [deleted]
    -created_utc: 1785877189
    -edited: false
    -body:
    -You just described the deep institutional racism, conflicts of interest, and abuse of authority within our police and prison industry, and you are advocating to make it even worse? 
    -
    -I do not wish to engage with people like you. You do not believe in making society a better place by solving underlying problems instead of the symptoms. You double down on what has demonstrably been proven ineffective as if more of it would somehow change anything.
    -
    -comment: p1q8uwv
    -parent: t1_p1q7r38
    -author: MotanulScotishFold
    -created_utc: 1785877490
    -edited: false
    -body:
    -Tell me what would you do realistically into fixing that? As you can see the problems are not easy but doing nothing is not good, keeping things as it works now again are not good, making punishment harsher are not good, what's the solution?
    -
    -  
    -As long you don't have a realistic solution for this problem, it only create friction in society and I hope you know that there's not a simple solution and utopia will not exist due to human nature.
    -
     comment: p1q97dq
     parent: t1_p1ndagh
     author: Own_Chapter9338
     body:
     in the US do you guys really not get much help with the expense side of cancer? blows my mind
     
    -more-stub: parent t1_p1q8uwv count 0
    -
    -more-stub: parent t1_p1q7a77 count 0
    +comment: p1r2qt0
    +parent: t1_p1qy2vw
    +author: Candid-Walk-6762
    +created_utc: 1785886179
    +edited: false
    +body:
    +So me getting scammed for a laptop online and then not being compensated by my bank is a me problem. Lol, yeah bro. I think you might wanna read back your messages and think before posting.
    +
    +comment: p1r2uix
    +parent: t3_1vfagz9
    +author: Fernandom21
    +created_utc: 1785886210
    +edited: false
    +body:
    +It is the government.
    +
    +comment: p1r37mr
    +parent: t1_p1pgqoc
    +author: Candid-Walk-6762
    +created_utc: 1785886323
    +edited: false
    +body:
    +and what about bank failures? Lol im sure your “insurance” covers that doesn’t it
    +
    +comment: p1r3ba9
    +parent: t1_p1oyi11
    +author: Candid-Walk-6762
    +created_utc: 1785886354
    +edited: false
    +body:
    +Bank failures and regular fraud on commerce sites 
    +
    +comment: p1r3k8f
    +parent: t1_p1r37mr
    +author: Consider8SpeedDemon
    +created_utc: 1785886431
    +edited: false
    +body:
    +Yes!! Bank failures work on a case-by-case basis, if any branch/bank cannot continue business, it will be taken over by (IIRC) Federal employees who have to begin the process of documenting the bank’s entire deposits and history.
    +
    +Based on this, then FDIC can cover the accounts **up to** the limit of the FDIC.
    +
    +comment: p1r3ti4
    +parent: t1_p1qth65
    +author: EggandSpoon42
    +created_utc: 1785886511
    +edited: 1785886973
    +body:
    +This is the last email I received from them... in 2022
    +
    +Very fortunately I ended up a bit overwhelmed at figuring it out to put my btc on it, maybe I'm dumb, I do not mind admitting that, but it has sat in the box since I received it.
    +
    +[https://imgur.com/gallery/last-coinkite-email-neither-here-nor-there-just-posting-posting-sake-AfP2yue](https://imgur.com/gallery/last-coinkite-email-neither-here-nor-there-just-posting-posting-sake-AfP2yue)
    +
    +comment: p1r4h5e
    +parent: t1_p1r3k8f
    +author: Candid-Walk-6762
    +created_utc: 1785886716
    +edited: false
    +body:
    +And what about the millions of customers that have their bank accounts frozen without evidence or reason? Many people are complaining about having thousands locked up in banks for years, to the point where they just give up. What about that? Will the sweet Federal government that you defend so much help us there? Because they haven’t cared to help many millions yet
    +
    +comment: p1r4nin
    +parent: t1_p1ndkdk
    +author: TheDynamicKing
    +created_utc: 1785886772
    +edited: false
    +body:
    +if the government wanted to track this guy, they could...
    +
    +comment: p1r4py6
    +parent: t1_p1qmqv4
    +author: Candid-Walk-6762
    +created_utc: 1785886794
    +edited: false
    +body:
    +Can you remind us how much value the dollar has lost since it was taken off the gold standard? Come on Mr Pro Government, why don’t you tell us?
    +
    +comment: p1r4qjo
    +parent: t3_1vfagz9
    +author: Necessary_Floor_7081
    +created_utc: 1785886799
    +edited: false
    +body:
    +Could someone please offer me some peace of mind while I wait for a new wallet to arrive. 
    +
    +My coldcard mk3 seeds were generated on firmware 3.9. So as far as I can see I’m ‘safe’ for the moment and I have time to transfer to a new set up. 
    +
    +I’m just asking for someone with a different brain to mine to validate what I’m assuming. 
    +
    +Wanna make sure I’m not a sitting duck.   
    +Thanks legends 
    +
    +comment: p1r4tgg
    +parent: t1_p1qzp4o
    +author: HoodRatThing
    +created_utc: 1785886824
    +edited: 1785887022
    +body:
    +Could you point out where I said LLMs don't hallucinate? You’re arguing with a ghost here. 
    +
    +My claim is LLMs can and are being used to develop software now, today. They're also being used to find vulnerabilities in existing software projects and being exploited. And because an LLM can hallucinate doesn't negate the fact that you can still use them to create software or find vulnerabilities in software. Let’s say you generated an entire code base, how much of it is hallucinated? 80%? Well, just tell the LLM to fix the broken code... sorry it wasn't able to oneshot whatever you were trying to do with it. 
    +
    +
    +Why are you so obsessed with the LLM's ability to recreate the Windows OS without making a single mistake, or hallucinating a library? You know how I fix hallucinations? I give it the Context7 MCP and tell it to search documentation, and search the web for updated documentation. 
    +
    +
    +You're making it sound like we're still using ChatGPT-3 and it's hallucinatingly making up random libraries and telling you they exist... 
    +
    +
    +> But the reason people were able to identify with Claude today is because we know the hack was real.
    +
    +Braahh you don't know how software works. These LLMS are very good at finding vulnerabilities
    +
    +[Claude Mythos Has Found 271 Zero-Days in Firefox](https://www.schneier.com/blog/archives/2026/04/claude-mythos-has-found-271-zero-days-in-firefox.html)
    +
    +Are you arguing that the 271 zero days found in Firefox aren't real because a human didn't find them first and started exploiting them??? What are you saying?
    +
    +comment: p1r5a18
    +parent: t1_p1r4h5e
    +author: Consider8SpeedDemon
    +created_utc: 1785886970
    +edited: false
    +body:
    +These sound like edge cases where the bank has to comply with orders (Fed, State, Law enforcement, missed child support, court orders, etc)
    +
    +If the bank doesn’t comply with holding the funds or accounts, the bank will be in trouble.
    +
    +I don’t know your specific situation, I have seen accounts frozen for many many reasons. If your funds are personally frozen and HAVE BEEN for years… I recommend stepping into your local branch and try to find any information at all as to why it was this way.
    +
    +Will probably take a phone call or three, sorry.
    +
    +Worked in finance, hate banks. Don’t like the government. The knowledge I have of the financial system is what fuels my hate for it
    +
    +more-stub: parent t1_p1q2pzd count 12
     
     more-stub: parent t1_p1npp5o count 1
     
     
     more-stub: parent t1_p1o590j count 0
     
    -more-stub: parent t1_p1q3bcr count 0
    +more-stub: parent t1_p1o4n3p count 3
     
     more-stub: parent t1_p1ndagh count 3
     
     
     more-stub: parent t1_p1nocjn count 8
     
    -more-stub: parent t1_p1nem95 count 1
    -
    -more-stub: parent t1_p1ndrkr count 1
    -
    -more-stub: parent t3_1vfagz9 count 2
    +more-stub: parent t3_1vfagz9 count 8
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  20. source content difference between and source content +123 -89

    The Reddit thread gained new participant comments.

    seen · Captured here 123,171 chars
    What changed from the previous capture 212 lines
     body:
     No chance this will be returned. This is a big and long operation, my guess is that once this stage is completed we will see a laundering of sats through hundreds of thousands of wallets the likes of which we have not even imagined.
     
    -comment: p1nh56t
    -parent: t1_p1nflwp
    -author: xiskghferx
    -created_utc: 1785851872
    -edited: false
    -body:
    -This is not how it work...
    -
     comment: p1nh8gf
     parent: t3_1vfagz9
     author: bdjc_ink
     body:
     This specific attack is due to the fallback entropy method using the MCU UID as an entropy source, which is physically burned onto those chips. Having the chip can prove ownership since the seed can be regenerated with that information. 
     
    -comment: p1nhq52
    -parent: t1_p1nem95
    -author: generichandel
    -created_utc: 1785852032
    -edited: false
    -body:
    -yes
    -
     comment: p1nhtmb
     parent: t1_p1nekny
     author: stoicparallax
     
     Even if a bad actor could sneak in and get someone elses funds, they would have to aim for an unclaimed wallet, and even then they would only be able to do it once or twice realistically
     
    -comment: p1nie8t
    -parent: t1_p1ndrkr
    -author: Affectionate_Pen6882
    -created_utc: 1785852218
    -edited: false
    -body:
    -Its like jack the ripper
    -
     comment: p1niecp
     parent: t1_p1ndagh
     author: F1shB0wl816
     edited: false
     body:
     I’m just worried that the hacker might have some other plans. Who knows, maybe he managed to compromise other wallets too and we just don’t know about it yet. He’ll probably wait until people least expect it and then launch another attack. The whole thing seems suspicious to me because there were already people complaining back in 2021 that someone had hacked their wallets, but nobody took it seriously. And if it was the same hacker, you can see that it took him 5 years to pull this off.
    -
    -comment: p1niwlh
    -parent: t1_p1nflwp
    -author: magicninja1995
    -created_utc: 1785852358
    -edited: false
    -body:
    -🤡. Yeah let's just stop all the bitcoin network. 
     
     comment: p1niz0z
     parent: t3_1vfagz9
     body:
     and we all used to make fun of those shows where the hackers would hack money into their account. reality is stranger than fiction
     
    -comment: p1nz1tv
    -parent: t1_p1npp5o
    -author: SneakyTurtle54
    -created_utc: 1785856637
    -edited: false
    -body:
    -Trust me bro
    -
     comment: p1nz8zy
     parent: t1_p1nlfqx
     author: Technical_Customer_1
     body:
     These are dark times. What would you do if your entire stack was taken? I've had a very large stack swept and just lost at the moment 
     
    -comment: p1nzsx4
    -parent: t1_p1nocjn
    -author: [deleted]
    -created_utc: 1785856836
    -edited: false
    -body:
    -[deleted]
    -
     comment: p1o0oew
     parent: t1_p1nx7d1
     author: c0reM
     edited: false
     body:
     Why do you think that? I'm not knowledged on bots. Educate me.
    -
    -comment: p1o1p63
    -parent: t1_p1nzsx4
    -author: geraldisking
    -created_utc: 1785857328
    -edited: false
    -body:
    -They do care, because it’s still theft. It doesn’t matter if the police don’t believe in BTC. It has value and it’s being stolen. 
     
     comment: p1o2395
     parent: t1_p1ndagh
     
     comment: p1oa65f
     parent: t1_p1nogo0
    -author: quintavious_danilo
    +author: [deleted]
     created_utc: 1785859482
     edited: false
     body:
    -Russia duh
    +[removed]
     
     comment: p1oa7wo
     parent: t1_p1o9e7h
     body:
     Dude literally wrote "my 6.4 BTC".
     
    -comment: p1ox5xs
    -parent: t3_1vfagz9
    -author: DrApricot
    -created_utc: 1785865207
    -edited: false
    -body:
    -The Coldcard theft is a PR disaster for Bitcoin, and may do permanent damage to its franchise. If MSTR and the Bitcoin EFTs were smart, they’d get together a syndicate and buy Coinkite and refund everyone’s stolen coins. They have all made huge bets on the future of Bitcoin. It would also demonstrate to bitcoiners that they are not opposed to safe self-custody when it’s done right.
    -
     comment: p1oxjq1
     parent: t1_p1ojjwn
     author: Javanaut018
     body:
     And they didn't even cash out a little? Oh well...
     
    -comment: p1p7o6d
    -parent: t1_p1ox5xs
    -author: DrApricot
    -created_utc: 1785867798
    -edited: false
    -body:
    -I asked Gemini to calculate the cost, both tangible and reputational for the top five PR disasters in history, and the number came to almost $280 billion. This included such things as the BP Deepwater Horizon debacle, Boeing‘s 737 MAX grounding, and Volkswagon’s Dieselgate crisis. These PR disasters get quite expensive, and it would certainly be worth a couple of hundred $millions to avoid a multi-$billion loss. What if the public were to conclude that bitcoin is not safe, and could never be safe. How would this affect people who are betting on the future of Bitcoin?
    -
     comment: p1p7qne
     parent: t3_1vfagz9
     author: Zealousideal-War6372
     body:
     All that and still at 64k? 
     
    -comment: p1pbfyp
    -parent: t1_p1nh8ub
    -author: grraarr
    -created_utc: 1785868739
    -edited: false
    -body:
    -Many of them may just be dead, frankly.
    -
     comment: p1pch98
     parent: t3_1vfagz9
     author: M4NOOB
     
     comment: p1q2ek6
     parent: t1_p1pu9tf
    -author: Ok-Count3186
    +author: [deleted]
     created_utc: 1785875767
     edited: false
     body:
     
     comment: p1q3mdw
     parent: t1_p1q2pzd
    -author: Ok-Count3186
    +author: [deleted]
     created_utc: 1785876090
     edited: false
     body:
     
     comment: p1q685s
     parent: t1_p1q4ucb
    -author: Ok-Count3186
    +author: [deleted]
     created_utc: 1785876781
     edited: false
     body:
     
     comment: p1q7r38
     parent: t1_p1q611i
    -author: Ok-Count3186
    +author: [deleted]
     created_utc: 1785877189
     edited: false
     body:
     body:
     Everyone who buys hardware like this has signed a waiver by buying it - you know, the “do you accept” clause. 
     
    +comment: p1qw526
    +parent: t1_p1p0fsb
    +author: SatoshisVisionTM
    +created_utc: 1785884125
    +edited: false
    +body:
    +Given that one of the exchanges in my country recently got under investigation of the financial task force an lost six million euros of customer funds: yeah, no. 
    +
    +This bug was insane, and should never have happened, but "not your keys, not your bitcoin" transcends hardware and software wallets and simply means: pick a random number.
    +
    +comment: p1qwije
    +parent: t1_p1pf9qd
    +author: WowImOldAF
    +created_utc: 1785884238
    +edited: false
    +body:
    +If someone has "plenty of bitcoin," they probably have good health insurance and won't need to worry about using btc for a medical bill. But yea, it would still suck to have money stolen from you.  
    +
    +comment: p1qx4c5
    +parent: t3_1vfagz9
    +author: Patrick_Atsushi
    +created_utc: 1785884423
    +edited: false
    +body:
    +Dude is probably scanning through all serial numbers. 
    +
    +comment: p1qxikg
    +parent: t1_p1pw9rz
    +author: Technical_Customer_1
    +created_utc: 1785884548
    +edited: false
    +body:
    +“
    + Don’t forget all that destruction to the environment and wildlife!” 
    +
    +Says the person who prefers money that uses gigawatt after gigawatt of juice…
    +
    +comment: p1qxx6p
    +parent: t1_p1pn0r0
    +author: Technical_Customer_1
    +created_utc: 1785884673
    +edited: false
    +body:
    +FDIC insurance was created in the USA in 1933. There aren’t many Americans alive who experienced bank failure and “lost it all”
    +
    +comment: p1qy2vw
    +parent: t1_p1ow6uv
    +author: Technical_Customer_1
    +created_utc: 1785884722
    +edited: false
    +body:
    +That’s a you problem. And if you are losing money that way, bitcoin isn’t for you. 
    +
    +comment: p1qycfp
    +parent: t3_1vfagz9
    +author: Patrick_Atsushi
    +created_utc: 1785884805
    +edited: false
    +body:
    +If most nodes could coordinate and agree, could they theoretically freeze the hacker's wallet?
    +
    +comment: p1qzp4o
    +parent: t1_p1o1d2l
    +author: zackel_flac
    +created_utc: 1785885228
    +edited: false
    +body:
    +As I mentioned, I never said AI would not have found anything useful earlier. But the reason people were able to identify with Claude *today* is because we know the hack was real.
    +
    +Look Claude found it!
    +No it only found a line of code we all know now is the root cause. Not all bugs are actually exploitable, far from it.
    +
    +Besides, Claude is not saying anything out exploitability. You need deeper knowledge to actually build a draining mechanism like the one that is happening.
    +
    +AI is useful, it's great at finding but let's stop it has super powers. How many claude instances already run on that code base but did not help preventing the hack?
    +
    +comment: p1r06wg
    +parent: t3_1vfagz9
    +author: Yodel_And_Hodl_Mode
    +created_utc: 1785885382
    +edited: false
    +body:
    +It's not the same hacker.
    +
    +Once the exploit in ColdCard's firmware was reported, tons of other hackers duplicated the flaw and started searching those seed phrases too.
    +
    +1. We have to assume there are hundreds of hackers going after those wallets now.
    +
    +2. We have to assume they're trying to crack passphrases for any wallet that looks like it could be a decoy: A small amount of sats in one address, the rest of the addresses left empty. The wallet previously had a large balance but most of the coins were moved, only leaving a small amount. Those look like decoy wallets.
    +
    +3. We have to assume they're trying combinations of seeds from the relatively small pool of possible ColdCard seeds to restore 2-of-3 multisig wallets.
    +
    +I really hope people managed to move their coins, but the fact that coins are still being stolen shows that some people didn't get the message in time.
    +
    +All of this is heartbreaking. I feel so bad for anyone affected.
    +
    +comment: p1r0ulm
    +parent: t1_p1pf9qd
    +author: ImZappy
    +created_utc: 1785885588
    +edited: false
    +body:
    +in the US do you guys really not get much help with the expense side of cancer? blows my mind
    +
     more-stub: parent t1_p1q8uwv count 0
     
     more-stub: parent t1_p1q7a77 count 0
     
    +more-stub: parent t1_p1npp5o count 1
    +
     more-stub: parent t1_p1qb9sl count 0
     
     more-stub: parent t1_p1qhws5 count 0
     
    +more-stub: parent t1_p1nh8ub count 1
    +
     more-stub: parent t1_p1o3rfu count 2
     
     more-stub: parent t1_p1o590j count 0
     
     more-stub: parent t1_p1o4pbz count 1
     
    -more-stub: parent t1_p1o1p63 count 4
    -
    -more-stub: parent t1_p1nzsx4 count 2
    +more-stub: parent t1_p1nflwp count 2
    +
    +more-stub: parent t1_p1nocjn count 8
    +
    +more-stub: parent t1_p1nem95 count 1
    +
    +more-stub: parent t1_p1ndrkr count 1
    +
    +more-stub: parent t3_1vfagz9 count 2
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  21. source content difference between and source content +147 -103

    The Reddit thread gained new participant comments.

    seen · Captured here 121,492 chars
    What changed from the previous capture 250 lines
     body:
     I will never recover from this
     
    -comment: p1nj3wp
    -parent: t1_p1ndagh
    -author: C-c-c-ccomboBreaker
    -created_utc: 1785852414
    -edited: false
    -body:
    -Ledger got hacked back then, who knows if source code isn't in the wild, and with AI around,  if that's the case I hope RNG is good and there isn't anything else.
    -
     comment: p1nj41h
     parent: t1_p1nijcp
     author: Emergency-Warthog-56
     And most are sad.
     
     
    -comment: p1nneap
    -parent: t1_p1nj3wp
    -author: iothewispp
    -created_utc: 1785853567
    -edited: false
    -body:
    -ledger was not hacked, pls read about it once again.
    -
     comment: p1nnfv8
     parent: t1_p1niecp
     author: WeekendQuant
     edited: false
     body:
     Depends if it’s someone that can be caught. No much to be done if it turns out to be Best Korea or Russia.
    -
    -comment: p1nnm1w
    -parent: t1_p1nneap
    -author: C-c-c-ccomboBreaker
    -created_utc: 1785853624
    -edited: false
    -body:
    -But it was. They said only the customers info were leaked but that's just what they said. 
     
     comment: p1nnp56
     parent: t3_1vfagz9
     
     That's how cool AI is guys
     
    -comment: p1o2oc5
    -parent: t1_p1nzsx4
    -author: Efficient_Culture569
    -created_utc: 1785857579
    -edited: false
    -body:
    -Cops care if it was an internal job, fraud and crimes commited by Coldcard staff.
    -
    -To determine that, they need an investigation.
    -
    -Just because it's Bitcoin related, doesn't mean anything goes. 
    -
    -Why should the cops care? The cops exist to protect citizens, they are paid by the people, don't forget that. 
    -
    -Without people, no cops are needed. Their sole purpose is to protect and serve the people.
    -
    -Including people they don't like, on crimes they don't approve, in my opinion. Otherwise, as a tax payment member, I'd just opt out and say my taxes won't go to the police, because don't like X police officers... But doesn't work like that. We pay for all cops, they serve everyone.
    -
     comment: p1o2qui
     parent: t3_1vfagz9
     author: Exotic-Pollution-590
     body:
     I see a court battle incoming. The people verses cold wallet inc. I bet the inc goes down and the people get their btc back. Or at least the ones who can so called prove it was theirs 
     
    -comment: p1o6z96
    -parent: t1_p1o3rfu
    -author: AtroposM
    -created_utc: 1785858672
    -edited: false
    -body:
    -Which would not apply at all in this situation. These people will not run far.
    -
     comment: p1o776b
     parent: t1_p1nxdyt
     author: The_Realist02
     body:
     Guy’s literally mowing the lawn. Even 1.2$ balances aren’t safe, this is relentless. He just wants more.
     
    -comment: p1oawd3
    -parent: t1_p1o1p63
    -author: [deleted]
    -created_utc: 1785859667
    -edited: false
    -body:
    -[deleted]
    -
     comment: p1oc6ba
     parent: t3_1vfagz9
     author: AwesomReno
     edited: false
     body:
     Well I’m sure most of these people are the set it forget it and will become the “ now it’s gone” 
    -
    -comment: p1ochfl
    -parent: t1_p1oawd3
    -author: geraldisking
    -created_utc: 1785860066
    -edited: false
    -body:
    -Okay but they still care regardless of the reason you state. Because it’s against the law. 
     
     comment: p1oco28
     parent: t3_1vfagz9
     body:
     So you’re saying there’s a chance?
     
    -comment: p1ogumb
    -parent: t1_p1ochfl
    -author: [deleted]
    -created_utc: 1785861164
    -edited: false
    -body:
    -[deleted]
    -
     comment: p1ogzac
     parent: t1_p1nolqw
     author: magicmulder
     
     Good luck tracking this if it goes through hundreds of addresses, mixers, darknet markets, ...
     
    -comment: p1ohwbn
    -parent: t1_p1ogumb
    -author: geraldisking
    -created_utc: 1785861425
    -edited: false
    -body:
    -A $100M+ theft is not something federal law enforcement ignores. That’s well above any threshold for opening a case, and the practical ingredients are unusually good here, Galaxy has handed over \~600 attacker addresses, the majority of the stolen BTC hasn’t moved and is sitting statically on-chain, and exchanges have been flagged. Cashing out $100M in Bitcoin almost always requires touching a regulated exchange, which is where identification and freezes happen. DOJ has recovered large sums years after the fact in exactly this pattern (the 2016 Bitfinex funds were seized in 2022).
    -
     comment: p1oi9o1
     parent: t1_p1nwd9u
     author: curiousengineer601
     body:
     "Presumably" is carrying a lot of weight there. The Ledger operation could just be waiting for a bigger payday - it's even more opaque than coldcard and could run the same type of scam with even less chance of discovery.
     
    -comment: p1omi3i
    -parent: t1_p1o4pbz
    -author: trufin2038
    -created_utc: 1785862570
    -edited: false
    -body:
    -That would be the best possible outcome.
    -
     comment: p1omk0c
     parent: t1_p1nmpmg
     author: Ok-Engineering1873
     body:
     Address signature and proof of purchasing (mail etc)
     
    -comment: p1ookrn
    -parent: t1_p1o6z96
    -author: ObamaLovesKetamine
    -created_utc: 1785863091
    -edited: false
    -body:
    -idk man.  if I stole several hundred million dollars, I'd go literally anywhere.  I'm sure you would too. 
    -
     comment: p1op2i0
     parent: t1_p1o2395
     author: xiskghferx
     edited: false
     body:
     Not too hard to extend search over 2 dictionary words over a collapsed key space of 40 or even 16 bits....
    +
    +comment: p1otvy6
    +parent: t1_p1nr840
    +author: neurotoxics
    +created_utc: 1785864397
    +edited: false
    +body:
    +This is not a joke. 
    +
    +I asked opus to check all cold wallets about 6 months ago and it highlighted this bug. I didnt double down on it, I asked fable check it didnt do anything. 
    +
    +I ran codex, it immediately flagged the conversation. So I stopped. 
    +
    +Someone with good enough local AI and technical know how could have easily figured this one out. 
     
     comment: p1ou0pf
     parent: t1_p1o2v5x
     body:
     But does that mean there are no more bugs??
     
    +comment: p1qf0ji
    +parent: t1_p1okwmr
    +author: scrandlle
    +created_utc: 1785879159
    +edited: false
    +body:
    +This isnt good information. 
    +
    +The problem with their firmware was that it had a new RNG source in it but it was not enabled. Enabling it and trying to compile it led to an error which wouldnt let it compile. The error itself was innocuous and further down in the code not even related to RNG. My theory is that whoever was working on that code had it unenabled while trying to find the error but went to work on other things and ended up forgetting about it because the firmware defaulted back to the old RNG source and looked like it was operating properly. Either that or it was an inside job and said individual did it on purpose and was smart enough to leave plausible deniability. The company needs an outside investigation either way. 
    +
    +As for these people being blocked on Reddit for reporting this issue, this all stems from an anonymous Twitter account where one single person said this happened to them. I'd take it with a grain of salt. If they were smart enough to be looking into the code and discovering this error that even AI doesn't unless you give it a trail of breadcrumbs to the problem area and white hate enough to try to inform Coldkite, theyd have done something else about it. 
    +
    +They could have come to this subreddit and posted about it and it'd have been huge breaking news in the crypto world in hours. They'd probably have simply contacted the company directly and probably gotten a finders fee for it, even if a mod on a subreddit ignored them there's no way the actual company would have. 
    +
    +Anyway, you're piecing things together with tiny bits of information and not even getting the base info right.
    +
     comment: p1qfk5w
     parent: t1_p1qda0d
     author: surfsee
     parent: t3_1vfagz9
     author: NobodyGotTimeFuhDat
     created_utc: 1785879473
    -edited: false
    -body:
    -What is happening right now reminds me of the time this streamer accidentally showed his seed phrase password on an online stream and lost over $100,000 in crypto… The process is irreversible.
    -
    -https://www.binance.com/en/square/post/16345918429937
    +edited: 1785883282
    +body:
    +What is happening right now reminds me of the time this streamer accidentally showed his seed phrase password in an online stream and lost over $100,000 in crypto… The process is irreversible.
    +
    +[https://www.binance.com/en/square/post/16345918429937](https://www.binance.com/en/square/post/16345918429937)
     
     comment: p1qhs5r
     parent: t1_p1qfvp3
     body:
     Not unless they cash out 
     
    +comment: p1qp9an
    +parent: t3_1vfagz9
    +author: Agreeable_Bullfrog_7
    +created_utc: 1785882063
    +edited: false
    +body:
    +Likely dozens of hackers at this point after word got out. Every penny from a prng coldcard will be stolen in due time.
    +
    +comment: p1qpex1
    +parent: t1_p1qg52v
    +author: Alphamale822
    +created_utc: 1785882109
    +edited: false
    +body:
    +How did they steal it within 10 seconds lol
    +
    +comment: p1qppmi
    +parent: t1_p1oewht
    +author: funk--
    +created_utc: 1785882196
    +edited: false
    +body:
    +Bitcoin peaks to 500k$
    +Old Garry thinks okay that's enough, I'll take my retirement here and buy a cosy home far away under the sun. Garry has calculated everything, he's positive for +2.300% and should be a multimillionaire with his 4.2btc he accumulated by DCA ing all over his life. Garry logs in to cash out and boom 💥 +2.300% of zero is zero. Garry stops talking, stops moving. He goes to the storage under the eyes of his ignorant wife he wanted to please with this money. No word, just a slow walk. That's the last picture she'll have of him.
    +
    +Rest in peace, Garry the ol' bitcoiners 🫡
    +One of us, forever
    +
    +comment: p1qpsid
    +parent: t1_p1ppl7i
    +author: dr_tdm1
    +created_utc: 1785882220
    +edited: false
    +body:
    +The thing is,, that discussion was about hacked or drained wallets and no one knows why (could really be a user mistake),, but what really scares me is that coldcard is an open source and the bug was there in public and no one spotted it for 5 years until our guy here caught it and took advantage.. 
    +
    +comment: p1qsbvs
    +parent: t1_p1qllt0
    +author: classified_x
    +created_utc: 1785882972
    +edited: false
    +body:
    +well, since they don't really comply with the security of the device, I imagine he must have kept buyers' emails on a XLSX spreadsheet of sorts
    +
    +comment: p1qsyce
    +parent: t3_1vfagz9
    +author: Hour_Indication_9126
    +created_utc: 1785883161
    +edited: false
    +body:
    +It’s satoshi 
    +
    +comment: p1qth65
    +parent: t1_p1pjsr4
    +author: zekthedeadcow
    +created_utc: 1785883317
    +edited: false
    +body:
    +They did... after two days.  I found out from River around 10am Saturday and I thought it was a fishing scam.  Coinkite emailed about 11pm that night.  
    +
    +I was saved by my ADHD super power of not finishing projects I start... so I never moved anything to it.
    +
    +comment: p1qtk7p
    +parent: t1_p1p17ka
    +author: KlutzySolution7913
    +created_utc: 1785883342
    +edited: false
    +body:
    +On the ball
    +
    +comment: p1qu5zd
    +parent: t1_p1qpex1
    +author: NobodyGotTimeFuhDat
    +created_utc: 1785883527
    +edited: false
    +body:
    +You screenshot the seed phrase with your phone, for instance, directly copy the text from the image, then copy and paste. Once you have the recovery passphrase, you have access to the entire account. It only takes seconds. It’s very easy to do.
    +
    +comment: p1quio4
    +parent: t3_1vfagz9
    +author: Buttoshi
    +created_utc: 1785883633
    +edited: false
    +body:
    +I know not your keys not your coins and all but legally speaking is coinkite on the hook?
    +
    +comment: p1quq3i
    +parent: t1_p1ngr6p
    +author: Buttoshi
    +created_utc: 1785883696
    +edited: false
    +body:
    +How can one know if they use proper trng?
    +
    +comment: p1quywa
    +parent: t1_p1nf03i
    +author: tta82
    +created_utc: 1785883772
    +edited: false
    +body:
    +Everyone who buys hardware like this has signed a waiver by buying it - you know, the “do you accept” clause. 
    +
     more-stub: parent t1_p1q8uwv count 0
     
     more-stub: parent t1_p1q7a77 count 0
     
     more-stub: parent t1_p1qhws5 count 0
     
    +more-stub: parent t1_p1o3rfu count 2
    +
     more-stub: parent t1_p1o590j count 0
     
     more-stub: parent t1_p1q3bcr count 0
    +
    +more-stub: parent t1_p1ndagh count 3
    +
    +more-stub: parent t1_p1o4pbz count 1
    +
    +more-stub: parent t1_p1o1p63 count 4
    +
    +more-stub: parent t1_p1nzsx4 count 2
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  22. source content difference between and source content +158 -3

    The Reddit thread gained 18 new comments and an existing comment was edited.

    seen · Captured here 118,888 chars
    What changed from the previous capture 161 lines
     parent: t1_p1o396y
     author: Dormage
     created_utc: 1785858485
    -edited: false
    -body:
    -Theres very reputation left to loose.
    +edited: 1785880846
    +body:
    +Theres not much reputation left to loose.
     
     comment: p1o6nqe
     parent: t1_p1no3gz
     even the guys running btc etf can be hacked, nothing is 100% certain. 
     
     
    +comment: p1qjq7e
    +parent: t1_p1ndagh
    +author: Lopsided-General-434
    +created_utc: 1785880475
    +edited: false
    +body:
    +I gave up on ledger when I tried to access my wallet and the nano was "too cold to work" so I had to let it warm up for half an hour. It was indoors the entire time, I do not trust the long term lifespan of these devices. Combined with the amount of phishing mail I get after they got hacked I've abandoned them completely
    +
    +comment: p1qjrcj
    +parent: t3_1vfagz9
    +author: calambacle
    +created_utc: 1785880484
    +edited: false
    +body:
    +Dump this shit to $500
    +
    +comment: p1qkb3f
    +parent: t1_p1nw2v1
    +author: Alphamale822
    +created_utc: 1785880639
    +edited: false
    +body:
    +What’s the chances we’re all here by chance ?
    +
    +comment: p1qkt3j
    +parent: t1_p1o68fq
    +author: xuncx
    +created_utc: 1785880780
    +edited: false
    +body:
    +Very indeed 
    +
    +comment: p1qlls2
    +parent: t1_p1p74zl
    +author: xuncx
    +created_utc: 1785881008
    +edited: false
    +body:
    +Diamond hands baby 💎 🙌 
    +
    +comment: p1qllt0
    +parent: t1_p1pjsr4
    +author: Pacman_Frog
    +created_utc: 1785881009
    +edited: false
    +body:
    +Coinkite offers 100% confidentiality on sales and delivery. You can ahve it sent to a PO Box or rental box as long as it can be addressed, use a fake name and temporary e-mail address, and pay in bitcoin.
    +
    +  
    +Even they don't have a full record of every customer's name.
    +
    +comment: p1qmjpr
    +parent: t1_p1os554
    +author: xuncx
    +created_utc: 1785881277
    +edited: false
    +body:
    +Yeah for sure unless they found a way to wash or launder it
    +
    +comment: p1qmlri
    +parent: t1_p1pt2lb
    +author: Alphamale822
    +created_utc: 1785881294
    +edited: false
    +body:
    +Great, gonna ask a local cave man to carve me a dice made of bone... question is should I let him throw bone dice or should I throw it myself for maximum entropy
    +
    +comment: p1qmqv4
    +parent: t1_p1pw9rz
    +author: stevethewatcher
    +created_utc: 1785881335
    +edited: false
    +body:
    +Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality 
    +
    +comment: p1qmraq
    +parent: t1_p1p73cj
    +author: daynomate
    +created_utc: 1785881338
    +edited: false
    +body:
    +I would bet it’s North Korea but yeah would be automated 
    +
    +comment: p1qmsd1
    +parent: t3_1vfagz9
    +author: locustsandhoney
    +created_utc: 1785881347
    +edited: false
    +body:
    +WHY IN THE WORLD are they using the same address to receive the stolen Bitcoin? That’s literally the only way to prove it was stolen. Anyone could CLAIM their Bitcoin was stolen, but if it goes to some random address, there’s no way to know whether it’s an address they control themselves. But since the attacker is using ONE address for everything, they are making it a million times harder for themselves to actually utilize the stolen funds, since everyone will be tracking them, and they are also giving all victims clear proof that the theft was real.
    +
    +WHY WOULD A THEIF DO THIS? I genuinely don’t understand.
    +
    +comment: p1qmti4
    +parent: t1_p1pw9rz
    +author: stevethewatcher
    +created_utc: 1785881356
    +edited: false
    +body:
    +Way to conflate the two lol. There are other countries beside the US you know, who use fiat just fine without starting wars or destroying environments (what do those have to do with the dollar value anyways). Btw, in order for the dollar to be worth 50% less inflation would have to be at 15%, which is not even close to reality
    +
    +comment: p1qnfzo
    +parent: t3_1vfagz9
    +author: Shwazool
    +created_utc: 1785881537
    +edited: false
    +body:
    +This is a state actor? Possibly Iran, not like there would be any reason they should fear any legal action. They are already getting bombed
    +
    +comment: p1qngv9
    +parent: t1_p1nmefx
    +author: Emergency-Warthog-56
    +created_utc: 1785881544
    +edited: false
    +body:
    +https://x.com/i/status/2084628592760164385
    +
    +Found this recently
    +
    +comment: p1qnokb
    +parent: t1_p1qmlri
    +author: trufin2038
    +created_utc: 1785881606
    +edited: false
    +body:
    +You could just buy some from a convenience store. It's a lot easier.
    +
    +comment: p1qo28s
    +parent: t1_p1prsbb
    +author: Emergency-Warthog-56
    +created_utc: 1785881716
    +edited: false
    +body:
    +https://x.com/i/status/2084628592760164385
    +
    +Found this recently 
    +
    +comment: p1qo4bv
    +parent: t1_p1pb2ja
    +author: Alphamale822
    +created_utc: 1785881733
    +edited: false
    +body:
    +You can’t crash BTC with just a few 1000btc 
    +
    +comment: p1qo9h4
    +parent: t1_p1pohfl
    +author: Alphamale822
    +created_utc: 1785881774
    +edited: false
    +body:
    +Not unless they cash out 
    +
     more-stub: parent t1_p1q8uwv count 0
     
     more-stub: parent t1_p1q7a77 count 0
     more-stub: parent t1_p1qhws5 count 0
     
     more-stub: parent t1_p1o590j count 0
    +
    +more-stub: parent t1_p1q3bcr count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  23. source content difference between and source content +94 -17

    The Reddit thread gained 10 new comments, an existing comment was edited, and two earlier comments were no longer served.

    seen · Captured here 114,341 chars
    What changed from the previous capture 111 lines
     body:
     Not a bad idea! 
     
    -comment: p1o992p
    -parent: t3_1vfagz9
    -author: b1mm3rl1f3
    -created_utc: 1785859247
    -edited: false
    -body:
    -Genuine question: if I generate my own entropy with dice and use a trezor for signing transactions, what advantage does a seedsigner provide? 
    -
     comment: p1o9axj
     parent: t1_p1nf03i
     author: Mundane_Grand_9117
     
     Hunting season is open on the Coldcard
     
    -comment: p1p1hng
    -parent: t3_1vfagz9
    -author: riversandpeaks
    -created_utc: 1785866265
    -edited: false
    -body:
    -Ai gonna be living on all the islands with all of the hookers, driving all the lambos by 2032
    -
     comment: p1p1r43
     parent: t1_p1oh32w
     author: marshyr3d1and
     parent: t1_p1oiw4l
     author: edmunchies
     created_utc: 1785876703
    -edited: false
    +edited: 1785879568
     body:
     do your own due diligence, but according to their site, it is more secure than the affected coldcard models due to a flaw in how they were generating entropy: [https://trezor.io/guides/trezor-devices/trezor-fundamentals/what-is-entropy-and-how-does-trezor-generate-your-wallet?srsltid=AfmBOoo41kDZHeg5msEYi4udVzc8cgMM5Oz17h1Ftyqj2nK1ACm-6z8Q](https://trezor.io/guides/trezor-devices/trezor-fundamentals/what-is-entropy-and-how-does-trezor-generate-your-wallet?srsltid=AfmBOoo41kDZHeg5msEYi4udVzc8cgMM5Oz17h1Ftyqj2nK1ACm-6z8Q)
    +
    +[https://www.reddit.com/r/Bitcoin/comments/1vehzv8/i\_compared\_every\_major\_bitcoin\_hardware\_wallet/](https://www.reddit.com/r/Bitcoin/comments/1vehzv8/i_compared_every_major_bitcoin_hardware_wallet/)
     
     comment: p1q5z9s
     parent: t1_p1nf03i
     ive heard exchanges use trezor, which makes sense.
     ofcourse nothing is 100% in this world, but to me trezor seems like one of the best ways for most people to store btc.
     
    +comment: p1qc6q3
    +parent: t1_p1pv72e
    +author: surfsee
    +created_utc: 1785878388
    +edited: false
    +body:
    +unless you really know what your doing, using a hardware wallet is more secure. 
    +
    +comment: p1qcoug
    +parent: t1_p1oiw4l
    +author: surfsee
    +created_utc: 1785878523
    +edited: false
    +body:
    +the bug has nothing to do with trezor, or any other hardware wallets.
    +it was a bug in the coldcard wallet generation code.
    +That buggy code was not shared by any other hardware wallets.
    +
    +comment: p1qd4nt
    +parent: t1_p1pur2g
    +author: surfsee
    +created_utc: 1785878644
    +edited: false
    +body:
    +Noone can be 100% sure of anything no, but this bug has nothing to do with trezor or any other hardware wallets
    +
    +comment: p1qda0d
    +parent: t1_p1qd4nt
    +author: Skinny_Human
    +created_utc: 1785878683
    +edited: false
    +body:
    +But does that mean there are no more bugs??
    +
    +comment: p1qfk5w
    +parent: t1_p1qda0d
    +author: surfsee
    +created_utc: 1785879311
    +edited: false
    +body:
    +more bugs? This was a huge bug in coldcard , but it didnt exist in any other wallet.
    +
    +
    +comment: p1qfss5
    +parent: t1_p1qfk5w
    +author: Skinny_Human
    +created_utc: 1785879378
    +edited: false
    +body:
    +But you don’t know that other bugs don’t exist on those other wallets man, that’s what I was trying to say 
    +
    +comment: p1qfvp3
    +parent: t1_p1o14pk
    +author: SatisfactionFinal287
    +created_utc: 1785879400
    +edited: false
    +body:
    +Safe because Bitbox or safe because 24-word seed?
    +
    +comment: p1qg52v
    +parent: t3_1vfagz9
    +author: NobodyGotTimeFuhDat
    +created_utc: 1785879473
    +edited: false
    +body:
    +What is happening right now reminds me of the time this streamer accidentally showed his seed phrase password on an online stream and lost over $100,000 in crypto… The process is irreversible.
    +
    +https://www.binance.com/en/square/post/16345918429937
    +
    +comment: p1qhs5r
    +parent: t1_p1qfvp3
    +author: justanotheruser-o_o
    +created_utc: 1785879930
    +edited: false
    +body:
    +because of bitbox
    +
    +comment: p1qhws5
    +parent: t1_p1qfss5
    +author: surfsee
    +created_utc: 1785879967
    +edited: false
    +body:
    +Yeah, noone can be sure of anything. 
    +the more code, the more room for bugs.
    +The code running a exchange is a lot more prone to bugs, as its a lot bigger and more complex.
    +even the guys running btc etf can be hacked, nothing is 100% certain. 
    +
    +
     more-stub: parent t1_p1q8uwv count 0
     
     more-stub: parent t1_p1q7a77 count 0
     
     more-stub: parent t1_p1qb9sl count 0
     
    +more-stub: parent t1_p1qhws5 count 0
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  24. source content difference between and source content +148 -0

    The Reddit thread gained 14 new comments.

    seen · Captured here 112,340 chars
    What changed from the previous capture 148 lines
     
     Same reason musk, bezos etc. need all their riches
     
    +comment: p1q5kz4
    +parent: t1_p1p0fsb
    +author: OldWolf3
    +created_utc: 1785876610
    +edited: false
    +body:
    +Until the exchange gets hacked ?
    +
    +comment: p1q5xrq
    +parent: t1_p1oiw4l
    +author: edmunchies
    +created_utc: 1785876703
    +edited: false
    +body:
    +do your own due diligence, but according to their site, it is more secure than the affected coldcard models due to a flaw in how they were generating entropy: [https://trezor.io/guides/trezor-devices/trezor-fundamentals/what-is-entropy-and-how-does-trezor-generate-your-wallet?srsltid=AfmBOoo41kDZHeg5msEYi4udVzc8cgMM5Oz17h1Ftyqj2nK1ACm-6z8Q](https://trezor.io/guides/trezor-devices/trezor-fundamentals/what-is-entropy-and-how-does-trezor-generate-your-wallet?srsltid=AfmBOoo41kDZHeg5msEYi4udVzc8cgMM5Oz17h1Ftyqj2nK1ACm-6z8Q)
    +
    +comment: p1q5z9s
    +parent: t1_p1nf03i
    +author: m0nk37
    +created_utc: 1785876715
    +edited: false
    +body:
    +100mm lost so far. They are ruined.
    +
    +comment: p1q611i
    +parent: t1_p1q3mdw
    +author: MotanulScotishFold
    +created_utc: 1785876728
    +edited: false
    +body:
    +Let's not compare with America.  
    +America having the highest population of imprisoned people is by design as there's a strong lobby by private prisons that exploit the 13th amendment about slavery and they use prisoners as such.
    +
    +There were also a famous old case where a judge was caught sending juvenile kids to prison even for the dumbest crime when they could've just serve in liberty but this because the private prison earn money by having as many prisoners as possible and exploit them.
    +
    +  
    +Slavery was never abolished, it was just changed the word so people are tricked to believe that no longer exists.
    +
    +However, back to the original post, I still believe we need harsher punishment for petty crimes and scams. Makes you think why average indian scammer than scam an old lady is never caught and punished? Or when a simple thief that steal a phone is not caught?   
    +  
    +Police says is not worth because of the value of the object and the state spend too much on justice system to condemn the person hence the thief is left free to steal as long they don't use violence.
    +
    +This is the main problem.
    +
    +Many would scream that is too harsh for so little, sometimes yes, sometimes not. But we need to send a clear message that even you steal 1$ from someone you have to face harsh punishment, make a clear example of it, multiple times if needed to scare any other people from attempting.
    +
    +Does not work? Cool, keep building new private prison and send them all, making even more crowded and use them as slavery.
    +
    +Win-win for society and private prison companies.  
    + 
    +
    +comment: p1q685s
    +parent: t1_p1q4ucb
    +author: Ok-Count3186
    +created_utc: 1785876781
    +edited: false
    +body:
    +Singapore also has an effective rehabilitation program, and economic stability, low unemployment with high average incomes. These factors are what contribute to a lower crime rate. 
    +
    +America is experiencing a K shaped economy, with historical wealth disparity. There is virtually no rehabilitation for people who have commited crimes so they keep reoffending because they can not reintegrate into society. Poverty is rampant and people who have commited crimes are forced into poverty. Poverty is one of if not the biggest reason people are driven to commit crimes in the first place.
    +
    +Stop confusing correlation for causation.
    +
    +comment: p1q6d99
    +parent: t1_p1nxi8j
    +author: sassa4ras
    +created_utc: 1785876819
    +edited: false
    +body:
    +And the CTO wrote the buggy software in the first place!
    +
    +comment: p1q7a77
    +parent: t1_p1q685s
    +author: No_Organization3095
    +created_utc: 1785877064
    +edited: 1785877829
    +body:
    +Like I said, it’s not as simple as ‘punishment doesn’t work’. There’s a lot more to it than what you initially said but you’re now correctly pointing out all the nuance around this topic. 
    +
    +comment: p1q7r38
    +parent: t1_p1q611i
    +author: Ok-Count3186
    +created_utc: 1785877189
    +edited: false
    +body:
    +You just described the deep institutional racism, conflicts of interest, and abuse of authority within our police and prison industry, and you are advocating to make it even worse? 
    +
    +I do not wish to engage with people like you. You do not believe in making society a better place by solving underlying problems instead of the symptoms. You double down on what has demonstrably been proven ineffective as if more of it would somehow change anything.
    +
    +comment: p1q8uwv
    +parent: t1_p1q7r38
    +author: MotanulScotishFold
    +created_utc: 1785877490
    +edited: false
    +body:
    +Tell me what would you do realistically into fixing that? As you can see the problems are not easy but doing nothing is not good, keeping things as it works now again are not good, making punishment harsher are not good, what's the solution?
    +
    +  
    +As long you don't have a realistic solution for this problem, it only create friction in society and I hope you know that there's not a simple solution and utopia will not exist due to human nature.
    +
    +comment: p1q97dq
    +parent: t1_p1ndagh
    +author: Own_Chapter9338
    +created_utc: 1785877584
    +edited: false
    +body:
    +Coinkite do not know who the owns are they wipe the purchase info 
    +
    +comment: p1q9vti
    +parent: t3_1vfagz9
    +author: JayGatsby1881
    +created_utc: 1785877768
    +edited: false
    +body:
    +What is this dude hacks Satoshi's Coldcard wallet?
    +
    +comment: p1qax1i
    +parent: t3_1vfagz9
    +author: First-Check-164
    +created_utc: 1785878048
    +edited: false
    +body:
    +I put $20 back in my CC to see if it gets swiped in the future.  
    +
    +comment: p1qb9sl
    +parent: t1_p1pzwpf
    +author: tpe91roc
    +created_utc: 1785878142
    +edited: false
    +body:
    +Yes I’m thinking to do the same. Maybe transfer in small batches just to be sure it arrives and without having issues with the address. It’s a small expense anyway so definitely would be a better idea. 
    +
    +comment: p1qbtsh
    +parent: t1_p1pw1i1
    +author: surfsee
    +created_utc: 1785878293
    +edited: false
    +body:
    +Trezor is fine. This was a bug in the generation of wallet in coldcard. Nothing to do with trezor, trezor uses proper entropy when generatind wallets.
    +ive heard exchanges use trezor, which makes sense.
    +ofcourse nothing is 100% in this world, but to me trezor seems like one of the best ways for most people to store btc.
    +
    +more-stub: parent t1_p1q8uwv count 0
    +
    +more-stub: parent t1_p1q7a77 count 0
    +
    +more-stub: parent t1_p1qb9sl count 0
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  25. source content difference between and source content +151 -0

    The Reddit thread gained 17 new comments.

    seen · Captured here 106,150 chars
    What changed from the previous capture 151 lines
     body:
     I would bet my life someone from Coldcard is behind this. The 'mistake' is just so lazy and idiotic
     
    +comment: p1pt2lb
    +parent: t1_p1owuqe
    +author: trufin2038
    +created_utc: 1785873295
    +edited: false
    +body:
    +It applies to any device, period, even one you build and code yourself. There is reason maxis suggest using dice or cards: they are nearly foolproof. They are uncomplicated sources of high quality entropy that you can directly perceive with human senses. No chance of honest bugs or errors, supply chain attacks, power or timing attacks, or coldcard style Trojans, etc etc.
    +
    +Entropy is so simple a cave man can do it with carved bone dice. 
    +
     comment: p1ptx3a
     parent: t1_p1prsbb
     author: Emergency-Warthog-56
     body:
     Damn, dude! Don't put ideas like this out here on the web where AI can see it! You might give them ideas! Lol
     
    +comment: p1pyvm8
    +parent: t1_p1py1ab
    +author: tpe91roc
    +created_utc: 1785874828
    +edited: false
    +body:
    +Exactly feel the same. I have an amount that losing would really piss me off. It’s not a lot but it’s not little either. Won’t be life changing but I’d rather pay six months mortgage than losing it ahah I’ve been holding for ages 
    +
    +comment: p1pzcmr
    +parent: t1_p1nmefx
    +author: Emergency-Warthog-56
    +created_utc: 1785874951
    +edited: false
    +body:
    +Wasn't links I found. I ran accross a few posts where people posted old conversations. I didn't save any of them or share them. I should have. I think back then most figured those were just user errors. 
    +
    +comment: p1pztw1
    +parent: t3_1vfagz9
    +author: Dont_Be_Sheep
    +created_utc: 1785875078
    +edited: false
    +body:
    +SELL YOUR BITCOIN WHY ARE YOU HOLDING IT?? The experiment failed.
    +
    +comment: p1pzuas
    +parent: t1_p1prfj2
    +author: burusai
    +created_utc: 1785875081
    +edited: false
    +body:
    +Not an ex-dev. Much worse.
    +
    +comment: p1pzwpf
    +parent: t1_p1pyvm8
    +author: Skinny_Human
    +created_utc: 1785875099
    +edited: false
    +body:
    +Then we are the same. Do what I did then in that case. I trust the big exchanges more now than I do the cold card companies and I think this is definitely the beginning of the end for many of them because people make mistakes and are incompetent. At least the big exchanges have large security teams and regulatory controls etc
    +
    +comment: p1q0fnu
    +parent: t1_p1pyvm8
    +author: Skinny_Human
    +created_utc: 1785875237
    +edited: false
    +body:
    +If you decide to go the exchange route, make sure you take advantage of ALL their security measures. I even asked AI how to max it out, ironically, and it was very helpful 
    +
    +comment: p1q1mvy
    +parent: t3_1vfagz9
    +author: SunFoxer
    +created_utc: 1785875560
    +edited: false
    +body:
    +Actually, the latest version of Kimi can easily generate CUDA-based brute-force code, so we should assume multiple people are actively running these attacks right now
    +
    +comment: p1q2ek6
    +parent: t1_p1pu9tf
    +author: Ok-Count3186
    +created_utc: 1785875767
    +edited: false
    +body:
    +Punitive punishment is not a deterrent. What you are asking for has been proven to not work.
    +
    +comment: p1q2pzd
    +parent: t1_p1q2ek6
    +author: MotanulScotishFold
    +created_utc: 1785875852
    +edited: false
    +body:
    +But even doing nothing did not work.
    +
    +At least, when you catch someone, you punish him it's some sense of justice even if the person never learns.
    +
    +comment: p1q2xp8
    +parent: t1_p1pwvdh
    +author: curiousengineer601
    +created_utc: 1785875909
    +edited: false
    +body:
    +I really wonder if i will ever see action from those early wallets. Or if someone figures out who Satoshi is. It’s an incredibly interesting story 
    +
    +comment: p1q3bcr
    +parent: t1_p1pxiyr
    +author: Save_JR
    +created_utc: 1785876010
    +edited: false
    +body:
    +
    +https://x.com/forefy/status/2084714317501600202
    +
    + > "It built the app, wrote most of the code, did in hours what would have taken a team weeks back then if not months."
    +
    +> "And at every single one of those decision points above, it would have shipped something insecure, over-engineered, three times too expensive, or subtly useless to the exact people it was built for "confidently", and without ever flagging it."
    +
    +> Unexperienced person relying on it just gets compounding slop.
    +Expertise (years of it) is still required to steer it . the model does not replace that.
    +
    +comment: p1q3mdw
    +parent: t1_p1q2pzd
    +author: Ok-Count3186
    +created_utc: 1785876090
    +edited: false
    +body:
    +Im not saying their shouldn't be punishment for crimes. Im saying punishment for crimes has never worked as a deterrence for said crime. If it did, America wouldnt have the highest population of imprisoned people in the world. 
    +
    +comment: p1q3mpn
    +parent: t1_p1nh8ub
    +author: bigballer29
    +created_utc: 1785876093
    +edited: false
    +body:
    +So wild; it’s like a bank robbery that happened days ago is allowed to continue days later even though half of the city knows about it.  
    +
    +comment: p1q47bj
    +parent: t3_1vfagz9
    +author: Intrepid_Interest912
    +created_utc: 1785876244
    +edited: false
    +body:
    +Stop lying 😂😂😂
    +
    +comment: p1q4ucb
    +parent: t1_p1q3mdw
    +author: No_Organization3095
    +created_utc: 1785876415
    +edited: false
    +body:
    +That’s not really true, it’s more complex. Singapore has very high punishments and very little crime. For them punishment has worked as a deterrent. 
    +
    +comment: p1q54s4
    +parent: t1_p1nzib8
    +author: OldWolf3
    +created_utc: 1785876491
    +edited: false
    +body:
    +>
    +wtf the same individual needs all that bitcoin for?
    +
    +Same reason musk, bezos etc. need all their riches
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  26. source content difference between and source content +218 -0

    The Reddit thread gained 25 new comments.

    seen · Captured here 101,168 chars
    What changed from the previous capture 218 lines
     body:
     Maybe some ex dev that worked on this project early on intentionally left this and is now draining it all 🤷‍♀️
     
    +comment: p1prsbb
    +parent: t1_p1ppl7i
    +author: FcrcecqcucecnctC
    +created_utc: 1785872956
    +edited: false
    +body:
    +Do you have a link to the warning that was shared years ago?
    +
    +comment: p1prw9i
    +parent: t1_p1pgeq8
    +author: user_name_checks_out
    +created_utc: 1785872985
    +edited: false
    +body:
    +> So tell us the right term then
    +
    +Seed.  A passphrase, if one is used, is typically supplied by the user, not generated by the device.
    +
    +comment: p1ps07y
    +parent: t1_p1nnp56
    +author: SweetIsland
    +created_utc: 1785873014
    +edited: false
    +body:
    +I do think its very possible. Apparently the device does have an internal TRNG with effectively unlimited entropy, and was priorly verified to make use of that TRNG source during seed creation. Then something changed in the 2021 firmware build. Maybe a dev snuck it in and was able to avoid raising any red flags.
    +
    +comment: p1ps3cm
    +parent: t1_p1nmpmg
    +author: G-T-L-3
    +created_utc: 1785873036
    +edited: false
    +body:
    +Maybe he is waiting for it to pump back up like all degens but got spooked with all the talk about the AI bubble 
    +popping. He could be right.  
    +
    +comment: p1ps7jj
    +parent: t3_1vfagz9
    +author: caploves1019
    +created_utc: 1785873067
    +edited: false
    +body:
    +Those DUST transactions are users voluntarily throwing their SATs into the wallet address as a message board using op_returns...
    + Not stolen funds.
    +
    +comment: p1psk76
    +parent: t3_1vfagz9
    +author: YearHaunting1504
    +created_utc: 1785873159
    +edited: false
    +body:
    +Man these assholes are taking EVERYTHING. Like even a $1.28 from someone. Jesus.
    +
    +comment: p1pslh2
    +parent: t3_1vfagz9
    +author: WoodpeckerCapital167
    +created_utc: 1785873169
    +edited: false
    +body:
    +There are people who won’t know for years that they lost it all
    +
    +comment: p1psvns
    +parent: t1_p1nnp56
    +author: krankovi
    +created_utc: 1785873244
    +edited: false
    +body:
    +I would bet my life someone from Coldcard is behind this. The 'mistake' is just so lazy and idiotic
    +
    +comment: p1ptx3a
    +parent: t1_p1prsbb
    +author: Emergency-Warthog-56
    +created_utc: 1785873517
    +edited: false
    +body:
    +No. Sorry. I was seeing others post old conversations that was talking about it but I didn't save any of it. There were people saying their Coldcard was wiped. Some saying it wasn't secure. 
    +
    +comment: p1ptxd8
    +parent: t3_1vfagz9
    +author: Hungry-ThoughtsCurry
    +created_utc: 1785873519
    +edited: false
    +body:
    +This is going to be a tragic exploit. The media should spread the news so that it gets to a point that everyone is aware and can take the necessary steps. It's a double edged sword unfortunately.
    +
    +comment: p1pu646
    +parent: t1_p1pf9qd
    +author: Diet_Christ
    +created_utc: 1785873583
    +edited: false
    +body:
    +New black mirror season incoming
    +
    +comment: p1pu9tf
    +parent: t1_p1pf9qd
    +author: MotanulScotishFold
    +created_utc: 1785873610
    +edited: false
    +body:
    +This is why we need harsher punishments for those that steal from other people, even if is 'just' a few dollars. Law enforcements should take every small theft as a serious crime to give terror to those who might attempt doing so.
    +
    +comment: p1pubo4
    +parent: t1_p1pjsr4
    +author: Shiftlock0
    +created_utc: 1785873623
    +edited: false
    +body:
    +If I was unaware of the current situation and I got that email, I would assume it's a phishing scam.
    +
    +comment: p1pur2g
    +parent: t1_p1p6rxg
    +author: Skinny_Human
    +created_utc: 1785873735
    +edited: false
    +body:
    +No one is sure of anything dude so don’t listen to anyone who tells you otherwise!!
    +
    +comment: p1puu1u
    +parent: t1_p1nenad
    +author: blackrack
    +created_utc: 1785873757
    +edited: false
    +body:
    +Won't accomplish anything
    +
    +comment: p1puzx5
    +parent: t3_1vfagz9
    +author: TrustMeIAmNotNew
    +created_utc: 1785873801
    +edited: false
    +body:
    +It’s crazy that cold card isn’t stopping this! I know they probably can’t, but this really blows. Their company will be gone soon and I hope this doesn’t hinder bitcoin growth. 
    +
    +comment: p1pv72e
    +parent: t1_p1oiw4l
    +author: Stupyyy
    +created_utc: 1785873854
    +edited: false
    +body:
    +No wallet is safe, only safe thing is to have your funds on your own personal laptop with no prior connection to anything sketchy and no internet connection. That is your hard rock personal wallet.
    +
    +comment: p1pw1i1
    +parent: t1_p1pur2g
    +author: tpe91roc
    +created_utc: 1785874080
    +edited: false
    +body:
    +What’s your best advice? Not sure what to do
    +
    +comment: p1pw9rz
    +parent: t1_p1nz8zy
    +author: BrocoliAssassin
    +created_utc: 1785874140
    +edited: false
    +body:
    +True. Fiat is awesome cause the government gets to inflate every year and its going so bad that now were down to only 5 years to make your money worth 50% less.
    +
    +It works so great that we also need to use the military to further bankrupt us and kill millions of people overseas! Don’t forget all that destruction to the environment and wildlife!
    +
    +Man, I’m with you, fiat is the best! Just as long as those horrible things don’t happen to you and just those pesky poor brown people overseas or in other countries.
    +
    +comment: p1pwgik
    +parent: t3_1vfagz9
    +author: Charmed-paper345
    +created_utc: 1785874190
    +edited: false
    +body:
    +So are people “still doing everything right” and “did nothing wrong”?
    +
    +comment: p1pwvdh
    +parent: t1_p1oi9o1
    +author: drwebb
    +created_utc: 1785874300
    +edited: false
    +body:
    +I mean no ones knows, but I prefer to believe Satoshi is alive and just has the op sec on the level of the creator of BTC.
    +
    +comment: p1pxiyr
    +parent: t1_p1o4n3p
    +author: HoodRatThing
    +created_utc: 1785874473
    +edited: false
    +body:
    +Sigh, have you used Claude Code in any capacity within the last 2 years?
    +
    +Arguing that vibecoding leads to bad results and bad code isn’t an argument these tools are getting exponentially better every year.
    +
    +These LLMs, like Opus, write better code than 99% of junior developers. And in another few years will be nipping at the heels of senior developers.
    +
    +You just had one of the worst hacks happen where programming without an LLM assistant most likely would have caught this bug, or likely would’ve warned you about it. 
    +
    +comment: p1pxz35
    +parent: t1_p1nr840
    +author: ArgonWilde
    +created_utc: 1785874591
    +edited: false
    +body:
    +Make sure to check their code bases as they were in 2014, back when bitcoin first made waves at 1.1k. 
    +
    +comment: p1py1ab
    +parent: t1_p1pw1i1
    +author: Skinny_Human
    +created_utc: 1785874607
    +edited: false
    +body:
    +I had a cold card so I sent my BTC to one of the big exchanges and made it as secure as possible using 2FA with an authenticator and a long password etc
    +
    +I think it depends how much you have dude. If it’s a very small amount leave it where it is, if not, do what I did
    +
    +I think we’re at the point where self custody is becoming too complicated and too dangerous to be worth it anymore because of AI and hackers et cetera.
    +
    +comment: p1py2on
    +parent: t1_p1ovuti
    +author: Desperate_Bite_7538
    +created_utc: 1785874617
    +edited: false
    +body:
    +Damn, dude! Don't put ideas like this out here on the web where AI can see it! You might give them ideas! Lol
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  27. source content difference between and source content +220 -0

    The Reddit thread gained 16 new comments.

    seen · Captured here 94,392 chars
    What changed from the previous capture 220 lines
     body:
     There will no longer be a CoinKite after this event. 
     
    +comment: p1pkl7h
    +parent: t3_1vfagz9
    +author: Just_Bluebird_5268
    +created_utc: 1785871068
    +edited: false
    +body:
    +It's the future of money
    +
    +comment: p1pkmp4
    +parent: t1_p1op2i0
    +author: FlipFlopFanatic
    +created_utc: 1785871079
    +edited: false
    +body:
    +I did not hit her. I did not. Oh, hi Mark.
    +
    +comment: p1pmplu
    +parent: t1_p1nswm6
    +author: Fuck_wagon
    +created_utc: 1785871617
    +edited: false
    +body:
    +How?
    +
    +comment: p1pmtaj
    +parent: t1_p1nia36
    +author: UnitededConflict
    +created_utc: 1785871645
    +edited: false
    +body:
    +What even is this? A public access to your receiving address that people can send requests to?
    +
    +comment: p1pn0r0
    +parent: t1_p1nz8zy
    +author: KusanagiZerg
    +created_utc: 1785871699
    +edited: false
    +body:
    +Many more people have lost their money/life savings/etc cause of banks failing.
    +
    +comment: p1po07n
    +parent: t3_1vfagz9
    +author: uhooooook
    +created_utc: 1785871959
    +edited: false
    +body:
    +Remember when most folks on Reddit were just shitting on you for recommending anything else but Coldcard? Where are they now?
    +
    +comment: p1pohfl
    +parent: t3_1vfagz9
    +author: NOS4NANOL1FE
    +created_utc: 1785872085
    +edited: false
    +body:
    +Is it possible to even track who the person/group  is? 
    +
    +comment: p1pon92
    +parent: t1_p1o2v5x
    +author: KusanagiZerg
    +created_utc: 1785872128
    +edited: false
    +body:
    +Probably you cannot know. You would have to verify that all the code is correct, then you'd have to verify that that code is actually what was running on your device when you generated the seed.
    +
    +Even if you add a passphrase or dice rolls etc you have to verify that the code properly takes that all into account and generates a seed with that in mind. If you don't check for all you know it could ignore all those variables.
    +
    +In short there is some level of risk that you have to accept. Probably the best way to protect yourself is to split your stack among different vendors and generate new addresses occasionally and move the funds.
    +
    +comment: p1ppfq1
    +parent: t1_p1ndkdk
    +author: SkunkMonkey
    +created_utc: 1785872337
    +edited: false
    +body:
    +https://www.youtube.com/watch?v=BKHoMi-U8g4
    +
    +comment: p1ppl7i
    +parent: t1_p1pjrgq
    +author: Emergency-Warthog-56
    +created_utc: 1785872378
    +edited: false
    +body:
    +I think most weren't aware of that discussion. That story was kind of swept under the rug. Silenced. Forgotten about. Some probably didn't believe it was a issue. I myself didn't know about it until this happened and then started researching. 
    +
    +comment: p1ppnax
    +parent: t1_p1p9geb
    +author: BitCoiner905
    +created_utc: 1785872393
    +edited: false
    +body:
    +Go ahead and verify for yourself.   
    +  
    +\#!/usr/bin/env python3
    +
    +"""
    +
    +Run this OFFLINE on an air-gapped machine only.
    +
    +Do not run in any cloud notebook, browser, or shared environment.
    +
    +"""
    +
    +
    +
    +SECP256K1\_N = 0xFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFEBAAEDCE6AF48A03BBFD25E8CD0364141
    +
    +
    +
    +def rolls\_to\_private\_key(rolls):
    +
    +if len(rolls) != 99:
    +
    +raise ValueError(f"Need exactly 99 rolls, got {len(rolls)}")
    +
    +if any(r < 1 or r > 6 for r in rolls):
    +
    +raise ValueError("Each roll must be 1-6")
    +
    +
    +
    +\# Base-6 digits (0-5)
    +
    +digits = \[r - 1 for r in rolls\]
    +
    +
    +
    +value = 0
    +
    +for d in digits:
    +
    +value = value \* 6 + d
    +
    +
    +
    +if value == 0 or value >= SECP256K1\_N:
    +
    +raise ValueError("Out of valid range — re-roll all 99 dice, don't reuse any rolls")
    +
    +
    +
    +return value.to\_bytes(32, byteorder='big')
    +
    +
    +
    +if \_\_name\_\_ == "\_\_main\_\_":
    +
    +print("Enter your 99 dice rolls one at a time (1-6).")
    +
    +rolls = \[\]
    +
    +while len(rolls) < 99:
    +
    +try:
    +
    +r = int(input(f"Roll {len(rolls)+1}/99: "))
    +
    +if 1 <= r <= 6:
    +
    +rolls.append(r)
    +
    +else:
    +
    +print("Must be 1-6, try again.")
    +
    +except ValueError:
    +
    +print("Enter a number 1-6.")
    +
    +
    +
    +key\_bytes = rolls\_to\_private\_key(rolls)
    +
    +print("\\nPrivate key (hex):", key\_bytes.hex())
    +
    +print("\\n⚠️  Clear your terminal history / scrollback after use.")
    +
    +print("⚠️  Never save this output to a file that touches the internet.")
    +
    +comment: p1ppolh
    +parent: t3_1vfagz9
    +author: ComfortableGas5223
    +created_utc: 1785872402
    +edited: false
    +body:
    +You ever notice that right towards the end of a bear cycle, there’s a sudden attack or exchange collapse causing sudden FUD and price drop? Then major governments start buying at the bottom… Maybe all anecdotal but interesting timing nonetheless. 
    +
    +comment: p1pq8d6
    +parent: t3_1vfagz9
    +author: PI-E0423
    +created_utc: 1785872546
    +edited: false
    +body:
    +It will destroy trust in Bitcoin. No matter if waranted
    +
    +comment: p1pqs5s
    +parent: t1_p1o5tj4
    +author: Professional_Golf393
    +created_utc: 1785872689
    +edited: false
    +body:
    +You mean like a conspiracy for planned market manipulation?  Like an inside job? Perhaps to either drive people to choose etf or storing on exchanges over self custody. Although it hasn’t affected price that much as of yet.
    +
    +I mean I guess it would be plausible, they were a small enough company to influence if you’re a big player in the space. 1 rogue developer planted in the company probably would’ve been enough.
    +
    +comment: p1pr72a
    +parent: t1_p1ndkdk
    +author: caploves1019
    +created_utc: 1785872799
    +edited: false
    +body:
    +No, these are op_return messages, not stolen funds. These last 24 hours of activity all have comments in the transactions and are small because they're just burning SATs to send the message. There aren't any new active thefts happening on that address.
    +
    +comment: p1prfj2
    +parent: t1_p1orctk
    +author: Parking-Knowledge-63
    +created_utc: 1785872861
    +edited: false
    +body:
    +Maybe some ex dev that worked on this project early on intentionally left this and is now draining it all 🤷‍♀️
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  28. source content difference between and source content +172 -0

    The Reddit thread gained 19 new comments.

    seen · Captured here 88,964 chars
    What changed from the previous capture 172 lines
     body:
     Is it just 1 dude or are there multiple hackers going around?
     
    +comment: p1pejxw
    +parent: t3_1vfagz9
    +author: Kinimodes
    +created_utc: 1785869521
    +edited: false
    +body:
    +Whoever this is, I despise them, and I wish the worst upon them.
    +
    +comment: p1pew8o
    +parent: t3_1vfagz9
    +author: satoshisfeverdream
    +created_utc: 1785869607
    +edited: false
    +body:
    +Interesting intentional choice to send all the btc to one consolidating address.   Seems like one of those it’s not about the money it’s about sending a message type of moves.   
    +
    +comment: p1pf9qd
    +parent: t1_p1oewht
    +author: ivanjurman
    +created_utc: 1785869700
    +edited: false
    +body:
    +Yeah, immagine the owner getting cancer thinking he has plenty of bitcoin to cover his $300k medical bill juct to discover the wallet is empty
    +
    +Or heirs killing each other over the 3 BTC they inherited because they didn’t want to split, just to find out there is no BTC to inherit
    +
    +comment: p1pga8t
    +parent: t3_1vfagz9
    +author: alpeterpeter
    +created_utc: 1785869957
    +edited: false
    +body:
    +If you can't defeat them, join them
    +
    +comment: p1pgeq8
    +parent: t1_p1ormjg
    +author: Consider8SpeedDemon
    +created_utc: 1785869989
    +edited: false
    +body:
    +So tell us the right term then
    +
    +comment: p1pgln9
    +parent: t1_p1pga8t
    +author: alpeterpeter
    +created_utc: 1785870040
    +edited: false
    +body:
    +Seriously tho, ColdCard should at least figure the same process and move all the compromised funds to the safe wallets, returning them to owners later. Clearly a lot of holders are unaware of the issue.
    +
    +comment: p1pgovm
    +parent: t3_1vfagz9
    +author: SeaMisx
    +created_utc: 1785870063
    +edited: false
    +body:
    +Coinkite will go down for this, they will be sued to hell and will have to pay back the loses, their insurance will have to do it there is just no other choices, there is no need to be Clarence Darrow to know that.
    +
    +If they can't pay or if their insurance won't pay they will go to jail for like more than 500 years combined. 
    +
    +And not just the CEO but every dev that knew that fault as it was already know in 2021, that is insane.
    +
    +comment: p1pgqoc
    +parent: t1_p1ow6uv
    +author: Consider8SpeedDemon
    +created_utc: 1785870076
    +edited: false
    +body:
    +Filing claims with the bank is not the same as FDIC insurance
    +
    +comment: p1ph7nk
    +parent: t3_1vfagz9
    +author: GiveMeSomeOfThatWow
    +created_utc: 1785870198
    +edited: false
    +body:
    +Lol
    +
    +comment: p1phvnn
    +parent: t1_p1p8bmv
    +author: ConfectionEasy5166
    +created_utc: 1785870370
    +edited: false
    +body:
    +No, it doesn't.
    +
    +You can't make claims that it is important who first had a private key.
    +
    +The bottom line is that if I have private keys, the content is mine. That's how bitcoin works.
    +
    +comment: p1pi3sb
    +parent: t3_1vfagz9
    +author: comradePink1917
    +created_utc: 1785870428
    +edited: false
    +body:
    +it’s so frustrating that a bunch of ppl probably have it in a safe somewhere and are not paying attention… class action suit coming for sure
    +
    +comment: p1pih64
    +parent: t1_p1nh8ub
    +author: Rey_Mezcalero
    +created_utc: 1785870524
    +edited: false
    +body:
    +Yep…tragic with coldcard. Was to be a set it and forget about it. 
    +
    +Then this happened. 
    +
    +More of this to happen more frequently. Easy money for bad guys and rouge states to start full scale find exploits and empty out crypto accounts 
    +
    +comment: p1pj0e3
    +parent: t1_p1o12ig
    +author: DifficultSquash1517
    +created_utc: 1785870661
    +edited: false
    +body:
    +And by the way reciprocity is very much in play here. The United States would never extradite me to the UAE or Russia or Germany simply because they won't hand over their citizens 🤷
    +
    +comment: p1pjgh2
    +parent: t1_p1o55n0
    +author: DifficultSquash1517
    +created_utc: 1785870776
    +edited: false
    +body:
    +I used to live there and I remember it being standard that they would never extradite a citizen and then I saw there was a few high profile cases of child molesters that were returned that had dual citizenships 
    +
    +But it looks like the damn has broken and they're now expanding the types of crimes that they will extradite 
    +
    +That's the perfect example because the United States has so much influence over Costa Rica 
    +
    +"The land of the wanted and The unwanted" 
    +
    +comment: p1pjrgq
    +parent: t1_p1okwmr
    +author: dr_tdm1
    +created_utc: 1785870855
    +edited: false
    +body:
    +I'm sorry but why the community was still recommending coldcard up until a week ago if this was a known issue,, some were even recommending it over trezor and ledger
    +
    +comment: p1pjsr4
    +parent: t1_p1oewht
    +author: classified_x
    +created_utc: 1785870864
    +edited: false
    +body:
    +I'm pretty sure Coin Kite or whatever the ColdCard Coldcase wallet company is called could just send an e-mail to all clients telling about the security incident but they probably didn't do that?
    +
    +comment: p1pjw70
    +parent: t1_p1ndagh
    +author: classified_x
    +created_utc: 1785870888
    +edited: false
    +body:
    +did they even email the clients? security incident
    +
    +comment: p1pjxyz
    +parent: t3_1vfagz9
    +author: loakie_1
    +created_utc: 1785870901
    +edited: false
    +body:
    +moron using the same addresses
    +
    +comment: p1pkbfu
    +parent: t3_1vfagz9
    +author: ColdSteelVA
    +created_utc: 1785870997
    +edited: false
    +body:
    +There will no longer be a CoinKite after this event. 
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  29. source content difference between and source content +134 -6

    The Reddit thread changed through new comments, removals, or edits.

    seen · Captured here 83,999 chars
    What changed from the previous capture 140 lines
     parent: t1_p1ndrmt
     author: TakingChances01
     created_utc: 1785853335
    -edited: 1785867433
    -body:
    -It’s either a very greedy individual or a large hacking group, possibly state sanctioned. Why would an individual need to keep going after the first, say 50 million, they’re just putting a bigger magnifying glass on themselves and making it harder to get away with. Matter of fact, if it was an individual that was concerned with possible consequences, they could just steal all the big wallets one at a time every few weeks. People wouldn’t question a single wallet drain every now and then so much, most would assume it was user error on the owners part and move on. It only became evident to be a full fledged attack on cold cards when hundreds of wallets started getting drained all together and all the funds sent to the same wallet. Leads me to believe that the people doing it are in a position where repercussions aren’t a concern.
    +edited: 1785867490
    +body:
    +It’s either a very greedy individual or a large hacking group, possibly state sponsored. Why would an individual need to keep going after the first, say 50 million, they’re just putting a bigger magnifying glass on themselves and making it harder to get away with. Matter of fact, if it was an individual that was concerned with possible consequences, they could just steal all the big wallets one at a time every few weeks. People wouldn’t question a single wallet drain every now and then so much, most would assume it was user error on the owners part and move on. It only became evident to be a full fledged attack on cold cards when hundreds of wallets started getting drained all together and all the funds sent to the same wallet. Leads me to believe that the people doing it are in a position where repercussions aren’t a concern.
     
     comment: p1nmpmg
     parent: t1_p1nh8ub
     parent: t1_p1nniny
     author: Mihaw_kx
     created_utc: 1785866196
    -edited: false
    -body:
    -It's not just AI but Open weight models ... Because there was no Kimi k3 open weights back then .. it was dropped late july and the hackers group were able to install it into some local GPU clusters .. even if AI was advanced back then no hacker would want the top AI companies (anthropic , openai .. ) to read his logs while cooking this 
    +edited: 1785867855
    +body:
    +It's not just AI but Open weight models ... Because there was no Kimi k3 open weights back then .. it was dropped 27 july and the hackers group were able to install it  into some local GPU clusters  and then the first attack took place in 31 July you think this is just coincidence  ? .. even if AI was advanced back then no hacker would want the top AI companies (anthropic , openai .. ) to read his logs while he crafting the exploit and creating malware to do this
     
     comment: p1p1fzq
     parent: t1_p1ns7lg
     body:
     This will definitely be a late night special on NBC 
     
    +comment: p1p6rxg
    +parent: t1_p1nj41h
    +author: tpe91roc
    +created_utc: 1785867574
    +edited: false
    +body:
    +Are we sure Trezor for example will not be affected in any way?
    +
    +comment: p1p73cj
    +parent: t1_p1njkgy
    +author: PacoStanleys
    +created_utc: 1785867654
    +edited: false
    +body:
    +It's probably an AI-assisted execution prompt. With Kimi K3's open-weight release in late July, that was honestly my first thought.
    +
    +AI won't care if it's 1 cent and it cost them $0.40 to liquidate
    +
    +comment: p1p74zl
    +parent: t1_p1p2mnt
    +author: magicmulder
    +created_utc: 1785867665
    +edited: false
    +body:
    +And they didn't even cash out a little? Oh well...
    +
    +comment: p1p7o6d
    +parent: t1_p1ox5xs
    +author: DrApricot
    +created_utc: 1785867798
    +edited: false
    +body:
    +I asked Gemini to calculate the cost, both tangible and reputational for the top five PR disasters in history, and the number came to almost $280 billion. This included such things as the BP Deepwater Horizon debacle, Boeing‘s 737 MAX grounding, and Volkswagon’s Dieselgate crisis. These PR disasters get quite expensive, and it would certainly be worth a couple of hundred $millions to avoid a multi-$billion loss. What if the public were to conclude that bitcoin is not safe, and could never be safe. How would this affect people who are betting on the future of Bitcoin?
    +
    +comment: p1p7qne
    +parent: t3_1vfagz9
    +author: Zealousideal-War6372
    +created_utc: 1785867815
    +edited: false
    +body:
    +They are going after the people that read the words, made a decision for a goofy bitcoin only wallet focused on security,  and got like 12 bits instead of 256.     I’m homeless and unemployed and I need to raise money to eat.     Almost Sport is hosting my collection because like many,  I prepared,  I practiced,  I did it right and still can’t win.    That preparation and testing the backups and going air gap etc makes HODLing an almost sport,  and sometimes we lose a game.   Can we save the season ?   This hits the HODL community,  these are diamond hand wallets and they probably don’t even know it’s ongoing and they are at risk yet.      
    +   
    +I’m using my unopened backup cold card, and included stickers as inspiration for a new line of parody merchandise that will hopefully help get the word out on the street so normal people see us and ask their bitcoin friend if they have heard about it.    How did the company that tried to do one thing well screw up and not use the hardware they were so proud of ?   https://shop.almostsport.org/collections/not-your-keys   
    +   
    +How did it all go so wrong for so long ?   Did precisely nobody look at the code as part of the QC,  no automated tests or manual testing ?    Just advertising and good vibes with GPT 3 making it fast and easy ?     I hope they post a few more times before their lawyers tell them to stop paying for a website when every penny needs to go to funding the defense team, and an exit strategy.   
    +
    +comment: p1p85pi
    +parent: t1_p1ozb1w
    +author: brandond111
    +created_utc: 1785867919
    +edited: false
    +body:
    +Honestly at this point.. maybe even start it over
    +
    +comment: p1p8bmv
    +parent: t1_p1oq572
    +author: pissingdick
    +created_utc: 1785867961
    +edited: false
    +body:
    +How is that not true?
    +
    +All these wallets being moved to a single wallet pretty much indicates who was first.
    +
    +comment: p1p8ml7
    +parent: t3_1vfagz9
    +author: Tarlius72
    +created_utc: 1785868037
    +edited: false
    +body:
    +This is why you just let a brokerage hold them. “Not your keys not your coins” womp womp. Ts doesn’t happen to people who aren’t so obscure about ownership.
    +
    +comment: p1p8w9o
    +parent: t1_p1oy4kt
    +author: BitCoiner905
    +created_utc: 1785868104
    +edited: false
    +body:
    +Basically. 
    +
    +comment: p1p93n2
    +parent: t1_p1nmpmg
    +author: beatthebook2x
    +created_utc: 1785868154
    +edited: false
    +body:
    +this would be the time to execute final piece of the honeypot not when price is up and people are taking profits. but when price is cheap and everyone is hodling and they get an amazing entry its like a double dip
    +
    +comment: p1p9geb
    +parent: t1_p1p8w9o
    +author: Javanaut018
    +created_utc: 1785868243
    +edited: false
    +body:
    +Seems as you sent your coins into nirvana, if you did not mean "rolled a seed" ...
    +
    +comment: p1p9t35
    +parent: t1_p1p4z07
    +author: TFWG2000
    +created_utc: 1785868330
    +edited: false
    +body:
    +Yeah, I get it.  But we are talking about millions of $ being stolen right before our eyes.  It is hard to watch.
    +
    +comment: p1pb2ja
    +parent: t3_1vfagz9
    +author: jupongatana69
    +created_utc: 1785868646
    +edited: false
    +body:
    +All that and still at 64k? 
    +
    +comment: p1pbfyp
    +parent: t1_p1nh8ub
    +author: grraarr
    +created_utc: 1785868739
    +edited: false
    +body:
    +Many of them may just be dead, frankly.
    +
    +comment: p1pch98
    +parent: t3_1vfagz9
    +author: M4NOOB
    +created_utc: 1785869000
    +edited: false
    +body:
    +Is it just 1 dude or are there multiple hackers going around?
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  30. source content difference between and source content +232 -3

    The Reddit thread gained 27 new comments.

    seen · Captured here 79,125 chars
    What changed from the previous capture 235 lines
     parent: t1_p1ndrmt
     author: TakingChances01
     created_utc: 1785853335
    -edited: false
    -body:
    -It’s either a very greedy individual or a large hacking group, possibly state sanctioned. Why would an individual need to keep going after the first, say 50 million, they’re just putting a bigger magnifying glass on themselves and making it harder to get away with. Matter of fact, if it was an individual that was concerned with possible consequences, they could just steal all the big wallets one at a time every few weeks. People wouldn’t question a single wallet drain every now and then so much, most would assume it was user error on the owners part and move on. It only became evident to be a full fledged attack on cold cards when hundreds of wallets started getting drained all together. Leads me to believe that the people doing it are in a position where repercussions aren’t a concern.
    +edited: 1785867433
    +body:
    +It’s either a very greedy individual or a large hacking group, possibly state sanctioned. Why would an individual need to keep going after the first, say 50 million, they’re just putting a bigger magnifying glass on themselves and making it harder to get away with. Matter of fact, if it was an individual that was concerned with possible consequences, they could just steal all the big wallets one at a time every few weeks. People wouldn’t question a single wallet drain every now and then so much, most would assume it was user error on the owners part and move on. It only became evident to be a full fledged attack on cold cards when hundreds of wallets started getting drained all together and all the funds sent to the same wallet. Leads me to believe that the people doing it are in a position where repercussions aren’t a concern.
     
     comment: p1nmpmg
     parent: t1_p1nh8ub
     body:
     Guess why not...
     
    +comment: p1oz5w4
    +parent: t3_1vfagz9
    +author: Ok_oisljhs_4151
    +created_utc: 1785865695
    +edited: false
    +body:
    +How is this a scam? If you didn't generate a good seed, it's on you. Sure coldcard/coinkyte is shitty for their bad product, but I don't see a scam. Not your keys, not your coin works here too. This is not far removed from sharing your private key online. 
    +
    +comment: p1ozash
    +parent: t1_p1nmpmg
    +author: Ill-Car-700
    +created_utc: 1785865728
    +edited: false
    +body:
    +If people knew $127k was the top, everyone would have sold lol
    +
    +comment: p1ozb1w
    +parent: t1_p1nflwp
    +author: Javanaut018
    +created_utc: 1785865729
    +edited: false
    +body:
    +Why not rollback the block chain?
    +
    +comment: p1ozevd
    +parent: t1_p1ngxdj
    +author: Javanaut018
    +created_utc: 1785865755
    +edited: false
    +body:
    +🤣
    +
    +Maybe fowly orange could issue a decree?
    +
    +comment: p1ozmgf
    +parent: t1_p1ovuti
    +author: noncommonGoodsense
    +created_utc: 1785865807
    +edited: false
    +body:
    +Haha. 😅
    +
    +comment: p1ozw0f
    +parent: t1_p1o9vzd
    +author: Javanaut018
    +created_utc: 1785865873
    +edited: false
    +body:
    +Good idea
    +
    +comment: p1p0fsb
    +parent: t3_1vfagz9
    +author: Illustrious_Nothing9
    +created_utc: 1785866006
    +edited: false
    +body:
    +I feel much better leaving mine on an exchange and not falling for 'not your keys, not your bitcoin' BS. First Ledger and now this Coldcar that looks like a freaking calculator from 60s, no thank you. 
    +
    +comment: p1p0ix2
    +parent: t1_p1ndnel
    +author: Javanaut018
    +created_utc: 1785866028
    +edited: false
    +body:
    +White hats would have taken 1 Satoshi per wallet and then moved back the transaction fees from their own funds.
    +
    +comment: p1p0yiv
    +parent: t1_p1o12ig
    +author: yxcv42
    +created_utc: 1785866134
    +edited: false
    +body:
    +Look up the case of Jan Marsalek....you just need the right friend than Russia will give you an identity and hide you as long as it is in their favor.
    +
    +comment: p1p14cy
    +parent: t3_1vfagz9
    +author: Basic_Zebra7829
    +created_utc: 1785866174
    +edited: false
    +body:
    +Bitcoin is so safe guys. 
    +
    +/s
    +
    +comment: p1p17ka
    +parent: t1_p1nniny
    +author: Mihaw_kx
    +created_utc: 1785866196
    +edited: false
    +body:
    +It's not just AI but Open weight models ... Because there was no Kimi k3 open weights back then .. it was dropped late july and the hackers group were able to install it into some local GPU clusters .. even if AI was advanced back then no hacker would want the top AI companies (anthropic , openai .. ) to read his logs while cooking this 
    +
    +comment: p1p1fzq
    +parent: t1_p1ns7lg
    +author: marshyr3d1and
    +created_utc: 1785866254
    +edited: false
    +body:
    +Here we go - it's the beginning of the end.
    +Others will build on posts like this and pretty soon the internet will explode with conspiracy theories 🙄
    +
    +comment: p1p1gqb
    +parent: t1_p1nijcp
    +author: SpikeyOps
    +created_utc: 1785866259
    +edited: false
    +body:
    +It could be hundreds of hackers at this point.
    +
    +Hunting season is open on the Coldcard
    +
    +comment: p1p1hng
    +parent: t3_1vfagz9
    +author: riversandpeaks
    +created_utc: 1785866265
    +edited: false
    +body:
    +Ai gonna be living on all the islands with all of the hookers, driving all the lambos by 2032
    +
    +comment: p1p1r43
    +parent: t1_p1oh32w
    +author: marshyr3d1and
    +created_utc: 1785866330
    +edited: false
    +body:
    +Yep, for sure that's what's going on. Can't believe you've been so insightful and realised this so early on.
    +
    +comment: p1p2mnt
    +parent: t1_p1owzlh
    +author: stoicparallax
    +created_utc: 1785866548
    +edited: false
    +body:
    +The high price in 2014 was $680. That means that their $4500 investment that grew into 400k.
    +
    +I think it’s much less likely that they saved 400k in cash over 12y, and then bought in at recent prices
    +
    +comment: p1p2py6
    +parent: t1_p1nijcp
    +author: TFWG2000
    +created_utc: 1785866572
    +edited: false
    +body:
    +It is insane this hack continues.  Where is the law?
    +
    +comment: p1p31y2
    +parent: t1_p1njkgy
    +author: thatdarkknight
    +created_utc: 1785866656
    +edited: false
    +body:
    +Not my life savings 😭
    +
    +comment: p1p3459
    +parent: t1_p1ncn6j
    +author: ClassicFun2175
    +created_utc: 1785866671
    +edited: false
    +body:
    +After what's happened with cold, other companies should be tripling down on security. This was a huge wake up call, and typically when these things happen, it's extremely shitty for the innocent people involved, but it gives a major kick up the ass to the industry as a whole to get there shit together. You can guarantee all the other hardware wallet companies will be monitoring there security like hawks and behind the scenes making sure they are secure. Which is a good thing at least for those of us using these other companies.
    +
    +comment: p1p3evr
    +parent: t3_1vfagz9
    +author: dynamite384
    +created_utc: 1785866745
    +edited: false
    +body:
    +im a newbie, but is there no way this can be stopped to prevent progression?
    +
    +comment: p1p3x0c
    +parent: t1_p1oiw4l
    +author: EarningsPal
    +created_utc: 1785866869
    +edited: false
    +body:
    +Use this moment as motivation to move your major holdings to SEED + Passphrase. 
    +
    +Add a passphrase, long enough for real protection if someone has your seed, and move your assets. 
    +
    +comment: p1p4pim
    +parent: t3_1vfagz9
    +author: Moonrunner04
    +created_utc: 1785867065
    +edited: false
    +body:
    +The company real-random who offers entropy as a service using a chaos theory of dice and water would have solved this problem instantly 
    +
    +comment: p1p4z07
    +parent: t1_p1p2py6
    +author: EarningsPal
    +created_utc: 1785867130
    +edited: false
    +body:
    +Law is here. Now what? Stop the attack Law. Ok, how? You’re the Law. Stop it. 
    +
    +comment: p1p5ez4
    +parent: t3_1vfagz9
    +author: Vancecookcobain
    +created_utc: 1785867240
    +edited: false
    +body:
    +Gaddamn....they are still people who are unaware of this and haven't moved their money??? 
    +
    +I mean I felt for the folks that got hacked like the first 2-3 days but damn
    +
    +comment: p1p5if9
    +parent: t1_p1nmpmg
    +author: jcagraham
    +created_utc: 1785867264
    +edited: false
    +body:
    +Another idea is that people are less likely to monitor their investments in a bear market. When things are great, it's fun to check how much you're making. When things are bad, most people will check a lot less to save their mental health. So the perfect time to catch people unaware.
    +
    +comment: p1p5ki4
    +parent: t1_p1nmpmg
    +author: monxas
    +created_utc: 1785867278
    +edited: false
    +body:
    +Why didn’t you sell at 127k and bought again when it hit the bottom? 
    +
    +comment: p1p5mq8
    +parent: t3_1vfagz9
    +author: That_Ad9363
    +created_utc: 1785867293
    +edited: false
    +body:
    +This will definitely be a late night special on NBC 
    +
     more-stub: parent t1_p1o590j count 0
    
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

  31. Earliest copy held
    seen · Captured here 72,773 chars
    Extracted text as captured
    post: 1vfagz9
    author: pairoxR
    created_utc: 1785850318
    title: The Coldcard hacker is still progressing stolen BTC keeps increasing
    body:
    The Coldcard hacker is still making progress, and the amount of stolen Bitcoin keeps increasing.
    
    So if any of you are using this wallet, please consider moving your funds as soon as possible. And if you know someone who uses Coldcard for long-term holding, especially someone who isn’t online every day and doesn’t follow the latest news, maybe you can still help them move their funds in time. 🙏
    
    I just hope no other wallet is involved in this.
    
    Stay safe and stay alert. ⚠️
    
    comment: p1ncn6j
    parent: t3_1vfagz9
    author: heggen
    created_utc: 1785850620
    edited: false
    body:
    How big is the chance that the other hardware wallets created a seed in the entropie area of the cold wallet ?
    
    comment: p1nd57q
    parent: t1_p1ncn6j
    author: ArugulaPretty
    created_utc: 1785850762
    edited: false
    body:
    Too small. A lot of wallets have github. You can try AI and ask him to check how good or bad generation method was used. 
    
    comment: p1ndagh
    parent: t3_1vfagz9
    author: xiskghferx
    created_utc: 1785850803
    edited: false
    body:
    Even though I use a Ledger and a random passphrase, my stomach turns watching these transactions...
    
    Idea – why didn't Coinkite on their own immediately start brute-forcing the seeds right after the first attack, since they have the most information about their PRNG? If they had overrun the attackers, they could have gradually returned the BTC to the owners.
    
    comment: p1ndkdk

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

How to check this yourself

The excerpts and plain unified diffs above show the text this project held and how it changed. To verify a quotation, compare it against the page itself or against the Internet Archive's copies, which are independent of this project.

Complete captures are held offline rather than mirrored here, so this page shows diffs and excerpts. If a quotation is ever disputed, the full copy can be produced. Ask.