r/coldcard: whether a dice-rolled reseed on updated firmware is safe
reddit-safe-after-reseed
https://www.reddit.com/r/coldcard/comments/1vc9la8/are_we_safe_after_updating_firmware_and/
Latest reviewed change
source content difference between and
The thread gained a comment suggesting a repurposed COLDCARD could be used as a seed generator or password manager instead of being discarded.
edited: false
body:
Anything is better now!
+
+comment: p2auvib
+parent: t3_1vc9la8
+author: Intelligent_Map_246
+created_utc: 1786122634
First lines only. The complete diff is in the timeline below.
- Organisation
- Evidence role
- Community discussion
- Published
- not established
- Source changes
- 2
- Detected differences
- 2
- Unreviewed
- 0
- Copies held
- 3
Every check is recorded, including checks that found no text change. A detected edit is therefore bounded between two checks. The publisher's exact save time is not observable from this record. Last checked .
This post is held twice: here, with this project's own note on why it matters, and again as part of the conversation captured at , which is polled for changes. Both copies are the same post; neither is a separate event.
Snapshot and diff bodies for this chain monitor are held in the local evidence archive but withheld from the public site because they can contain the addresses of people who published nothing themselves. Capture times and reviewed change summaries remain available below.
Held captures
-
The thread gained a comment suggesting a repurposed COLDCARD could be used as a seed generator or password manager instead of being discarded.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 8 lines
edited: false body: Anything is better now! + +comment: p2auvib +parent: t3_1vc9la8 +author: Intelligent_Map_246 +created_utc: 1786122634 +edited: false +body: +Why throw it when you can use it as a seed generator or PW managerExtracted text as captured
post: 1vc9la8 author: insubordinate_kralc created_utc: 1785547739 title: Are we safe after updating firmware and generating a new seed with dice rolls? How do we even know? body: Explain it to me like I’m 15… comment: p0zptxd parent: t3_1vc9la8 author: zootreddit created_utc: 1785548642 edited: false body: It was such a basic fix new seed on new firmware with added dice rolls will get you a strong private key. If you want to verify find another offline seed generator. Roll your dices, write them down, generate seed. Then run them through updated coldcard using the dice roll import method and make sure you get same wallet/result. Once confirmed create a new wallet with another round of dice rolls. comment: p0zxg3g parent: t3_1vc9la8 author: Either_Display_6624 created_utc: 1785551426 edited: false body: Throw coldcard in garbage bro Buy another device ... comment: p0zz9nt parent: t1_p0zxg3g author: ironmoosen created_utc: 1785552100 edited: false body: I understand the sentiment and I’m sure I won’t be buying any more coldcards, but there’s nothing wrong with using it to sign transactions so I’m not throwing mine away. comment: p0zzqui parent: t1_p0zz9nt author: Either_Display_6624 created_utc: 1785552277 edited: falseExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
7 new Reddit comments were posted, including Solid_Wolverine1639.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 64 lines
A) if signed tx exported by coldcard is leaking something private B) if the coldcard gets in the wrong hand and some way to exploit is found to access your seed + passphrase + +comment: p1no81j +parent: t1_p10q59k +author: Solid_Wolverine1639 +created_utc: 1785853786 +edited: false +body: +Why are you suggesting coinkite can survive in any capacity? + +comment: p1nocbm +parent: t1_p15ll2d +author: Solid_Wolverine1639 +created_utc: 1785853818 +edited: false +body: +Why would you even suggest they could survive? I wouldn't give them 1 oz of possibility + +comment: p1noj02 +parent: t1_p18o9ey +author: Solid_Wolverine1639 +created_utc: 1785853868 +edited: false +body: +In other words trash it and don't trust it + +comment: p1nolde +parent: t1_p15xqru +author: Solid_Wolverine1639 +created_utc: 1785853885 +edited: false +body: +It's amazing enough of the people making comments need to hear this + +comment: p1np5j6 +parent: t1_p0zz9nt +author: Solid_Wolverine1639 +created_utc: 1785854035 +edited: false +body: +And what other possible attack vectors are there beyond the the random generator not being so random? + +Whether you know or not asking that question should be more than enough to give you the answer based on what just happened days ago... + +The devices themselves can be compromised... Beyond the generator... In fact this hack might have started with backup plans for the stubborn people that want to keep their cold card Bitcoin... Even with changes, like new seed... + +Some back door? + +comment: p1npdko +parent: t1_p0zzqui +author: Solid_Wolverine1639 +created_utc: 1785854094 +edited: false +body: +Amazing that you could have a negative count on your comment... + +Cold card maxis have been revealed! + +comment: p1npl8o +parent: t1_p14257u +author: Solid_Wolverine1639 +created_utc: 1785854151 +edited: false +body: +Anything is better now!Extracted text as captured
post: 1vc9la8 author: insubordinate_kralc created_utc: 1785547739 title: Are we safe after updating firmware and generating a new seed with dice rolls? How do we even know? body: Explain it to me like I’m 15… comment: p0zptxd parent: t3_1vc9la8 author: zootreddit created_utc: 1785548642 edited: false body: It was such a basic fix new seed on new firmware with added dice rolls will get you a strong private key. If you want to verify find another offline seed generator. Roll your dices, write them down, generate seed. Then run them through updated coldcard using the dice roll import method and make sure you get same wallet/result. Once confirmed create a new wallet with another round of dice rolls. comment: p0zxg3g parent: t3_1vc9la8 author: Either_Display_6624 created_utc: 1785551426 edited: false body: Throw coldcard in garbage bro Buy another device ... comment: p0zz9nt parent: t1_p0zxg3g author: ironmoosen created_utc: 1785552100 edited: false body: I understand the sentiment and I’m sure I won’t be buying any more coldcards, but there’s nothing wrong with using it to sign transactions so I’m not throwing mine away. comment: p0zzqui parent: t1_p0zz9nt author: Either_Display_6624 created_utc: 1785552277 edited: falseExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 0 lines
Extracted text as captured
post: 1vc9la8 author: insubordinate_kralc created_utc: 1785547739 title: Are we safe after updating firmware and generating a new seed with dice rolls? How do we even know? body: Explain it to me like I’m 15… comment: p0zptxd parent: t3_1vc9la8 author: zootreddit created_utc: 1785548642 edited: false body: It was such a basic fix new seed on new firmware with added dice rolls will get you a strong private key. If you want to verify find another offline seed generator. Roll your dices, write them down, generate seed. Then run them through updated coldcard using the dice roll import method and make sure you get same wallet/result. Once confirmed create a new wallet with another round of dice rolls. comment: p0zxg3g parent: t3_1vc9la8 author: Either_Display_6624 created_utc: 1785551426 edited: false body: Throw coldcard in garbage bro Buy another device ... comment: p0zz9nt parent: t1_p0zxg3g author: ironmoosen created_utc: 1785552100 edited: false body: I understand the sentiment and I’m sure I won’t be buying any more coldcards, but there’s nothing wrong with using it to sign transactions so I’m not throwing mine away. comment: p0zzqui parent: t1_p0zz9nt author: Either_Display_6624 created_utc: 1785552277 edited: falseExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
0 presentation-noise differences. Sidebar, ticker and other page chrome churn that our review classified as not being changes to what the source says.
The excerpts and plain unified diffs above show the text this project held and how it changed. To verify a quotation, compare it against the page itself or against the Internet Archive's copies, which are independent of this project.
Complete captures are held offline rather than mirrored here, so this page shows diffs and excerpts. If a quotation is ever disputed, the full copy can be produced. Ask.
Compare the screenshot or a quotation against the original while it is available.