Nearly 1,400 Bitcoin Hacked from Coldcard Wallets

In the middle of the night on July 30, $70.2 million worth of Bitcoin were stolen from addresses created by hardware wallet manufacturer Coinkite's Coincard products. A firmware bug weakened the recovery phrases generated by several generations of their devices, allowing an attacker to reconstruct their users' private keys without physical access to the devices.


This is a companion discussion topic for the original entry at https://www.privacyguides.org/news/2026/08/03/nearly-1400-bitcoin-hacked-from-coldcard-wallets/
2 Likes

Wild. This has me pretty shook.

1 Like

How do they find addresses using this wallet?

Monero would prevent this attack because of stealth addresses and ringct?

They don’t need to. They just calculate all private keys derived from the ~40 bits search space of all Mk3 Coldcards and sweep any that have funds. ~40 bits is only ~1 trillion combinations, so it’s trivial to just check all possibilities relatively quickly once you know how to calculate them.

No.

5 Likes

They don’t find it. The random number generator for the private key was rubbish and had only 40 bits of entropy so attackers brute forced private keys until they got hits with BTC in them. I highly recommend antimoonboy’s coverage on it. Here it is timestamped.

1 Like