PeckShield Flags Coinkite COLDCARD Firmware Bug Tied to $38M Bitcoin Theft

AI Market Summary
Coinkite disclosed a critical entropy-generation flaw in COLDCARD firmware for Mk2/Mk3 devices, potentially weakening mnemonic seeds and enabling compromise of self-custodied funds. The issue has been linked to an estimated $38M BTC theft, increasing near-term security concerns and operational risk around hardware-wallet supply chains. While the fix is available, users may need to rotate seeds and migrate assets, potentially driving short-term caution and heightened scrutiny of custody practices.
Impact level
● Medium
Affected assets
BTC/USDT-2.78%
AI Insight · BTC/USDTAI Insight
▼ Bearish
Trade now
⚠️ AI-generated insights are based on news content and are provided for informational purposes only. They do not constitute investment advice or represent the views of BingX. Investing involves risk. Please trade responsibly.
ME News reported that on July 31 (UTC+8), PeckShield Alert said hardware wallet maker Coinkite disclosed a critical flaw in entropy generation within the COLDCARD cold wallet firmware. The issue affects Mk2 and Mk3 devices and could reduce the strength of mnemonic seeds created using the compromised firmware. The vulnerability has been linked to a Bitcoin theft valued at about $38 million. Coinkite advised users who generated seeds on the affected firmware to upgrade to the patched release as soon as possible, create new seeds, and migrate their assets. (Source: PANews)