A recent breach has targeted Coldcard, a bitcoin-only hardware wallet used by many in the cryptocurrency community. Hackers managed to siphon off over $100 million worth of bitcoin from Coldcard hard wallets, as per Galaxy Research, a blockchain intelligence firm. The breach has impacted numerous users, raising concerns about the security of their digital assets.
Coldcard, developed by Coinkite based in Toronto, is a unique hardware wallet that doesn’t store bitcoins directly. Instead, it enhances security by keeping “seed phrases” offline within the physical device, ensuring that they are never exposed to the internet. These seed phrases are complex sequences of words acting as master keys for the bitcoin-only wallet, enabling users to authorize transactions securely.
The wallet is popularly known as “cold storage” among long-term bitcoin holders seeking to safeguard their keys offline. It has received accolades from users and security experts for its robust security features.
Coinkite recently alerted users to a software bug that allowed hackers to reconstruct wallet seed phrases, leading to unauthorized access to users’ bitcoin wallets. This vulnerability resulted in significant losses, with 1,596 bitcoins stolen from around 7,300 addresses in confirmed attacks. The total loss could reach 2,055 bitcoins, valued at approximately $130 million, pending confirmation of additional theft incidents.
The perpetrators behind these attacks remain unidentified. Coinkite’s CEO, Rodolfo Novak, advised affected users to transfer their funds promptly and issued firmware updates to address the security flaw. The company acknowledged the software flaw’s origin and took steps to prevent further exploitation.
All Coldcard users are potentially at risk due to this bug, although around 90% of the stolen bitcoins remain dormant in their original wallets. Galaxy Research recommended installing Coldcard’s latest firmware to protect new wallets, while urging caution with existing seed phrases generated on vulnerable devices.
Efforts are ongoing to track the stolen funds and collaborate with law enforcement agencies, exchanges, and cyber-investigation groups to identify the attackers. The incident underscores the importance of proactive security measures in safeguarding cryptocurrency assets.
Users are advised to move their funds from compromised wallets, implement necessary security updates, and consider transitioning to alternative storage solutions. Coinkite continues its investigation, emphasizing the need for vigilance and prompt action to mitigate potential risks associated with the breach.
