Skip to main content
Esc

Type to search

Articles / bitcoin-institutional / Coldcard Bitcoin Theft Continues, Now Estimated Over $114 Million In Total Stolen

Coldcard Bitcoin Theft Continues, Now Estimated Over $114 Million In Total Stolen

Total Stolen
$114 million
Estimated total amount of Bitcoin stolen from Coldcard wallets.
Fourth Wave Attack Transactions
388.9 Bitcoins
Amount of Bitcoin moved in new transactions during the latest wave of theft.
Initial Theft Amount
$35 million
Amount of Bitcoin stolen during the first wave of attacks.

§ 01 Executive Snapshot

  • What: Coldcard Bitcoin wallets have been hacked, with over $114 million stolen to date.
  • Who: Coinkite (manufacturer of Coldcard), hackers, Galaxy Research’s Alex Thorn, Trezor’s Josef Tětek.
  • Why it matters: This incident raises significant concerns about the security of hardware wallets and the implications for user trust in Bitcoin storage solutions.

§ 02 Key Developments

  • An estimated total of over $114 million in Bitcoin has been stolen from Coldcard wallets, indicating a serious security breach.
  • A fourth wave of attacks was identified by Galaxy Research, with 388.9 Bitcoins worth over $29 million moved in new transactions.
  • Coinkite admitted that all models of Coldcard wallets were vulnerable due to a firmware bug that compromised seed generation.

§ 03 Strategic Context

  • The vulnerability stems from a firmware bug in Coldcard Mk3 devices, which allowed hackers to exploit weak seed generation methods since March 2021.
  • This incident highlights the ongoing risks associated with hardware wallets and the potential for widespread vulnerabilities in cryptocurrency storage solutions.

§ 04 Strategic Implications

  • Immediate market consequences include a loss of trust in Coldcard products and potential shifts in consumer behavior towards other hardware wallet providers.
  • Long-term implications may involve increased scrutiny and regulatory oversight of hardware wallet manufacturers and security practices in the cryptocurrency space.

§ 05 Risks & Constraints

  • Regulatory risks arise from the significant amount of theft, which could lead to investigations and potential legal actions against Coinkite and other stakeholders.
  • Competition may intensify as users look for more secure alternatives, impacting Coldcard's market position and future sales.

§ 06 Watchlist / Forward Signals

  • Upcoming developments to watch include any announcements from Coinkite regarding security improvements or new product releases following the incident.
  • Monitoring the response from federal authorities and the blockchain services provider involved in the hack could provide insights into how such incidents may be mitigated in the future.
§ 07

Frequently Asked Questions

What happened to Coldcard wallets?

Coldcard wallets have been hacked, resulting in over $114 million in Bitcoin being stolen.

Why is the Coldcard security breach significant?

The breach raises serious concerns about the security of hardware wallets and user trust in Bitcoin storage solutions.

How did the hackers exploit Coldcard wallets?

Hackers exploited a firmware bug in Coldcard Mk3 devices that compromised seed generation methods since March 2021.

What are the potential long-term implications of this incident?

Long-term implications may include increased regulatory scrutiny of hardware wallet manufacturers and shifts in consumer behavior towards more secure alternatives.

§ 08

Related Articles