Skip to main content
AVOID.NET

Coldcard Firmware Exploit (2026)

avoid.net/coldcard-firmware-exploit-202610/100·87% conf.
[AI-DRAFTED · AWAITING VERIFICATION]

Auto-generated score, not yet verified against the scoring model. Under review — treat as indicative, not a verdict.

anchored·3ig2Ef…dUtW

Summary

Beginning July 30, 2026, attackers exploited a five-year-old build-flag error in Coinkite's Coldcard hardware wallet firmware (versions 4.0.1–4.1.9) that caused seed generation to use a weak software pseudorandom number generator (PRNG) instead of the device's hardware entropy source, reducing effective key strength to as low as 40 bits. Multiple attack waves across four days drained approximately 1,789–1,816 BTC (roughly $114–116 million) from more than 5,200 Bitcoin addresses, making it the largest hardware wallet exploit in recorded history. As of September 2026, approximately 82% of stolen funds remain in attacker-controlled wallets with limited laundering activity; no formal criminal charges or regulatory actions had been announced, and class-action litigation against Coinkite was threatened but not yet formally filed.

Connected Entities

1 entities
Protocols
Coldcard Firmware Exploit (2026)
Relationships
  • + 6 more
Have evidence about Coldcard Firmware Exploit (2026)?

Timeline(16 events)

1 March 2021

A commit attributed by researcher James O'Beirne to Coinkite CTO Peter Gray (via GPG signature) replaces a hardware RNG call with MicroPython's Yasmarang software PRNG in the libNgU library, introducing the entropy vulnerability.

Cryptopolitan / Coinkite Technical Blog

17 March 2021

Coldcard firmware version 4.0.1 is publicly released, incorporating the vulnerable seed generation path. Affected devices begin generating seeds with reduced entropy.

COINKITE Blog / The Hacker News

1 May 2025

Bitcoin developer James O'Beirne reportedly flags the flawed randomness code to Coinkite after auditing the firmware repository, describing libNgU as a low-star, single-maintainer dependency. According to O'Beirne, Coinkite responded that the issue would likely have surfaced by now if real. Coinkite has not publicly confirmed or denied this account.

Cryptopolitan / Bitcoin World

30 July 2026

First attack wave begins. Attackers drain approximately 594 BTC (~$38 million) from roughly 500 addresses in approximately 25 minutes (first reporting figure). Separately, Hacker News and TRM report 1,082.65 BTC removed from 1,196 addresses in 41 minutes — the discrepancy reflects differing wave-boundary definitions.

CoinDesk / The Hacker News / TRM Labs

30 July 2026

Coinkite publishes its security advisory disclosing the vulnerability, directing all users who generated seeds on affected firmware to migrate funds immediately.

COINKITE Blog

31 July 2026

Coinkite ships emergency patched firmware: version 5.6.1 for Mk4/Mk5 and 1.5.1Q for the Coldcard Q. Patched firmware requires user-supplied entropy for new seed generation. Existing seeds remain compromised.

CoinTelegraph / COINKITE Blog

1 August 2026

Coinkite updates its security advisory with additional technical detail. Attack waves continue.

COINKITE Blog

2 August 2026

Galaxy Research identifies a third attack wave, with cumulative losses reaching 1,367 BTC (~$88.6 million) across 4,585 addresses.

Crypto Times / CoinDesk

4 August 2026

Forbes and TechCrunch publish wider-audience coverage. TRM Labs reports minimal laundering activity: 64.9 BTC to Wasabi CoinJoin and minimal ETH-side movement.

Forbes / TechCrunch / TRM Labs

6 August 2026

No confirmed new attack activity observed after this date, according to Galaxy Research.

Galaxy Research via Crypto Times

6 August 2026

WeirFoulds LLP (Toronto) publishes legal analysis of victim recovery options, noting class-action litigation against Coinkite was being organized. No formal filing reported.

WeirFoulds LLP

9 August 2026

Cryptopolitan and others report O'Beirne's GPG-based attribution of the vulnerable commit to Peter Gray, Coinkite CTO. Coinkite does not publicly respond to the attribution.

Cryptopolitan

14 August 2026

Galaxy Research report confirms 1,778 BTC stolen (~$112 million at theft prices) across 8,865+ addresses.

Galaxy Research via Crypto Times

15 August 2026

Galaxy Research publishes assessment that attackers likely used unrestricted AI models (citing Kimi K3 as an example) to discover and exploit the vulnerability, based on circumstantial analysis of attack sophistication. Assessed as speculative rather than forensically proven.

Crypto Times

24 August 2026

Galaxy Research updates final estimate to 1,789.28 BTC stolen across 8,865 addresses ($114.7 million at time of theft, approximately $138.8 million at then-current prices).

Crypto Times

7 September 2026

Approximately 82% of stolen Bitcoin reported as still frozen in attacker-controlled wallets. Approximately $7.8 million laundered through THORChain and CoinJoin. No new attack waves or criminal charges reported.

Cryptonomist
Provenance & Audit Trail

Decision Log

This investigation is cryptographically anchored to the Solana blockchain (1 event). 5 of 9 cited source URLs have an Internet Archive snapshot.

model: claude-sonnet-4-6

generated: 9/13/2026, 11:12:57 PM

last updated: 9/14/2026, 12:09:31 AM

avoid.net — verified advice for a post-truth world