News
Public · Published
Coldcard hack just grew to $75M, call your friends
A five‑year‑old firmware bug in the Coldcard hardware wallet let an attacker guess private keys without ever touching the device, expanding the hack's estimated loss to roughly seventy‑five million dollars.
Published:
Updated:
What happened
A five‑year‑old firmware bug in the Coldcard hardware wallet let an attacker guess private keys without ever touching the device, expanding the hack’s estimated loss to roughly seventy‑five million dollars.
Confirmed
Global impact / market context
The flaw proves that even air‑gapped wallets, which are marketed as highly secure, can be compromised remotely, prompting users to reconsider how they protect private keys and potentially shifting demand toward alternative security solutions.
Analyst inference
Security breaches in crypto tools often cause short‑term price swings for Bitcoin and related assets, as investors reassess risk and may move funds away from hardware wallets toward custodial or diversified storage options.
Analyst inference
What to watch
- Coldcard’s announcement of firmware updates and the speed at which users install them, which will influence confidence in the brand’s security reputation. Analyst inference
- Reports of any additional devices or wallet models found vulnerable to similar firmware bugs, indicating whether the issue is isolated or part of a broader problem. Analyst inference
- Changes in the volume of Bitcoin held in Coldcard wallets versus other storage methods, reflecting how users adjust their holdings after the hack. Analyst inference
Affected assets
- BTC — Bitcoin