Coldcard Firmware Bug Linked to $38 Million Bitcoin Wallet Breach
Key Takeaways
- •A firmware flaw introduced in 2021 caused certain Coldcard wallet models to produce recovery seeds with inadequate cryptographic randomness, exposing them to brute-force attacks.
- •Attackers stole approximately 594 BTC, valued at roughly $38 million at the time, from more than 500 wallets during a coordinated assault lasting about 25 minutes.
- •Mk3 devices running firmware version 4.0.1 or later were the most severely affected, while Mk4, Mk5, and Q models retained supplementary entropy sources that made exploitation significantly more difficult.
- •Coinkite has released patched firmware for all supported models but cautions that updating alone cannot remediate wallets whose seeds were already created on vulnerable software.
- •Users who supplied their own entropy via physical dice or employed strong passphrases may face substantially reduced risk depending on their specific security configuration.

A critical firmware build error in Coldcard hardware wallets has been tied to one of the most significant hardware wallet security failures in recent memory. Attackers reportedly siphoned approximately $38 million worth of bitcoin from more than 500 wallets in a window of roughly 25 minutes, reigniting concerns about the integrity of seed generation and the hidden risks posed by software flaws in devices purpose-built to safeguard digital assets.
Coldcard devices, manufactured by Toronto-based Coinkite, are widely used by Bitcoin holders who prioritize self-custody and value the wallet's air-gapped design, which keeps private keys isolated from internet-connected computers. The brand has built a reputation for security-focused features, making the firmware flaw particularly damaging to user trust.
The vulnerability traces back to a firmware bug that drastically curtailed the randomness used during wallet recovery seed generation. Recovery seeds—typically 12 or 24-word phrases following the BIP39 standard used across the cryptocurrency industry—serve as the master key to a wallet. Rather than producing cryptographically robust entropy, affected devices output seeds with predictable patterns that attackers could brute force. This allowed the perpetrators to reconstruct private keys and initiate fund transfers without ever interacting with the wallet owners.
How the Vulnerability Worked
Information released following the incident indicates the flaw originated in firmware introduced in 2021. The bug caused certain Coldcard models to generate wallet seeds with far less entropy than intended, leaving them vulnerable to systematic attack.
Investigators identified the primary affected devices as:
- Mk3 devices running firmware version 4.0.1 or later.
- Mk4, Mk5, and Q models that generated seeds prior to newly released firmware updates. However, these newer devices retained supplementary entropy sources, making attacks considerably more difficult.
The attacker reportedly generated candidate seed phrases, derived corresponding wallet addresses, and cross-referenced them against public blockchain data before swiftly draining compromised wallets. Approximately 594 BTC, valued at about $38 million at the time, was stolen in the coordinated assault.
Emergency Response
The wallet manufacturer has issued patched firmware for all supported models and is urging users to install the latest updates without delay. However, installing the patched firmware cannot remediate wallets whose recovery seeds were already created using the vulnerable software.
Users who generated seeds on affected firmware have been instructed to migrate their funds to entirely new wallets created only after updating to the patched firmware. Individuals who supplied their own entropy using physical dice or who relied on strong passphrases may face substantially reduced risk, depending on their specific configuration.
The incident underscores a fundamental reality: hardware wallets remain reliant on secure firmware and the correct implementation of cryptographic processes. While hardware isolation shields private keys from many online attack vectors, a flaw introduced during key generation can compromise those defenses before a wallet is ever connected to a computer or used in a transaction.
The breach is expected to catalyze wider scrutiny of firmware verification procedures, entropy generation methods, and the role of independent security audits across the hardware wallet industry, where competitors such as Ledger and Trezor have also faced security controversies that tested user confidence in self-custody solutions.