新闻加密货币CZ 在 7000 万美元 Coldcard 漏洞事件后警告比特币持有者:“Nothing Is 100%”

CZ 在 7000 万美元 Coldcard 漏洞事件后警告比特币持有者:“Nothing Is 100%”

作者: Decrypt·

要点速览

  • 可追溯至 2021 年 3 月的固件构建错误,导致 Coldcard 设备使用可预测的软件回退机制生成私钥种子,而非预期中的硬件随机数生成器。
  • Galaxy Research 识别出 1,196 个地址在 7 月 30 日的 41 分钟内被完全清空,总计约 1,082.65 BTC,按当时价格约为 7,020 万美元。
  • 被盗比特币在几分钟内被整合到少数几个地址中,且据 Galaxy 所述,此后一直未再移动。
  • Coinkite 已发布紧急热修复,并敦促受影响用户迁移到新生成的种子;固件更新无法修复已在受损设备上创建的种子。
  • 赵长鹏建议加密货币持有者将资金分散到多个钱包中以降低风险,并强调没有任何硬件钱包能完全免受漏洞影响。
CZ 在 7000 万美元 Coldcard 漏洞事件后警告比特币持有者:“Nothing Is 100%”

币安创始人赵长鹏“CZ”呼吁加密货币持有者,不要在 Coldcard 设备遭遇漏洞、导致数千万美元比特币被盗后,对硬件钱包抱有盲目信任。

由 Coinkite 生产的 Coldcard 是一款广泛使用的离线比特币硬件钱包,因其与联网设备物理隔离而受到重视自我托管安全的用户青睐——这一设计也让此次漏洞格外引人关注,因为许多用户原本以为自己的密钥是在一个不可篡改的环境中生成的。

在周六发布于 X 的帖子中,赵长鹏提醒称,即便是硬件钱包也可能存在漏洞,而使用时间较长的钱包也并非免疫。“Nothing is 100%,” 他写道。

他建议持有者考虑将资金分散到多个钱包中,以降低风险,同时也承认这种做法本身存在权衡,且没有任何方案是完全万无一失的。赵长鹏最后以他熟悉的口号收尾:“Stay SAFU!”

他的评论是在 Coldcard 硬件钱包被发现一项严重缺陷后发表的。正如 Decrypt 报道 所述,一次构建错误导致受影响设备上的种子来自软件回退机制,而不是设备的硬件随机数生成器,使得私钥比预期更容易被猜出。随机数生成器是密码学安全的基础——如果随机来源可预测,了解该模式的人就可能对生成的私钥进行逆向推导。

该问题可追溯至 2021 年 3 月发布的固件。更新固件无法修复已经在受损设备上创建的种子。

We mapped the flow of funds for the Coldcard vulnerability based on the pattern identified by engineers at Block and shared by @clay_garrett

1,196 addresses drained in full for 1,082.65 BTC (~$70.2M) between 01:10:20 and 01:51:26 UTC on Jul 30 — a 41-minute window, blocks… pic.twitter.com/q785paZvMQ

— Galaxy Research (@glxyresearch) July 31, 2026

The scope of the theft has grown considerably since initial estimates. Early reporting pegged losses at roughly 594 BTC, or about $38 million, drained from around 500 wallets.

According to a report from Galaxy Research, which mapped fund flows based on a vulnerability pattern identified by engineers at Jack Dorsey's Block and shared by @clay_garrett, the toll now stands at 1,196 addresses drained for approximately 1,082.65 BTC, or roughly $70.2 million, within a 41-minute window on July 30. That figure is nearly double the initial estimate.

Galaxy noted that every sweep paid an identical hardcoded fee and left no change output — a signature the firm described as consistent with an automated tool spending keys it already held, rather than legitimate owners moving their own funds. Victims spanned both native SegWit and older address types, pointing to multi-path key scanning.

The stolen Bitcoin was consolidated within minutes into a handful of addresses and, according to Galaxy, has not moved since.

Coinkite has shipped emergency hotfixes and urged exposed users to migrate to newly generated seeds. The incident underscores a broader challenge for the hardware wallet industry: even devices marketed on the strength of their physical security depend on firmware integrity, and a single build error can undermine years of trust.