新聞加密貨幣Coldcard 攻擊擴大,15 名駭客竊走 1.3 億美元比特幣

Coldcard 攻擊擴大,15 名駭客竊走 1.3 億美元比特幣

作者: DailyCoin·

重點速覽

  • Galaxy Research identified at least 15 separate attackers using the Coldcard vulnerability.
  • The campaign has reportedly stolen more than $130 million in Bitcoin from over 7,300 wallets.
  • The flaw affected seed generation on Coldcard devices and produced weaker entropy than intended.
  • Coinkite has released hotfixes and warned users that the threat is still active.
  • Users are being told to update their Coldcard devices, create new seeds, and transfer funds to new wallets.
Coldcard 攻擊擴大,15 名駭客竊走 1.3 億美元比特幣

Galaxy Research 已識別出 15 名攻擊者,鎖定有漏洞的 Coldcard 錢包。

估計損失已突破 1.3 億美元的 Bitcoin,涉及超過 7,300 個錢包。

根據 Coinkite 最新警告,威脅仍然存在。

在 Galaxy Research 識別出 15 名獨立攻擊者,利用一項韌體漏洞削弱受影響硬體錢包的私鑰生成後,Coldcard 錢包攻擊已進一步升級。

這起持續進行的攻擊已從超過 7,300 個錢包中竊走估計 1.3 億美元的 Bitcoin;由於這項漏洞已公開,後續損失仍可能出現。

因為這個缺陷是公開的,任何具備足夠技術能力的駭客都可以加入這場盜竊行動。

為什麼駭客仍在鎖定 Coldcard 錢包?

Coldcard 錢包攻擊之所以持續,是因為有漏洞的錢包地址仍可在 Bitcoin 的公開區塊鏈上被看見,這使攻擊者能夠辨識受影響錢包,並嘗試透過暴力破解方式恢復私鑰。

Galaxy Research 表示,已有數十名受害者主動聯繫該機構,但實際受影響用戶總數可能高得多。一些長期持有 Bitcoin 的用戶,可能仍未意識到自己的錢包已經外洩。

"now NUMEROUS different attackers exploiting the Coldcard vulnerability. we estimate at least 15 different attackers now we continue to receive victim reports and give them info to report to authorities and those reports help us identify new attacks and label attackers " — Alex Thorn (@intangiblecoins) August 4, 2026

"now NUMEROUS different attackers exploiting the Coldcard vulnerability. we estimate at least 15 different attackers now we continue to receive victim reports and give them info to report to authorities and those reports help us identify new attacks and label attackers "

這項漏洞與 Coldcard 韌體有關,該韌體將錢包種子生成導向 MicroPython 的軟體備援路徑,而非真正的隨機數生成器。這種較弱的流程產生的種子詞組熵大幅降低。

Coldcard 硬體錢包背後的公司 Coinkite 估計,在 Coldcard Mk2 與 Mk3 裝置上生成的種子約只有 40 位元的熵,低於該公司 128 位元的目標。

據報導,Coldcard Mk4 裝置生成的種子約有 72 位元的熵,仍低於預期的安全水準。

Coinkite 共同創辦人 Rodolfo Novak 於 7 月 31 日在 X 上為這個 bug 道歉,並表示公司對這個 "full accountability for the firmware bug." Coinkite 之後已在所有受影響的型號與發布分支推出 hotfix。

該公司週二再次警告稱 "the threat is still active," 並敦促 Coldcard 用戶將資金移至新生成、未受影響的錢包。

"🚨 URGENT: The threat is still active. Follow the advisory for your model: update your COLDCARD, generate a new seed, then carefully move your funds. Please share this with less-online users who may not see it. " — Coinkite (@Coinkite) August 4, 2026

"🚨 URGENT: The threat is still active. Follow the advisory for your model: update your COLDCARD, generate a new seed, then carefully move your funds. Please share this with less-online users who may not see it. "

截至撰稿時,駭客身分尚未獲得公開證實。

這為何重要

Coldcard 錢包攻擊之所以仍在持續,是因為有漏洞的錢包仍可在鏈上被辨識,使更多攻擊者能針對暴露的資金下手。使用受影響韌體版本生成種子的用戶,在將 Bitcoin 轉移至新生成錢包之前,仍可能面臨持續風險。

立即閱讀 DailyCoin 熱門加密報導:Crypto Search Interest Has Collapsed, but XRP Ownership’s Still Rising BlackRock Tokenizes $311B Money Market Fund Range in Europe

在你的收件匣中取得最重要的加密新聞、價格觀點與 DailyCoin 獨家內容。