Binance Square
#cryptosecurity

cryptosecurity

8.3M vistas
9,216 están debatiendo
NEWS CRIPTO CHILE
·
--
Un fallo en Coldcard drenó 594 BTC (US$38M) de 500 wallets en solo 25 minutos La falla estaba en el firmware desde 2021: los dispositivos generaban claves predecibles, no aleatorias. El atacante vació 500 wallets con más de 0,15 $BTC en tres bloques de Bitcoin, según CoinDesk y KuCoin News. Si tienes un Coldcard Mk3/Mk4 con firmware 4.0.1+, revisa tus fondos ahora: el error ya se corrigió, pero las claves generadas antes del parche siguen expuestas. ¿Revisarías tu hardware wallet hoy o confías en que a ti no te toca? 👇 #coldcardflawdrains594btc #HardwareWallet #CryptoSecurity
Un fallo en Coldcard drenó 594 BTC (US$38M) de 500 wallets en solo 25 minutos

La falla estaba en el firmware desde 2021: los dispositivos generaban claves predecibles, no aleatorias. El atacante vació 500 wallets con más de 0,15 $BTC en tres bloques de Bitcoin, según CoinDesk y KuCoin News.

Si tienes un Coldcard Mk3/Mk4 con firmware 4.0.1+, revisa tus fondos ahora: el error ya se corrigió, pero las claves generadas antes del parche siguen expuestas.

¿Revisarías tu hardware wallet hoy o confías en que a ti no te toca? 👇

#coldcardflawdrains594btc #HardwareWallet #CryptoSecurity
#coldcardflawdrains594btc 594 BTC اختفت خلال 25 دقيقة. لم يكن اختراقًا للبيتكوين. بل كان ذلك عبارة عن محفظة عتاد كانت تولّد مفاتيح ضعيفة بصمت منذ 2021. رؤية سوقية: أكدت شركة Coinkite، الشركة خلف Coldcard، وجود خلل في البرنامج الثابت يعود إلى مارس 2021. بعض الأجهزة تخطّت مولّد الأرقام العشوائية الحقيقي على مستوى العتاد وبدلاً من ذلك رجعت إلى نسخة برمجية يمكن التنبؤ بها. المفاتيح التي كان يُفترض رياضيًا استحالة تخمينها أصبحت قابلة للتخمين عبر القوة الغاشمة. هذه ليست مشكلة في البيتكوين نفسها، بل فشل في طريقة تعامل منتج واحد مع الحفظ الذاتي؛ والتمييز بينهما مهم جدًا لأي شخص يفصل بين مخاطر البروتوكول ومخاطر المنتج. بخصوص 594 BTC، وبما يعادل تقريبًا 38 مليون دولار، تم تفريغها من حوالي 500 محفظة فردية الإشارة (single sig) خلال 25 دقيقة فقط. انخفضت الإنتروبي على البذور (Mk3 seeds) المتأثرة من 128 بت إلى حوالي 40 بت. لاحقًا، قامت Galaxy Research بمراجعة الخسائر الإجمالية إلى حوالي 1,082 BTC، أي قرابة 70 مليون دولار، عبر نحو 1,196 عنوانًا. قال كل خلاصة المتداول: هذه مشكلة في طبقة الحفظ، وليست مشكلة في البيتكوين. هل يدفعك هذا أكثر نحو الحفظ الذاتي عبر multisig، أم نحو حلول حفظ منظمة بدلًا من ذلك؟ متابعة من فضلكم $BTC $ETH $BNB #bitcoin #SelfCustody #CryptoSecurity
#coldcardflawdrains594btc
594 BTC اختفت خلال 25 دقيقة. لم يكن اختراقًا للبيتكوين. بل كان ذلك عبارة عن محفظة عتاد كانت تولّد مفاتيح ضعيفة بصمت منذ 2021.
رؤية سوقية:
أكدت شركة Coinkite، الشركة خلف Coldcard، وجود خلل في البرنامج الثابت يعود إلى مارس 2021. بعض الأجهزة تخطّت مولّد الأرقام العشوائية الحقيقي على مستوى العتاد وبدلاً من ذلك رجعت إلى نسخة برمجية يمكن التنبؤ بها. المفاتيح التي كان يُفترض رياضيًا استحالة تخمينها أصبحت قابلة للتخمين عبر القوة الغاشمة. هذه ليست مشكلة في البيتكوين نفسها، بل فشل في طريقة تعامل منتج واحد مع الحفظ الذاتي؛ والتمييز بينهما مهم جدًا لأي شخص يفصل بين مخاطر البروتوكول ومخاطر المنتج.
بخصوص 594 BTC، وبما يعادل تقريبًا 38 مليون دولار، تم تفريغها من حوالي 500 محفظة فردية الإشارة (single sig) خلال 25 دقيقة فقط. انخفضت الإنتروبي على البذور (Mk3 seeds) المتأثرة من 128 بت إلى حوالي 40 بت. لاحقًا، قامت Galaxy Research بمراجعة الخسائر الإجمالية إلى حوالي 1,082 BTC، أي قرابة 70 مليون دولار، عبر نحو 1,196 عنوانًا. قال كل
خلاصة المتداول: هذه مشكلة في طبقة الحفظ، وليست مشكلة في البيتكوين.
هل يدفعك هذا أكثر نحو الحفظ الذاتي عبر multisig، أم نحو حلول حفظ منظمة بدلًا من ذلك؟

متابعة من فضلكم

$BTC $ETH $BNB #bitcoin
#SelfCustody #CryptoSecurity
·
--
Alcista
🚨 CZ Calls for Wallet Diversification After $70M Coldcard Exploit 🚨 Binance founder Changpeng Zhao (CZ) is urging crypto users to spread their funds across multiple wallets following a major $70 million security failure impacting Coldcard hardware devices. CZ emphasized that even hardware wallets are not immune to bugs and vulnerabilities. To mitigate risks, he suggests a diversification strategy rather than relying on a single security solution. Key Takeaways: 🔒 Hardware wallets can still have software flaws. 💸 Spreading funds reduces single-point-of-failure risks. 🛡️ Diversification is vital for long-term asset security. So what is actually happened and what we need to do with it? Do not worry, if you are not using Coldcard wallet, you are worry free. The reported COLDCARD vulnerability stems from a critical firmware bug that disabled the hardware random number generator. This flaw allows attackers to replicate recovery seeds generated on affected devices and steal funds. Crucially, a simple firmware update will not secure vulnerable accounts. Affected users must immediately generate an entirely new recovery seed on patched firmware and transfer their BTC to the new address. 🚨 Critical Security Steps Required 1) Update firmware to the latest patched version immediately. 2) Generate a new seed phrase directly on the secure firmware. 3) Transfer all BTC from the compromised setup to the new wallet. 4) Never reuse the old, vulnerable recovery seed phrase. $BTC $ETH $SOL {future}(SOLUSDT) {future}(ETHUSDT) {future}(BTCUSDT) #CryptoSecurity #Coldcard #Web3
🚨 CZ Calls for Wallet Diversification After $70M Coldcard Exploit 🚨

Binance founder Changpeng Zhao (CZ) is urging crypto users to spread their funds across multiple wallets following a major $70 million security failure impacting Coldcard hardware devices.

CZ emphasized that even hardware wallets are not immune to bugs and vulnerabilities. To mitigate risks, he suggests a diversification strategy rather than relying on a single security solution.

Key Takeaways:
🔒 Hardware wallets can still have software flaws.
💸 Spreading funds reduces single-point-of-failure risks.
🛡️ Diversification is vital for long-term asset security.

So what is actually happened and what we need to do with it?

Do not worry, if you are not using Coldcard wallet, you are worry free.

The reported COLDCARD vulnerability stems from a critical firmware bug that disabled the hardware random number generator. This flaw allows attackers to replicate recovery seeds generated on affected devices and steal funds.

Crucially, a simple firmware update will not secure vulnerable accounts. Affected users must immediately generate an entirely new recovery seed on patched firmware and transfer their BTC to the new address.

🚨 Critical Security Steps Required
1) Update firmware to the latest patched version immediately.
2) Generate a new seed phrase directly on the secure firmware.
3) Transfer all BTC from the compromised setup to the new wallet.
4) Never reuse the old, vulnerable recovery seed phrase.

$BTC $ETH $SOL

#CryptoSecurity #Coldcard #Web3
$BTC wasn't hacked. Millions were still lost. That's the difference between blockchain security and wallet security. Recent reports suggest that the stolen funds were linked to wallets created years ago using weak randomness during seed generation—not a flaw in Bitcoin itself. This is an important reminder for everyone in crypto: 🔹 A hardware wallet is only as secure as the way your seed phrase was created. 🔹 Keeping firmware updated matters. 🔹 Strong operational security is just as important as choosing the right wallet. In crypto, the weakest link is rarely the #blockchain . It's often the process around it. Do you think wallet security education is keeping up with crypto adoption, or are too many users still underestimating seed security? #bitcoin #CryptoSecurity #SelfCustody
$BTC wasn't hacked. Millions were still lost.
That's the difference between blockchain security and wallet security.
Recent reports suggest that the stolen funds were linked to wallets created years ago using weak randomness during seed generation—not a flaw in Bitcoin itself.
This is an important reminder for everyone in crypto:
🔹 A hardware wallet is only as secure as the way your seed phrase was created.
🔹 Keeping firmware updated matters.
🔹 Strong operational security is just as important as choosing the right wallet.
In crypto, the weakest link is rarely the #blockchain . It's often the process around it.
Do you think wallet security education is keeping up with crypto adoption, or are too many users still underestimating seed security?
#bitcoin #CryptoSecurity #SelfCustody
🔥 BREAKING NEWS 🔥 The total value of Bitcoin compromised in the Coldcard hardware wallet security breach has now surpassed $88 million. $BTC #Bitcoin #CryptoSecurity $TON $SUI Source: Compiled
🔥 BREAKING NEWS 🔥

The total value of Bitcoin compromised in the Coldcard hardware wallet security breach has now surpassed $88 million.

$BTC #Bitcoin #CryptoSecurity

$TON $SUI

Source: Compiled
🔥 BREAKING NEWS 🔥 The total value of Bitcoin compromised in the Coldcard hardware wallet security breach has now surpassed $88 million. $BTC #Bitcoin #CryptoSecurity $TON $SUI Source: Compiled
🔥 BREAKING NEWS 🔥

The total value of Bitcoin compromised in the Coldcard hardware wallet security breach has now surpassed $88 million.

$BTC #Bitcoin #CryptoSecurity

$TON $SUI

Source: Compiled
Artículo
Un Cold Wallet ne suffit plus ? Le rappel à l'ordre décisif de CZ 🔐​Même les portefeuilles matériels ne sont pas infaillibles. Suite à l'exploitation de Coldcard qui a coûté 70 millions de dollars à des investisseurs, Changpeng Zhao (CZ) a tenu à rappeler une règle d'or trop souvent oubliée : la diversification ne concerne pas que les actifs, mais aussi le stockage. ​Ce qu'il faut retenir : ​⚠️ Le zéro risque n'existe pas : Les logiciels et hardwares porteurs de clés privées peuvent toujours contenir des failles résiduelles ou des bugs critiques. ​🛡️ Éviter le "Single Point of Failure" : Concentrer l'intégralité de son portfolio sur une seule solution (même considérée comme ultra-sécurisée) est une prise de risque inutile. ​💡 La bonne stratégie : Répartir son capital sur plusieurs types de solutions (différentes marques de portefeuilles froids, stockage multi-signatures, plateformes régulées pour la liquidité). ​Conseil pratique : Ne mettez jamais tous vos œufs dans le même panier... ni toutes vos clés dans le même boîtier ! ​💬 Et vous, vous utilisez une seule marque de hardware wallet ou vous préférez diversifier vos supports de stockage ? ​#BinanceSquareTalks #CryptoSecurity #ColdStorage #RiskManagementInTrading

Un Cold Wallet ne suffit plus ? Le rappel à l'ordre décisif de CZ 🔐

​Même les portefeuilles matériels ne sont pas infaillibles. Suite à l'exploitation de Coldcard qui a coûté 70 millions de dollars à des investisseurs, Changpeng Zhao (CZ) a tenu à rappeler une règle d'or trop souvent oubliée : la diversification ne concerne pas que les actifs, mais aussi le stockage.
​Ce qu'il faut retenir :
​⚠️ Le zéro risque n'existe pas : Les logiciels et hardwares porteurs de clés privées peuvent toujours contenir des failles résiduelles ou des bugs critiques.
​🛡️ Éviter le "Single Point of Failure" : Concentrer l'intégralité de son portfolio sur une seule solution (même considérée comme ultra-sécurisée) est une prise de risque inutile.
​💡 La bonne stratégie : Répartir son capital sur plusieurs types de solutions (différentes marques de portefeuilles froids, stockage multi-signatures, plateformes régulées pour la liquidité).
​Conseil pratique : Ne mettez jamais tous vos œufs dans le même panier... ni toutes vos clés dans le même boîtier !
​💬 Et vous, vous utilisez une seule marque de hardware wallet ou vous préférez diversifier vos supports de stockage ?
​#BinanceSquareTalks #CryptoSecurity #ColdStorage #RiskManagementInTrading
Artículo
🚨 Security Alert: Is Your Crypto Really Safe?A recent security incident has raised concerns among Bitcoin holders. Reports claim that 593 BTC were stolen after a vulnerability linked to seed phrase generation in certain cold wallets was exploited. This serves as a reminder that even offline wallets are not completely risk-free if security flaws exist. Always choose trusted, well-established hardware wallets, keep your firmware updated, and never share your seed phrase with anyone. In crypto, strong security is just as important as smart investing. #bitcoin #CryptoSecurity #BTC走势分析 #Coldwallet #HackerAlert {spot}(BTCUSDT)

🚨 Security Alert: Is Your Crypto Really Safe?

A recent security incident has raised concerns among Bitcoin holders. Reports claim that 593 BTC were stolen after a vulnerability linked to seed phrase generation in certain cold wallets was exploited. This serves as a reminder that even offline wallets are not completely risk-free if security flaws exist.
Always choose trusted, well-established hardware wallets, keep your firmware updated, and never share your seed phrase with anyone. In crypto, strong security is just as important as smart investing.
#bitcoin #CryptoSecurity #BTC走势分析 #Coldwallet #HackerAlert
🚨 $BTC HARDWARE WALLET RUMORS: 1,000 BTC LOST? DON'T TRADE THE UNVERIFIED 🔍 The market reacts to noise, but institutional desks don't fade positions off unconfirmed headlines. 🔍 A $38M hardware wallet claim may shake sentiment, yet with zero official confirmation, the structure remains a liquidity game, not a security event. 📊 Real risk management means treating your storage setup like a vault, not your trading plan like a headline. 🛡️ Smart money is watching volume reactions around breakouts, not chasing rumor-driven wicks. 💡 💬 How are you separating verified market data from social-driven FUD this week? 👇 ⚠️ Not financial advice. Always manage your risk. 🛡️ 🏷️ #BTC #CryptoSecurity #RiskManagement #Bitcoin 🦈 🔍
🚨 $BTC HARDWARE WALLET RUMORS: 1,000 BTC LOST? DON'T TRADE THE UNVERIFIED 🔍

The market reacts to noise, but institutional desks don't fade positions off unconfirmed headlines. 🔍 A $38M hardware wallet claim may shake sentiment, yet with zero official confirmation, the structure remains a liquidity game, not a security event. 📊

Real risk management means treating your storage setup like a vault, not your trading plan like a headline. 🛡️ Smart money is watching volume reactions around breakouts, not chasing rumor-driven wicks. 💡

💬 How are you separating verified market data from social-driven FUD this week? 👇

⚠️ Not financial advice. Always manage your risk. 🛡️

🏷️ #BTC #CryptoSecurity #RiskManagement #Bitcoin

🦈 🔍
🚨 Cold storage was supposed to mean untouchable. ⚠️ It didn't. $71,000,000+ in BTC — gone. Not phished. Not hacked at the device. Drained from wallets that never left a safe. 💀 Cold. Offline. Untouched. And still emptied. The old belief: hardware wallets are immune because attackers need physical access. The new reality: entropy failed silently, and math did the rest. Coldcard's 2021 firmware bug collapsed seed randomness down to a guessable range. No phishing link. No malware. No device compromise required. The attacker never touched a single wallet. ⏱️ 1,196 addresses. 41 minutes. Over 1,082 BTC swept. Predictability killed more wallets than any hacker ever could. 🔓 The uncomfortable truth: a wallet is only as cold as its randomness. Offline storage protects against network attacks — it does nothing against a flawed random number generator baked in at manufacture. The question isn't whether hardware wallets are safe. The question is whether the entropy generating the seed was ever truly random in the first place. 📌 Recommended action: 1️⃣ Update firmware immediately (Mk3: 4.2.0+, Mk4/Mk5: 5.6.0+, Q: 1.5.0Q+) 2️⃣ Generate a brand-new seed — firmware updates do NOT fix old seeds 3️⃣ Migrate all funds off the old address before touching it again 4️⃣ Where possible, add a dice-rolled passphrase for extra entropy 🔥 Rolling your own dice at setup? Those wallets survived untouched. What does "cold storage" actually protect against, if the randomness behind it was never secure? $BTC #Bitching #Coldcard #CryptoSecurity #DeFi Not financial advice. DYOR.
🚨 Cold storage was supposed to mean untouchable.

⚠️ It didn't.

$71,000,000+ in BTC — gone. Not phished. Not hacked at the device. Drained from wallets that never left a safe.

💀 Cold. Offline. Untouched. And still emptied.

The old belief: hardware wallets are immune because attackers need physical access.

The new reality: entropy failed silently, and math did the rest.

Coldcard's 2021 firmware bug collapsed seed randomness down to a guessable range. No phishing link. No malware. No device compromise required.

The attacker never touched a single wallet.

⏱️ 1,196 addresses.
41 minutes.
Over 1,082 BTC swept.

Predictability killed more wallets than any hacker ever could.

🔓 The uncomfortable truth: a wallet is only as cold as its randomness. Offline storage protects against network attacks — it does nothing against a flawed random number generator baked in at manufacture.

The question isn't whether hardware wallets are safe. The question is whether the entropy generating the seed was ever truly random in the first place.

📌 Recommended action:
1️⃣ Update firmware immediately (Mk3: 4.2.0+, Mk4/Mk5: 5.6.0+, Q: 1.5.0Q+)
2️⃣ Generate a brand-new seed — firmware updates do NOT fix old seeds
3️⃣ Migrate all funds off the old address before touching it again
4️⃣ Where possible, add a dice-rolled passphrase for extra entropy

🔥 Rolling your own dice at setup? Those wallets survived untouched.

What does "cold storage" actually protect against, if the randomness behind it was never secure?

$BTC #Bitching #Coldcard #CryptoSecurity #DeFi
Not financial advice. DYOR.
·
--
🚨 $70M GONE: CZ Issues URGENT Warning To All Bitcoin Holders - A massive wallet exploit has resulted in a confirmed loss of nearly $70 million in Bitcoin, almost double the initial estimates from the breach. - Binance founder CZ publicly addressed the incident, stating "Nothing is 100%" and urging extreme caution for all crypto investors, reminding everyone that no single solution is perfectly secure. - The critical lesson for traders: Don't put all your eggs in one basket. CZ strongly advises spreading your funds across multiple wallets (hot, cold, exchange) to mitigate risk from a single point of failure. How do you protect your crypto assets? Are you diversifying across multiple wallets? Share your security strategy below! 👇 $BTC $BNB #CryptoSecurity #Bitcoin #CryptoNews Disclaimer: This is not financial advice. DYOR.
🚨 $70M GONE: CZ Issues URGENT Warning To All Bitcoin Holders

- A massive wallet exploit has resulted in a confirmed loss of nearly $70 million in Bitcoin, almost double the initial estimates from the breach.

- Binance founder CZ publicly addressed the incident, stating "Nothing is 100%" and urging extreme caution for all crypto investors, reminding everyone that no single solution is perfectly secure.

- The critical lesson for traders: Don't put all your eggs in one basket. CZ strongly advises spreading your funds across multiple wallets (hot, cold, exchange) to mitigate risk from a single point of failure.

How do you protect your crypto assets? Are you diversifying across multiple wallets? Share your security strategy below! 👇

$BTC $BNB
#CryptoSecurity #Bitcoin #CryptoNews

Disclaimer: This is not financial advice. DYOR.
One security mistake can erase years of gains. The reported Coldcard incident is a reminder that self-custody is more than owning a hardware wallet. Security also depends on firmware, seed generation, updates, and good operational habits. Crypto rewards those who protect their assets as much as those who find the next opportunity. Before reacting to headlines, verify the facts and follow official security guidance. What's the #1 security habit every crypto investor should never skip? #Bitcoin #CryptoSecurity #SelfCustody $BTC
One security mistake can erase years of gains.
The reported Coldcard incident is a reminder that self-custody is more than owning a hardware wallet. Security also depends on firmware, seed generation, updates, and good operational habits.
Crypto rewards those who protect their assets as much as those who find the next opportunity.
Before reacting to headlines, verify the facts and follow official security guidance.
What's the #1 security habit every crypto investor should never skip?
#Bitcoin #CryptoSecurity #SelfCustody $BTC
🛡️ Private Keys Are the Real Wallet: Whoever holds the keys holds the coins On August 1, 2026, Your crypto is not stored 'in' a wallet app — it lives on the blockchain, and access is controlled by a private key. Losing that key means losing the assets, with no customer support to call. Best practices are simple and non-negotiable: keep keys offline, use hardware wallets for meaningful amounts, and never share seed phrases. In a market of 18,090 coins, security habits separate owners from victims. 📌 Key Takeaway: Self-custody is freedom with a manual. The key is the asset; the wallet is just the door — and doors are only as safe as the habits of the person holding the key. #SelfCustody #CryptoSecurity #BinanceAlphaAlert
🛡️ Private Keys Are the Real Wallet: Whoever holds the keys holds the coins
On August 1, 2026, Your crypto is not stored 'in' a wallet app — it lives on the blockchain, and access is controlled by a private key. Losing that key means losing the assets, with no customer support to call.
Best practices are simple and non-negotiable: keep keys offline, use hardware wallets for meaningful amounts, and never share seed phrases. In a market of 18,090 coins, security habits separate owners from victims.

📌 Key Takeaway:
Self-custody is freedom with a manual. The key is the asset; the wallet is just the door — and doors are only as safe as the habits of the person holding the key.

#SelfCustody #CryptoSecurity
#BinanceAlphaAlert
#coldcardflawdrains594btc Tiền mã hóa của bạn có thực sự an toàn chỉ vì nằm trong ví cứng? Nhiều nhà đầu tư tin rằng lưu trữ coin trong ví cứng (hardware wallet) sẽ đảm bảo an toàn tuyệt đối. Tuy nhiên, các sự cố gần đây nhắc nhở chúng ta rằng: độ an toàn của tài sản phụ thuộc rất lớn vào cách cụm từ khôi phục (seed phrase) của ví được tạo ra. Một lỗ hổng vừa được phát hiện trong một số phiên bản firmware của ví cứng đã làm giảm tính ngẫu nhiên trong quá trình tạo seed phrase. Hậu quả là kẻ tấn công có thể khôi phục lại các chuỗi khóa bị ảnh hưởng và đánh cắp một lượng lớn Bitcoin 📌 Bài học quan trọng rút ra: ✅ Ví cứng chỉ an toàn khi phần mềm của nó an toàn: Thiết bị vật lý không thể bảo vệ bạn nếu phần mềm tạo khóa ban đầu bị lỗi. ✅ Cập nhật firmware là chưa đủ: Nếu seed phrase của bạn được tạo từ phiên bản firmware bị lỗi, việc nâng cấp phần mềm sau đó không thể khắc phục cho cụm từ khóa cũ. ✅ Tạo ví mới hoàn toàn: Giải pháp an toàn nhất là tạo một ví mới với seed phrase hoàn toàn mới (trên firmware đã sửa lỗi) và chuyển tài sản sang. ✅ Bảo mật nâng cao: Đối với khoản đầu tư lớn, hãy cân nhắc sử dụng đa chữ ký (Multisig) hoặc thêm độ ngẫu nhiên thủ công (entropy) khi tạo khóa để tăng cường bảo vệ. 🔒 Bảo mật crypto thực sự không chỉ là NƠI bạn lưu trữ, mà là CÁCH khóa cá nhân của bạn được tạo ra và bảo vệ. #bitcoin #CryptoSecurity #TrendingTopic
#coldcardflawdrains594btc
Tiền mã hóa của bạn có thực sự an toàn chỉ vì nằm trong ví cứng?

Nhiều nhà đầu tư tin rằng lưu trữ coin trong ví cứng (hardware wallet) sẽ đảm bảo an toàn tuyệt đối. Tuy nhiên, các sự cố gần đây nhắc nhở chúng ta rằng: độ an toàn của tài sản phụ thuộc rất lớn vào cách cụm từ khôi phục (seed phrase) của ví được tạo ra.

Một lỗ hổng vừa được phát hiện trong một số phiên bản firmware của ví cứng đã làm giảm tính ngẫu nhiên trong quá trình tạo seed phrase. Hậu quả là kẻ tấn công có thể khôi phục lại các chuỗi khóa bị ảnh hưởng và đánh cắp một lượng lớn Bitcoin

📌 Bài học quan trọng rút ra:
✅ Ví cứng chỉ an toàn khi phần mềm của nó an toàn: Thiết bị vật lý không thể bảo vệ bạn nếu phần mềm tạo khóa ban đầu bị lỗi.
✅ Cập nhật firmware là chưa đủ: Nếu seed phrase của bạn được tạo từ phiên bản firmware bị lỗi, việc nâng cấp phần mềm sau đó không thể khắc phục cho cụm từ khóa cũ.
✅ Tạo ví mới hoàn toàn: Giải pháp an toàn nhất là tạo một ví mới với seed phrase hoàn toàn mới (trên firmware đã sửa lỗi) và chuyển tài sản sang.
✅ Bảo mật nâng cao: Đối với khoản đầu tư lớn, hãy cân nhắc sử dụng đa chữ ký (Multisig) hoặc thêm độ ngẫu nhiên thủ công (entropy) khi tạo khóa để tăng cường bảo vệ.
🔒 Bảo mật crypto thực sự không chỉ là NƠI bạn lưu trữ, mà là CÁCH khóa cá nhân của bạn được tạo ra và bảo vệ.
#bitcoin #CryptoSecurity #TrendingTopic
🚨 The Safest Place for Bitcoin… Wasn’t Safe Enough. 👀💥 For years, hardware wallets have been considered the ultimate fortress for protecting Bitcoin. But the latest #ColdcardFlawDrains594BTC incident is a powerful reminder: 🔐 Offline doesn’t always mean untouchable. A security flaw reportedly led to the loss of 594 BTC, proving that even the most trusted solutions must continue evolving as attackers become more advanced. Bitcoin itself remains secure — but the tools we use to protect it must be tested, improved, and audited constantly. ⚡ The lesson is clear: 💡 In crypto, security is not a one-time decision… it’s an ongoing battle. Stay alert. Verify. Protect your keys. 🔥 #BTC #CryptoSecurity #Write2Earn #ColdcardFlawDrains594BTC $BTC {spot}(BTCUSDT)
🚨 The Safest Place for Bitcoin… Wasn’t Safe Enough. 👀💥
For years, hardware wallets have been considered the ultimate fortress for protecting Bitcoin.
But the latest #ColdcardFlawDrains594BTC incident is a powerful reminder:
🔐 Offline doesn’t always mean untouchable.
A security flaw reportedly led to the loss of 594 BTC, proving that even the most trusted solutions must continue evolving as attackers become more advanced.
Bitcoin itself remains secure — but the tools we use to protect it must be tested, improved, and audited constantly. ⚡
The lesson is clear:
💡 In crypto, security is not a one-time decision… it’s an ongoing battle.
Stay alert. Verify. Protect your keys. 🔥
#BTC #CryptoSecurity #Write2Earn
#ColdcardFlawDrains594BTC $BTC
🚨 Solana Foundation’s new CISO warns that AI is set to supercharge crypto scams. Deepfakes, fake identities, and AI-powered exploits could become the next major threat to blockchain security. Stay alert: verify every link, wallet, and message before signing. $SOL #CryptoSecurity #AI #Solana
🚨 Solana Foundation’s new CISO warns that AI is set to supercharge crypto scams.

Deepfakes, fake identities, and AI-powered exploits could become the next major threat to blockchain security. Stay alert: verify every link, wallet, and message before signing.

$SOL #CryptoSecurity #AI #Solana
·
--
#coldcardflawdrains594btc 594 BTC disappeared in 25 minutes. It wasn't a Bitcoin hack. It was a hardware wallet that had been quietly generating weak keys since 2021. Market Insight: Coinkite, the company behind Coldcard, confirmed a firmware bug going back to March 2021. Some devices skipped their true hardware random number generator and fell back to a predictable software version instead. Keys that were supposed to be mathematically impossible to guess became guessable through brute force. This is a failure in how one product handled self custody, not a flaw in Bitcoin itself, and that distinction matters a lot for anyone separating protocol risk from product risk. About 594 BTC, roughly $38M, drained from around 500 single sig wallets in just 25 minutes. Entropy on affected Mk3 seeds fell from 128 bits to around 40 bits. Galaxy Research later revised the total losses upward to about 1,082 BTC, near $70M, across roughly 1,196 addresses. Block, Trezor, and Ledger have said their devices aren't exposed. Bitcoin's price has stayed fairly steady through all of it. Bullish Scenario: This looks like an isolated hardware vendor bug rather than anything touching the chain itself, which could actually strengthen demand for audited custody setups, multisig, and regulated or insured storage options. Bearish Scenario: If the drain total keeps growing and migration stays slow, it could chip away at retail confidence in self custody and add some reputational weight to the broader Bitcoin narrative in the short term. Key Levels: BTC support sits near $60K psychologically, with deeper support around $58K if that breaks. Resistance is around $64K to $65K on any relief bounce. Trader Takeaway: This is a custody layer failure, not a Bitcoin failure. But it's a good reminder that "not your keys, not your coins" only holds up if the key generation itself actually works. Does this push you further toward multisig self custody, or toward regulated custodial solutions instead? $BTC $ETH $BNB #bitcoin #SelfCustody #CryptoSecurity
#coldcardflawdrains594btc
594 BTC disappeared in 25 minutes. It wasn't a Bitcoin hack. It was a hardware wallet that had been quietly generating weak keys since 2021.
Market Insight:
Coinkite, the company behind Coldcard, confirmed a firmware bug going back to March 2021. Some devices skipped their true hardware random number generator and fell back to a predictable software version instead. Keys that were supposed to be mathematically impossible to guess became guessable through brute force. This is a failure in how one product handled self custody, not a flaw in Bitcoin itself, and that distinction matters a lot for anyone separating protocol risk from product risk.
About 594 BTC, roughly $38M, drained from around 500 single sig wallets in just 25 minutes. Entropy on affected Mk3 seeds fell from 128 bits to around 40 bits. Galaxy Research later revised the total losses upward to about 1,082 BTC, near $70M, across roughly 1,196 addresses. Block, Trezor, and Ledger have said their devices aren't exposed. Bitcoin's price has stayed fairly steady through all of it.
Bullish Scenario: This looks like an isolated hardware vendor bug rather than anything touching the chain itself, which could actually strengthen demand for audited custody setups, multisig, and regulated or insured storage options.
Bearish Scenario: If the drain total keeps growing and migration stays slow, it could chip away at retail confidence in self custody and add some reputational weight to the broader Bitcoin narrative in the short term.
Key Levels: BTC support sits near $60K psychologically, with deeper support around $58K if that breaks. Resistance is around $64K to $65K on any relief bounce.
Trader Takeaway: This is a custody layer failure, not a Bitcoin failure. But it's a good reminder that "not your keys, not your coins" only holds up if the key generation itself actually works.
Does this push you further toward multisig self custody, or toward regulated custodial solutions instead?
$BTC $ETH $BNB #bitcoin
#SelfCustody #CryptoSecurity
🚨 $70M Gone, Zero Warning — The Real Lesson Isn't About Coldcard Galaxy Research just revised the damage upward: 1,082.65 BTC (~$70M) drained from 1,196 wallets in 41 minutes — nearly double the first estimate. No phishing. No malware. A firmware bug from 2021 quietly broke the randomness behind these wallets' private keys, and years later, someone rebuilt the keys offline. The real lesson: this is a money management failure, not just a tech failure. Every one of those 1,196 wallets made the same mistake — concentrating everything in a single point of failure. Doesn't matter if that point of failure is one exchange, one hardware brand, one firmware version, or one seed phrase. The math is the same: 🔐 One basket = one bug, one bad actor, one mistake away from zero 🔐 Split holdings = a single flaw caps your loss instead of wiping you out This is the same principle behind not putting your whole portfolio in one asset, one exchange, or one strategy. Self-custody doesn't exempt you from it — if anything, cold storage users are the ones who assume they're "safe enough" to skip this step. Practical diversification looks like: ✅ Multiple hardware wallet brands (not just multiple devices of the same one) ✅ A mix of self-custody and regulated custodial options ✅ Multisig setups where no single key/device can move funds alone Even CZ flagged this after the incident — but it's not a hot take, it's basic risk management applied to crypto. Bottom line: "Not your keys, not your coins" is still true. But "all your keys, one wallet" was never a safe rule to begin with. 👇 How do you diversify your holdings — multiple wallets, multisig, or a custodial/self-custody split? #ColdcardFlawDrains594BTC #CryptoSecurity #cz
🚨 $70M Gone, Zero Warning — The Real Lesson Isn't About Coldcard

Galaxy Research just revised the damage upward: 1,082.65 BTC (~$70M) drained from 1,196 wallets in 41 minutes — nearly double the first estimate. No phishing. No malware. A firmware bug from 2021 quietly broke the randomness behind these wallets' private keys, and years later, someone rebuilt the keys offline.
The real lesson: this is a money management failure, not just a tech failure.

Every one of those 1,196 wallets made the same mistake — concentrating everything in a single point of failure. Doesn't matter if that point of failure is one exchange, one hardware brand, one firmware version, or one seed phrase. The math is the same:
🔐 One basket = one bug, one bad actor, one mistake away from zero 🔐 Split holdings = a single flaw caps your loss instead of wiping you out

This is the same principle behind not putting your whole portfolio in one asset, one exchange, or one strategy. Self-custody doesn't exempt you from it — if anything, cold storage users are the ones who assume they're "safe enough" to skip this step.

Practical diversification looks like:
✅ Multiple hardware wallet brands (not just multiple devices of the same one)
✅ A mix of self-custody and regulated custodial options
✅ Multisig setups where no single key/device can move funds alone

Even CZ flagged this after the incident — but it's not a hot take, it's basic risk management applied to crypto.
Bottom line: "Not your keys, not your coins" is still true. But "all your keys, one wallet" was never a safe rule to begin with.

👇 How do you diversify your holdings — multiple wallets, multisig, or a custodial/self-custody split?

#ColdcardFlawDrains594BTC #CryptoSecurity #cz
Y A S I R -:
❤️😉👍
🚨 594 BTC Just Vanished in 25 Minutes — Here's the 30-Second 🚨 594 BTC Just Vanished in 25 Minutes A firmware bug in Coldcard hardware wallets — silently broken since 2021 — let an attacker drain ~$38M in BTC from 500 wallets before anyone noticed.An attacker exploited a flaw in how some Coldcard hardware wallets generated keys to steal roughly 594 bitcoin, worth about $38 million, from around 500 single-signature wallets in under 30 minutes. The bug: devices skipped their real random number generator and used predictable keys instead.The vulnerability, introduced in Coldcard firmware 4.0.0 in March 2021, caused devices to skip their hardware randomness generator and fall back to predictable software-based key generation seeded by nonsecret chip data. The exact thing a hardware wallet is supposed to guarantee — gone, for 5 years, quietly. Who's at risk: Mk3 devices on firmware 4.0.1+. Mk4, Q, and Mk5 look safe so far. The twist: BTC didn't even flinch — still trading above $64K.Bitcon traded above $64,000 in early Asian hours, with widespread drain appearing to have little impact on the market. $38M gone and the market shrugged. ⚠️ If you're on a Coldcard Mk3 — go check your firmware right now, don't scroll past this. 👇 Does this shake your trust in hardware wallets, or is this a one-off? #ColdcardFlawDrains594BTC #Bitcoin #CryptoSecurity
🚨 594 BTC Just Vanished in 25 Minutes — Here's the 30-Second
🚨 594 BTC Just Vanished in 25 Minutes

A firmware bug in Coldcard hardware wallets — silently broken since 2021 — let an attacker drain ~$38M in BTC from 500 wallets before anyone noticed.An attacker exploited a flaw in how some Coldcard hardware wallets generated keys to steal roughly 594 bitcoin, worth about $38 million, from around 500 single-signature wallets in under 30 minutes.

The bug: devices skipped their real random number generator and used predictable keys instead.The vulnerability, introduced in Coldcard firmware 4.0.0 in March 2021, caused devices to skip their hardware randomness generator and fall back to predictable software-based key generation seeded by nonsecret chip data. The exact thing a hardware wallet is supposed to guarantee — gone, for 5 years, quietly.

Who's at risk: Mk3 devices on firmware 4.0.1+. Mk4, Q, and Mk5 look safe so far.

The twist: BTC didn't even flinch — still trading above $64K.Bitcon traded above $64,000 in early Asian hours, with widespread drain appearing to have little impact on the market. $38M gone and the market shrugged.

⚠️ If you're on a Coldcard Mk3 — go check your firmware right now, don't scroll past this.

👇 Does this shake your trust in hardware wallets, or is this a one-off?
#ColdcardFlawDrains594BTC #Bitcoin #CryptoSecurity
🚨 Hardware Wallet Rumors Raise Security Concerns Reports claim an older Bitcoin hardware wallet vulnerability may have led to the theft of nearly 1,000 BTC (around $38 million) through an alleged AI-assisted brute-force attack. However, these claims remain unverified, and there is no official confirmation. If true, it would reinforce the importance of using updated hardware wallets and the latest firmware. While some traders link Bitcoin's recent volatility to these reports, investors should rely on confirmed information and manage risk instead of reacting to rumors. #Bitcoin #CryptoSecurity $BTC {spot}(BTCUSDT)
🚨 Hardware Wallet Rumors Raise Security Concerns

Reports claim an older Bitcoin hardware wallet vulnerability may have led to the theft of nearly 1,000 BTC (around $38 million) through an alleged AI-assisted brute-force attack. However, these claims remain unverified, and there is no official confirmation.

If true, it would reinforce the importance of using updated hardware wallets and the latest firmware. While some traders link Bitcoin's recent volatility to these reports, investors should rely on confirmed information and manage risk instead of reacting to rumors.

#Bitcoin #CryptoSecurity $BTC
Inicia sesión para explorar más contenidos
Únete a usuarios globales de criptomonedas en Binance Square
⚡️ Obtén información útil y actualizada sobre criptos.
💬 Avalado por el mayor exchange de criptomonedas en el mundo.
👍 Descubre perspectivas reales de creadores verificados.
Email/número de teléfono