Binance Square
#coldcardexploitattackerscontrol1366btc

coldcardexploitattackerscontrol1366btc

39,164 views
295 Discussing
News GURUU
·
--
Bearish
#coldcardexploitattackerscontrol1366btc #sahara 🚨 COLDcard ATTACKS: BTC HOLDERS ON ALERT! ⚠️ Attackers reportedly controlled 1,366 BTC, following multiple attack waves. ✅ Security risk is still active ✅ Coldcard users should update firmware ✅ Move funds to a new seed if potentially exposed 📊 Trading View: SELL/AVOID risky exposure for now. Security concerns can trigger further panic; wait for the situation to stabilize before buying. ❓ Would you buy BTC during this security scare, or stay out until the attacks are over? "CLICK ON THE BELOW YELLOW COIN TAG TO GO TO DESIRED TRADING PAGE TO GET BENEFIT TRADE"👇👇👇👇 $BTC $SAHARA $GRASS {future}(GRASSUSDT) {spot}(SAHARAUSDT) {spot}(BTCUSDT) #BTC
#coldcardexploitattackerscontrol1366btc #sahara
🚨 COLDcard ATTACKS: BTC HOLDERS ON ALERT!
⚠️ Attackers reportedly controlled 1,366 BTC, following multiple attack waves.

✅ Security risk is still active
✅ Coldcard users should update firmware
✅ Move funds to a new seed if potentially exposed
📊 Trading View: SELL/AVOID risky exposure for now. Security concerns can trigger further panic; wait for the situation to stabilize before buying.

❓ Would you buy BTC during this security scare, or stay out until the attacks are over?
"CLICK ON THE BELOW YELLOW COIN TAG TO GO TO DESIRED TRADING PAGE TO GET BENEFIT TRADE"👇👇👇👇
$BTC $SAHARA $GRASS
#BTC
·
--
Bullish
#coldcardexploitattackerscontrol1366btc Yesterday: 594 BTC gone in 25 mins. 😱 Today: Attackers control 1,366.38 BTC! 📉📉📉 Galaxy Research says it’s officially 3 waves of attacks. Are they done yet? 🕵️‍♂️ Maybe it's one hacker with a better tool, or more joining the party! Total chaos for Coldcard users since March 2021. 💸 What to do? Update firmware NOW, move to a NEW seed phrase, or maybe just store your BTC under your mattress? (Joke!) 😂 Don’t get rekt! Not financial advice. DYOR! Referral code: VINHTOCDO #BTC #Coldcard #HackerAlert #VINHTOCDO $BTC {future}(BTCUSDT) $SAHARA {future}(SAHARAUSDT) $GRASS {future}(GRASSUSDT)
#coldcardexploitattackerscontrol1366btc
Yesterday: 594 BTC gone in 25 mins. 😱
Today: Attackers control 1,366.38 BTC! 📉📉📉
Galaxy Research says it’s officially 3 waves of attacks. Are they done yet? 🕵️‍♂️ Maybe it's one hacker with a better tool, or more joining the party! Total chaos for Coldcard users since March 2021. 💸
What to do? Update firmware NOW, move to a NEW seed phrase, or maybe just store your BTC under your mattress? (Joke!) 😂 Don’t get rekt!
Not financial advice. DYOR!
Referral code: VINHTOCDO
#BTC #Coldcard #HackerAlert #VINHTOCDO
$BTC
$SAHARA
$GRASS
CRYPTO WALA 99:
I'm already follow you guys thanks
Article
 $88.6 Million Vanishes: The Coldcard Hack Waves That Are Shaking Bitcoin's SecurityThe crypto community is on high alert as one of the most significant hardware wallet security breaches in recent memory continues to unfold. Losses have now surpassed a staggering $88.6 million, and the on-chain data is painting a complex picture of potential attackers and evolving tactics. 🚨 According to Galaxy Research, a third wave of attacks has been detected, targeting addresses linked to Coldcard devices. This fresh assault added another 207.7 $BTC to the total loot, bringing the grand total to a massive 1,367 BTC swiped from over 4,500 addresses. The sheer scale of this heist is a stark reminder that even "cold" storage isn't always impenetrable. 🥶 Here’s the breakdown of what happened: The First Two Waves: These were eerily similar. The attacker (or group) used shared collection addresses and had a consistent transaction structure. However, a key difference in transaction fees and "replace-by-fee" signals left room for doubt about whether it was the same person pulling the strings.The Third Wave: A Shift in Strategy 🕵️‍♂️: This wave is a complete curveball. Instead of sending stolen funds to shared addresses, they created a new target address for every single victim. They also switched to a different address format and only scanned the default derivation path. This screams that either the same hacker re-engineered their tools to make tracking harder, or a copycat attacker has entered the chat.The Victims 👥: Most of the losses are coming from wallets with balances under 1 BTC, but the big fish (larger balances) are where the real value lies. This distribution suggests the targets are primarily individual users, not massive institutions.The Stolen Hoard 💰: The attackers are sitting on a mountain of Bitcoin, valued at nearly $89 million. Interestingly, none of these coins have been moved yet. It's a waiting game to see what happens next. This entire exploit is tied back to vulnerable Coldcard software that was released way back in March 2021. It's a classic case of an old vulnerability coming back to haunt users. The key takeaway?  Always keep your firmware updated and be aware of even historical vulnerabilities.  A wallet is only as secure as its code and the user's diligence. 🔐 What do you think will happen to the Bitcoin price if this 88million in BTC is eventually dumped on the market? Drop your thoughts below! 👇 $ETH $COLD.US #coldcardexploitattackerscontrol1366btc

 $88.6 Million Vanishes: The Coldcard Hack Waves That Are Shaking Bitcoin's Security

The crypto community is on high alert as one of the most significant hardware wallet security breaches in recent memory continues to unfold. Losses have now surpassed a staggering $88.6 million, and the on-chain data is painting a complex picture of potential attackers and evolving tactics. 🚨
According to Galaxy Research, a third wave of attacks has been detected, targeting addresses linked to Coldcard devices. This fresh assault added another 207.7 $BTC to the total loot, bringing the grand total to a massive 1,367 BTC swiped from over 4,500 addresses. The sheer scale of this heist is a stark reminder that even "cold" storage isn't always impenetrable. 🥶
Here’s the breakdown of what happened:
The First Two Waves: These were eerily similar. The attacker (or group) used shared collection addresses and had a consistent transaction structure. However, a key difference in transaction fees and "replace-by-fee" signals left room for doubt about whether it was the same person pulling the strings.The Third Wave: A Shift in Strategy 🕵️‍♂️: This wave is a complete curveball. Instead of sending stolen funds to shared addresses, they created a new target address for every single victim. They also switched to a different address format and only scanned the default derivation path. This screams that either the same hacker re-engineered their tools to make tracking harder, or a copycat attacker has entered the chat.The Victims 👥: Most of the losses are coming from wallets with balances under 1 BTC, but the big fish (larger balances) are where the real value lies. This distribution suggests the targets are primarily individual users, not massive institutions.The Stolen Hoard 💰: The attackers are sitting on a mountain of Bitcoin, valued at nearly $89 million. Interestingly, none of these coins have been moved yet. It's a waiting game to see what happens next.
This entire exploit is tied back to vulnerable Coldcard software that was released way back in March 2021. It's a classic case of an old vulnerability coming back to haunt users.
The key takeaway?
Always keep your firmware updated and be aware of even historical vulnerabilities.
A wallet is only as secure as its code and the user's diligence. 🔐
What do you think will happen to the Bitcoin price if this 88million in BTC is eventually dumped on the market? Drop your thoughts below! 👇
$ETH $COLD.US
#coldcardexploitattackerscontrol1366btc
Article
Coldcard Attack Losses Rise to $88.6M—Third Wave ConfirmedGalaxy Research has revised the Coldcard attack losses upward. Three waves have now drained 1,367 BTC from 4,585 addresses. 📊 The Numbers Total drained: 1,367.05 $BTC (~$88.6M) Addresses affected: 4,585 Attack waves: 3 Wave 1 (July 30): 1,082.65 BTC1,196 addresses41 minutes Wave 2 (July 31): 76.16 BTC1,478 addresses Wave 3 (Aug 1): 207.73 BTC1,912 addresses 🔍 How Each Wave Was Different Wave 1: Same fee, no change outputs, one victim per transaction Wave 2: Similar pattern to wave 1 Wave 3: Different transaction patternIndividual destinations (not shared collector addresses)Batching multiple victims per sweepOnly checking the default derivation path Galaxy said it is confident each wave is one operator. But they can't confirm if the same attacker is behind all three. ⚙️ Technical Details Affected devices: Mk2 and Mk3: firmware 4.0.1 through 4.1.9Mk4 and Mk5: before standard version 5.6.0Q: before version 1.5.0Q The flaw: Software randomiser instead of hardware one Effective search space: Mk2/Mk3: ~40 bitsMk4/Q/Mk5: ~72 bits (vs intended 128) 🛡️ What Coldcard Users Should Do Install the fixed firmwareGenerate a completely new seedVerify the backup and receiving addressSend a test transaction firstMove the remaining balanceKeep the previous backup until migration is confirmed Important: Installing new firmware only fixes future seed generation. It cannot add entropy to an existing seed. $ETH $BNB #coldcardexploitattackerscontrol1366btc

Coldcard Attack Losses Rise to $88.6M—Third Wave Confirmed

Galaxy Research has revised the Coldcard attack losses upward. Three waves have now drained 1,367 BTC from 4,585 addresses.
📊 The Numbers
Total drained: 1,367.05 $BTC (~$88.6M)
Addresses affected: 4,585
Attack waves: 3
Wave 1 (July 30):
1,082.65 BTC1,196 addresses41 minutes
Wave 2 (July 31):
76.16 BTC1,478 addresses
Wave 3 (Aug 1):
207.73 BTC1,912 addresses
🔍 How Each Wave Was Different
Wave 1: Same fee, no change outputs, one victim per transaction
Wave 2: Similar pattern to wave 1
Wave 3:
Different transaction patternIndividual destinations (not shared collector addresses)Batching multiple victims per sweepOnly checking the default derivation path
Galaxy said it is confident each wave is one operator. But they can't confirm if the same attacker is behind all three.
⚙️ Technical Details
Affected devices:
Mk2 and Mk3: firmware 4.0.1 through 4.1.9Mk4 and Mk5: before standard version 5.6.0Q: before version 1.5.0Q
The flaw: Software randomiser instead of hardware one
Effective search space:
Mk2/Mk3: ~40 bitsMk4/Q/Mk5: ~72 bits (vs intended 128)
🛡️ What Coldcard Users Should Do
Install the fixed firmwareGenerate a completely new seedVerify the backup and receiving addressSend a test transaction firstMove the remaining balanceKeep the previous backup until migration is confirmed
Important: Installing new firmware only fixes future seed generation. It cannot add entropy to an existing seed.
$ETH $BNB
#coldcardexploitattackerscontrol1366btc
Coldcard Hack Renews Self-Custody DebateA major security incident involving Coldcard-linked wallets has reignited the debate over self-custody after reported Bitcoin thefts exceeded 1,158 $BTC , valued at more than $75 million. Security researchers say the attack unfolded in multiple waves, prompting urgent warnings for potentially affected users. One notable trend following the incident has been a surge in smaller Bitcoin transfers, a pattern that researchers say resembles wallet movements seen after the FTX collapse. The increase suggests many users are proactively moving funds to reduce risk rather than waiting for further developments. According to Galaxy Research, a second wave of thefts expanded the number of affected addresses while adding to the total losses. Researchers also reported that the stolen funds remain largely untouched, allowing investigators to continue monitoring the attacker-controlled wallets for any future movement. Security experts continue to warn that the situation may not be over. Users with potentially affected single-signature Coldcard wallets are being advised to transfer their $BTC to newly generated wallets as a precaution, while multisignature users are believed to face lower risk due to additional authorization requirements. The incident has also revived the long-running discussion around self-custody. Some critics argue that the attack highlights the risks of managing private keys independently, while supporters maintain that self-custody remains the safest option when proper security practices and wallet management procedures are followed. #USToCancelIranAttackSubjectToDeal #BitcoinMiningDifficultyFalls14%FromYearHigh #ColdcardExploitAttackersControl1366BTC

Coldcard Hack Renews Self-Custody Debate

A major security incident involving Coldcard-linked wallets has reignited the debate over self-custody after reported Bitcoin thefts exceeded 1,158 $BTC , valued at more than $75 million. Security researchers say the attack unfolded in multiple waves, prompting urgent warnings for potentially affected users.
One notable trend following the incident has been a surge in smaller Bitcoin transfers, a pattern that researchers say resembles wallet movements seen after the FTX collapse. The increase suggests many users are proactively moving funds to reduce risk rather than waiting for further developments.
According to Galaxy Research, a second wave of thefts expanded the number of affected addresses while adding to the total losses. Researchers also reported that the stolen funds remain largely untouched, allowing investigators to continue monitoring the attacker-controlled wallets for any future movement.
Security experts continue to warn that the situation may not be over. Users with potentially affected single-signature Coldcard wallets are being advised to transfer their $BTC to newly generated wallets as a precaution, while multisignature users are believed to face lower risk due to additional authorization requirements.
The incident has also revived the long-running discussion around self-custody. Some critics argue that the attack highlights the risks of managing private keys independently, while supporters maintain that self-custody remains the safest option when proper security practices and wallet management procedures are followed.
#USToCancelIranAttackSubjectToDeal #BitcoinMiningDifficultyFalls14%FromYearHigh #ColdcardExploitAttackersControl1366BTC
#ColdcardExploitAttackersControl1366BTC We mapped the flow of funds for the Coldcard vulnerability based on the pattern identified by engineers at Block and shared by @clay_garrett 1,196 addresses drained in full for 1,082.65 BTC (~$70.2M) between 01:10:20 and 01:51:26 UTC on Jul 30 — a 41-minute window, blocks 960,183-960,191. That preceded the hardware-wallet vendor's public advisory by ~30 hours. Signature: every sweep paid an identical hardcoded 30.0 sat/vB — a 30-75x overpay vs the 0.4-1.0 sat/vB median that week — and left no change output. That looks like an automated tool spending keys it already held, not owners moving funds. Victims: 1,183 native segwit (BIP-84), 7 BIP-49, 6 BIP-44 — consistent with multi-path key scanning. Proceeds consolidated within minutes and have NOT moved since: - bc1qq85v2c9...cu9r — 562.02 BTC - bc1qx76cae2...fhe3 — 398.48 BTC - bc1q8jy96fe...tp3q — 89.62 BTC - bc1qnk4zh9q...fecp0 — 32.45 BTC (unmoved)$BTC {future}(BTCUSDT)
#ColdcardExploitAttackersControl1366BTC We mapped the flow of funds for the Coldcard vulnerability based on the pattern identified by engineers at Block and shared by @clay_garrett

1,196 addresses drained in full for 1,082.65 BTC (~$70.2M) between 01:10:20 and 01:51:26 UTC on Jul 30 — a 41-minute window, blocks 960,183-960,191. That preceded the hardware-wallet vendor's public advisory by ~30 hours.

Signature: every sweep paid an identical hardcoded 30.0 sat/vB — a 30-75x overpay vs the 0.4-1.0 sat/vB median that week — and left no change output. That looks like an automated tool spending keys it already held, not owners moving funds. Victims: 1,183 native segwit (BIP-84), 7 BIP-49, 6 BIP-44 — consistent with multi-path key scanning.

Proceeds consolidated within minutes and have NOT moved since:
- bc1qq85v2c9...cu9r — 562.02 BTC
- bc1qx76cae2...fhe3 — 398.48 BTC
- bc1q8jy96fe...tp3q — 89.62 BTC
- bc1qnk4zh9q...fecp0 — 32.45 BTC (unmoved)$BTC
Coldcard Hack Losses Top $75MA second wave of attacks linked to the reported Coldcard wallet vulnerability has pushed total Bitcoin losses above 1,158 BTC, valued at approximately $75 million, according to research from Galaxy Research. The two attack waves reportedly affected 2,673 wallet addresses between July 30 and July 31, making it one of the largest recent self-custody wallet security incidents. Galaxy Research reported that the first attack drained more than 1,082 BTC from 1,195 addresses in less than an hour, while a second campaign targeted 1,478 additional addresses, stealing another 76 BTC over several hours. Although the second attack affected more wallets, the average balance stolen from each victim was significantly smaller than in the initial wave. Researchers also noted that the stolen $BTC has not yet been moved, with all funds reportedly remaining across seven attacker-controlled wallets. Security experts are closely monitoring the addresses, as any transfers to exchanges, bridges, or mixing services could provide new clues about the attackers' next steps. The incident has prompted renewed warnings for Coldcard users. Security researchers recommend that anyone using potentially affected single-signature wallets immediately transfer their $BTC to a newly generated wallet, as firmware updates alone cannot secure wallet seeds that have already been created. Multisignature wallet users are believed to face significantly lower risk because spending requires multiple approvals. The reported attack serves as another reminder that self-custody provides full control over digital assets but also places complete responsibility for security on the wallet owner. Users are encouraged to verify official security notices, keep firmware updated, and generate new wallets if they believe their funds could be affected. #BitcoinMiningDifficultyFalls14%FromYearHigh #ColdcardExploitAttackersControl1366BTC #ColdcardFlawDrains594BTC

Coldcard Hack Losses Top $75M

A second wave of attacks linked to the reported Coldcard wallet vulnerability has pushed total Bitcoin losses above 1,158 BTC, valued at approximately $75 million, according to research from Galaxy Research. The two attack waves reportedly affected 2,673 wallet addresses between July 30 and July 31, making it one of the largest recent self-custody wallet security incidents.
Galaxy Research reported that the first attack drained more than 1,082 BTC from 1,195 addresses in less than an hour, while a second campaign targeted 1,478 additional addresses, stealing another 76 BTC over several hours. Although the second attack affected more wallets, the average balance stolen from each victim was significantly smaller than in the initial wave.
Researchers also noted that the stolen $BTC has not yet been moved, with all funds reportedly remaining across seven attacker-controlled wallets. Security experts are closely monitoring the addresses, as any transfers to exchanges, bridges, or mixing services could provide new clues about the attackers' next steps.
The incident has prompted renewed warnings for Coldcard users. Security researchers recommend that anyone using potentially affected single-signature wallets immediately transfer their $BTC to a newly generated wallet, as firmware updates alone cannot secure wallet seeds that have already been created. Multisignature wallet users are believed to face significantly lower risk because spending requires multiple approvals.
The reported attack serves as another reminder that self-custody provides full control over digital assets but also places complete responsibility for security on the wallet owner. Users are encouraged to verify official security notices, keep firmware updated, and generate new wallets if they believe their funds could be affected.
#BitcoinMiningDifficultyFalls14%FromYearHigh #ColdcardExploitAttackersControl1366BTC #ColdcardFlawDrains594BTC
#ColdcardExploitAttackersControl1366BTC Whoa... seriously? A vulnerability in Coldcard was exploited in an attack, resulting in losses exceeding $88 million. A total of 1,367 BTC was stolen, affecting more than 4,500 victims. At this point, even cold wallets can no longer be considered completely safe.$BTC {future}(BTCUSDT)
#ColdcardExploitAttackersControl1366BTC Whoa... seriously?
A vulnerability in Coldcard was exploited in an attack, resulting in losses exceeding $88 million.
A total of 1,367 BTC was stolen, affecting more than 4,500 victims.
At this point, even cold wallets can no longer be considered completely safe.$BTC
#ColdcardExploitAttackersControl1366BTC 🐋 WHALE WATCH : A third wave of suspected Coldcard wallet drains hit pulling another 207.7 BTC. Running total: 1367 $BTC ($88.6M) across 4,585 addresses. If you generated a seed phrase on affected firmware without a passphrase move your funds now. Fresh seed patched firmware. Cold storage is only as secure as the entropy that created it.$BTC {future}(BTCUSDT) $STBL {future}(STBLUSDT)
#ColdcardExploitAttackersControl1366BTC 🐋 WHALE WATCH : A third wave of suspected Coldcard wallet drains hit pulling another 207.7 BTC.

Running total: 1367 $BTC ($88.6M) across 4,585 addresses.

If you generated a seed phrase on affected firmware without a passphrase move your funds now. Fresh seed patched firmware.

Cold storage is only as secure as the entropy that created it.$BTC
$STBL
#coldcardexploitattackerscontrol1366btc ​🚨 CRITICAL SECURITY ALERT: EXPANDING EXPLOIT ON COLCARD USERS 🚨 ​The bleeding hasn't stopped. What began with an alarming 594 BTC drained in under 30 minutes yesterday has now escalated—exploiters currently hold over 1,366.38 BTC under their control! ​Analysis from Galaxy Research confirms three distinct waves of attacks so far. The burning question every holder is asking: Is the assault over, or are more breaches incoming? Whether this is a solitary hacker deploying upgraded exploit vectors or multiple attackers capitalizing on legacy vulnerabilities dating back to March 2021, the danger is real. ​🛡️ IMMEDIATE ACTION PLAN (PROTECT YOUR ASSETS): ​Patch Right Away: Update your device firmware to the latest official release without delay. ​Generate a New Seed: Transfer your funds to a completely fresh, uncompromised seed phrase. ​Stay Proactive: Cold storage is only as safe as your security hygiene—don't wait until your wallet is drained to take action! ​Stay paranoid, stay secure, and protect your holdings! 🔒⚡ ​Disclaimer: Not financial advice. Always Do Your Own Research (DYOR). ​#BTC #Coldcard #HackerAlert $VELVET {future}(VELVETUSDT) $BEAT {future}(BEATUSDT) $BTC {future}(BTCUSDT)
#coldcardexploitattackerscontrol1366btc

​🚨 CRITICAL SECURITY ALERT: EXPANDING EXPLOIT ON COLCARD USERS 🚨

​The bleeding hasn't stopped. What began with an alarming 594 BTC drained in under 30 minutes yesterday has now escalated—exploiters currently hold over 1,366.38 BTC under their control!

​Analysis from Galaxy Research confirms three distinct waves of attacks so far. The burning question every holder is asking: Is the assault over, or are more breaches incoming? Whether this is a solitary hacker deploying upgraded exploit vectors or multiple attackers capitalizing on legacy vulnerabilities dating back to March 2021, the danger is real.

​🛡️ IMMEDIATE ACTION PLAN (PROTECT YOUR ASSETS):

​Patch Right Away: Update your device firmware to the latest official release without delay.

​Generate a New Seed: Transfer your funds to a completely fresh, uncompromised seed phrase.

​Stay Proactive: Cold storage is only as safe as your security hygiene—don't wait until your wallet is drained to take action!

​Stay paranoid, stay secure, and protect your holdings! 🔒⚡

​Disclaimer: Not financial advice. Always Do Your Own Research (DYOR).

#BTC #Coldcard #HackerAlert

$VELVET
$BEAT
$BTC
ZoyaQueen16:
How does BABY help improve Bitcoin's long-term utility?
#ColdcardExploitAttackersControl1366BTC That headline appears to be referring to a real, current Coldcard incident, but the wording matters. What reliable reporting indicates: Coinkite published a security advisory on July 30, 2026, warning that seeds generated on affected Coldcard firmware can be at risk if they were created without enough independent dice entropy and without a strong BIP-39 passphrase. (blog.coinkite.com) The advisory says Mk2/Mk3 firmware 4.0.1 through 4.1.9 are affected, and that some Mk4, Q, and Mk5 devices before fixed firmware releases were also impacted with reduced entropy. (blog.coinkite.com) Multiple recent reports say attackers have stolen about 1,367 BTC in total across several attack waves. One report cites 1,367.05 BTC across 4,585 addresses, and another cites Galaxy Research confirming the same scale. (cryptotimes.io) So the core claim is plausibly true, but I’d phrase it more carefully as: “Recent reporting says attackers exploited a Coldcard seed-generation flaw and have stolen roughly 1,367 BTC so far.” (cryptotimes.io) A few important nuances: “Attackers control 1366 BTC” is slightly imprecise; the latest figures I found are closer to 1,367 BTC, not exactly 1,366. (cryptotimes.io) This does not mean all Coldcard users are affected. The risk depends on which device/firmware was used, how the seed was generated, and whether the wallet had a strong unique passphrase. (blog.coinkite.com) Coinkite’s own guidance is to treat funds from affected seeds as at risk and migrate to a newly generated wallet on fixed firmware. (blog.coinkite.com) If you use Coldcard, the safest immediate takeaway is: Do not generate a new seed on affected/unpatched firmware. Check whether your wallet seed was created on impacted firmware. If exposed, move funds to a new wallet generated after updating to fixed firmware, ideally with strong entropy and a unique BIP-39 passphrase. (blog.coinkite.com)col$COLD.US {stock_us}(COLD.US) $BTC {future}(BTCUSDT) $COIN.US {stock_us}(COIN.US)
#ColdcardExploitAttackersControl1366BTC That headline appears to be referring to a real, current Coldcard incident, but the wording matters.

What reliable reporting indicates:
Coinkite published a security advisory on July 30, 2026, warning that seeds generated on affected Coldcard firmware can be at risk if they were created without enough independent dice entropy and without a strong BIP-39 passphrase. (blog.coinkite.com)
The advisory says Mk2/Mk3 firmware 4.0.1 through 4.1.9 are affected, and that some Mk4, Q, and Mk5 devices before fixed firmware releases were also impacted with reduced entropy. (blog.coinkite.com)
Multiple recent reports say attackers have stolen about 1,367 BTC in total across several attack waves. One report cites 1,367.05 BTC across 4,585 addresses, and another cites Galaxy Research confirming the same scale. (cryptotimes.io)

So the core claim is plausibly true, but I’d phrase it more carefully as:

“Recent reporting says attackers exploited a Coldcard seed-generation flaw and have stolen roughly 1,367 BTC so far.” (cryptotimes.io)

A few important nuances:
“Attackers control 1366 BTC” is slightly imprecise; the latest figures I found are closer to 1,367 BTC, not exactly 1,366. (cryptotimes.io)
This does not mean all Coldcard users are affected. The risk depends on which device/firmware was used, how the seed was generated, and whether the wallet had a strong unique passphrase. (blog.coinkite.com)
Coinkite’s own guidance is to treat funds from affected seeds as at risk and migrate to a newly generated wallet on fixed firmware. (blog.coinkite.com)

If you use Coldcard, the safest immediate takeaway is:
Do not generate a new seed on affected/unpatched firmware.
Check whether your wallet seed was created on impacted firmware.
If exposed, move funds to a new wallet generated after updating to fixed firmware, ideally with strong entropy and a unique BIP-39 passphrase. (blog.coinkite.com)col$COLD.US
$BTC
$COIN.US
BTC-0.91%
COLDUS+3.30%
COINUS-1.49%
#coldcardexploitattackerscontrol1366btc Yesterday: 594 BTC was lost in 25 minutes. 😱 Today: the intruders are controlling 1,366.38 BTC! 📉📉📉 “Galaxy Research” says it’s officially 3 waves of attacks. Is it over? 🕵️‍♂️ Maybe it’s a single hacker with a better tool, or maybe more joined the party! Absolute chaos for Coldcard users since March 2021. 💸 What do you do? Update the firmware now, and move to a new Seed phrase, or maybe just store your BTC under your pillow? (Just kidding!) 😂 Don’t be fooled! Not financial advice. Please continue #BTC #Coldcard #HackerAlert $BTC {future}(BTCUSDT)
#coldcardexploitattackerscontrol1366btc
Yesterday: 594 BTC was lost in 25 minutes. 😱
Today: the intruders are controlling 1,366.38 BTC! 📉📉📉
“Galaxy Research” says it’s officially 3 waves of attacks. Is it over? 🕵️‍♂️ Maybe it’s a single hacker with a better tool, or maybe more joined the party! Absolute chaos for Coldcard users since March 2021. 💸
What do you do? Update the firmware now, and move to a new Seed phrase, or maybe just store your BTC under your pillow? (Just kidding!) 😂 Don’t be fooled!
Not financial advice.

Please continue

#BTC #Coldcard #HackerAlert
$BTC
Muhammad muaaz0334:
Hello m.elon musk space x how are you i know you are a son off prostitute how many germs will be proceed of i don't know my money gone i will take a grave my god will himself take you from you are a very poor man my 3 times money going to eat allha will have to account you collect the money ate
Article
Bitcoin Sentiment Hits Historic Low—Coldcard Exploit Sparks Self-Custody FearFor every 1 positive Bitcoin comment, there are only 0.58 positive ones. The fear is deeper than FTX, Mt. Gox, or COVID-19. 📊 The Data Santiment reports Bitcoin's positive-to-negative commentary ratio has hit the lowest level since modern tracking began. 0.58 positive : 1.00 negativeFear has surpassed greed by a margin not seen during FTX, Mt. Gox, or COVID-19 Black Thursday 🔍 Why This Time Is Different This isn't an exchange hack. It's not a bridge exploit. It's not a smart contract bug. It's a Coldcard hardware wallet firmware flaw. The one thing that was supposed to be impenetrable—cold storage—has a wound. The difference: Exchange hacks = anger at centralized entitiesBridge exploits = questions about cross-chain architectureSmart contract bugs = debates about auditingColdcard exploit = the self-custody mental model is broken 🧠 What This Means The panic exceeds war fears from earlier this yearThe attack is on self-sovereignty, not just dollarsThe trust bar for hardware solutions just rose ⚠️ What to Watch On-chain flows: Exchange deposits could signal a flight to custodial convenienceHardware wallet trust: Will users move away from self-custody?Regulatory impact: Could this tilt policy toward stricter hardware certification? 📉 Bottom Line The Coldcard exploit is a crisis of confidence deeper than its $89 million financial impact. The crowd has spoken: self-custody just got less comfortable. $BTC $ETH $BNB #coldcardexploitattackerscontrol1366btc

Bitcoin Sentiment Hits Historic Low—Coldcard Exploit Sparks Self-Custody Fear

For every 1 positive Bitcoin comment, there are only 0.58 positive ones. The fear is deeper than FTX, Mt. Gox, or COVID-19.
📊 The Data
Santiment reports Bitcoin's positive-to-negative commentary ratio has hit the lowest level since modern tracking began.
0.58 positive : 1.00 negativeFear has surpassed greed by a margin not seen during FTX, Mt. Gox, or COVID-19 Black Thursday
🔍 Why This Time Is Different
This isn't an exchange hack. It's not a bridge exploit. It's not a smart contract bug.
It's a Coldcard hardware wallet firmware flaw.
The one thing that was supposed to be impenetrable—cold storage—has a wound.
The difference:
Exchange hacks = anger at centralized entitiesBridge exploits = questions about cross-chain architectureSmart contract bugs = debates about auditingColdcard exploit = the self-custody mental model is broken
🧠 What This Means
The panic exceeds war fears from earlier this yearThe attack is on self-sovereignty, not just dollarsThe trust bar for hardware solutions just rose
⚠️ What to Watch
On-chain flows: Exchange deposits could signal a flight to custodial convenienceHardware wallet trust: Will users move away from self-custody?Regulatory impact: Could this tilt policy toward stricter hardware certification?
📉 Bottom Line
The Coldcard exploit is a crisis of confidence deeper than its $89 million financial impact. The crowd has spoken: self-custody just got less comfortable.
$BTC $ETH $BNB
#coldcardexploitattackerscontrol1366btc
🔐 A Hardware Wallet Bug Led to a Massive Bitcoin Theft Hundreds of $BTC wallets were drained after attackers exploited a flaw affecting certain Coldcard hardware wallet firmware versions used during wallet creation. Around 594 Bitcoin was stolen, with blockchain data showing the funds later consolidated into a single address. 😬 Coinkite has acknowledged the issue and warned affected users to check whether their wallets were created with vulnerable firmware. It's a strong reminder that even offline storage depends on secure software from day one. #BitcoinMiningDifficultyFalls14%FromYearHigh #ColdcardExploitAttackersControl1366BTC
🔐 A Hardware Wallet Bug Led to a Massive Bitcoin Theft

Hundreds of $BTC wallets were drained after attackers exploited a flaw affecting certain Coldcard hardware wallet firmware versions used during wallet creation. Around 594 Bitcoin was stolen, with blockchain data showing the funds later consolidated into a single address. 😬 Coinkite has acknowledged the issue and warned affected users to check whether their wallets were created with vulnerable firmware. It's a strong reminder that even offline storage depends on secure software from day one.
#BitcoinMiningDifficultyFalls14%FromYearHigh #ColdcardExploitAttackersControl1366BTC
Log in to explore more content
Join global crypto users on Binance Square
⚡️ Get latest and useful information about crypto.
💬 Trusted by the world’s largest crypto exchange.
👍 Discover real insights from verified creators.
Email / Phone number