All about Coldcard’s $38M Mk3 exploit and what’s next for Bitcoin self-custody

On the thirtieth of July, Bitcoin’s [BTC] self-custody confronted a stress take a look at. An attacker drained about 594 BTC value over $38 million from 500 Coldcard wallets inside about 15–25 minutes.
This motion is a real-world examination of Bitcoin’s core ethos, as these customers did all the things proper. They purchased a good air-gapped system, by no means entered the seed on a networked pc, and left funds untouched for years, however nonetheless misplaced cash.
Are different {hardware} wallets in danger?
Hacker drains 594 BTC from 500 Coldcard wallets
As per on-chain investigations, an attacker exploited a Coldcard Mk3 seed era flaw to steal BTC in lower than half an hour. The bug made some Mk3 restoration phrases predictable resulting from weak entropy.
Usually, a {hardware} pockets generates the seed phrase utilizing true randomness. Nevertheless, the flaw lowered the variety of guesses a hacker wanted to make by altering how the system chosen the phrases
As an alternative of selecting from 340 undecillion combos, the pockets was selecting from a number of billion. Regardless of that being an enormous quantity, it’s astronomically smaller than what Bitcoin’s safety is designed to offer.


Even so, the seed phrase seemed regular, however the phrases got here from the identical thesaurus. Therefore, the search area turned extraordinarily smaller for the hacker.
Coldcard safety advisory
Coldcard has confronted backlash resulting from this incident regardless of warning Mk3 customers that their funds weren’t protected. Nevertheless, those that protected with a BIP-39 passphrase confronted minimal danger.
Moreover, seedphrases generated on Mk4, Q, and Mk5 earlier than the mounted firmware launch have been affected too. Coldcard advisory report said,
In the event you generated a seed on a Mk3 after firmware 4.0.1, your funds could also be in danger.
Different Coinkite {hardware} signers, reminiscent of TAPSIGNER, OPENDIME, and SATSCARD, remained unaffected. The corporate suggested Mk3 customers to maneuver their funds.
They suggest migrating funds to a newly generated seed on an unaffected system. Furthermore, they might use a powerful BIP-39 passphrase or dice-only seed.
Regardless of the corporate’s detailed technical analysis, the very act of transferring funds underneath time stress creates new alternatives for person error, phishing, or rushed errors.
Self-custody’s stress take a look at
The assault has unfold panic throughout the Bitcoin group, however the core ecosystem stays intact.
It is because solely single-sig {hardware} wallets have been affected, prompting the addition of additional layers of safety to higher them. Thus, passphrases, multisig, and cube rolls have been non-negotiable.
Last Abstract
- An attacker exploited a Coldcard Mk3 flaw, draining 594 BTC value $38 million in lower than half an hour.
- Bitcoin’s self-custody confronted a stress take a look at, however the safety stays intact for wallets with further layers like multisig.





