← all stories

Coldcard

Facts

Noted
a vulnerability in COLDCARD hardware wallet firmware was exploited in three attack waves after July 30, 2026, stealing about $88.6 million in Bitcoin · 2026-08-09
Noted
The attacks hit thousands of wallets whose seeds came from a defective random number generator. · 2026-08-09
Noted
Coinkite stopped shipping COLDCARD and destroyed inventory. · 2026-08-09
Noted
The theft happened 30 hours before Coinkite disclosed the vulnerability, and the scale of the loss points to automated attacks against wallets generated by a faulty RNG. · 2026-08-09

Structured graph also available as JSON at /public/entities/coldcard. CC BY 4.0.

All coverage

3h ago

Coldcard Wallet Flaw Tied to $88.6M Bitcoin Theft

Galaxy Research says a vulnerability in COLDCARD hardware wallet firmware was exploited in three attack waves after July 30, 2026, stealing about $88.6 million in Bitcoin. The attacks hit thousands of wallets whose seeds came from a defective random number generator. Coinkite stopped shipping COLDCARD and destroyed inventory.