Skip to main content
See every side of every news story
Published loading...Updated

Coldcard Hacked for $70M: How Do You Keep Bitcoin Safe if Cold Wallets Can Be Hacked?

Galaxy Research said attackers used a collapsed key range to sweep 1,082.65 bitcoin from 1,196 Coldcard wallets in 41 minutes.

  • On July 30, more than 1,000 BTC worth about $70 million was drained from 1,196 Coldcard wallets during a 41-minute window, with the attacker generating candidate seeds offline to bypass the devices entirely.
  • Coldcard firmware contained an internal setting that skipped the dedicated hardware randomness generator, causing key generation to rely on predictable factory metadata affecting Mk2, Mk3, Mk4, and Mk5 models.
  • Block's Clay Garrett said the operator used a paid account at a "well-known blockchain data provider" to query source addresses with what he called "extraordinary specificity" in timing and sequence.
  • Galaxy Research mapped the event, finding 1,082.65 BTC swept in batches between 01:10 and 01:51 UTC across six blocks, while Block passed information to authorities and Galaxy warned owners to move funds.
  • Security teams note the attack mechanism is significant despite smaller size than other breaches this year; owners must assume their seeds are compromised until the firmware issue is resolved.
Insights by Ground AI
Podcasts & Opinions

37 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

Cryptoast broke the news on Friday, July 31, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal