CyrilXBT|8月 02, 2026 18:11
A firmware flaw dating back to March 2021 let an attacker reproduce seed phrases by exploiting weak random number generation.
Losses are now estimated at 1,300+ BTC across 4,500+ addresses, worth close to $89M.
Long-term holders panicked and started moving funds to exchanges out of pure precaution.
My take on the saddest part.
Most people are going to walk away from this thinking “attack Trezor” or “attack Ledger” next.
Wrong lesson.
The flaw wasn’t “hardware wallets are broken.”
It was one specific firmware implementation choice, on one device, from one manufacturer.
Real takeaway: audit your seed generation, don’t trust blindly, and if you’re on old Coldcard firmware, migrate to a fresh seed immediately.
Not “go find the next brand to dunk on.”(CyrilXBT)
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink