Coldcard’s Entropy Bug Exposed a Hidden Weakness in Hardware Wallet Security
A 2021 firmware bug collapsed Coldcard's seed entropy from 128 bits to 40. Five years later, an attacker drained $89M in Bitcoin across 4,585
Coldcard is a hardware wallet renowned for its security, but a bug in its firmware exposed a hidden vulnerability. The bug, introduced on March 1, 2021, caused the device to use a software pseudorandom number generator instead of its hardware RNG for seed generation. This flaw allowed attackers to drain $89 million from 4,585 wallets without physical access.
The issue was due to a single code change that overlooked verification of a configuration macro, leading to a silent link to the wrong implementation. Attackers exploited this by reconstructing seeds offline and deriving addresses, bypassing the need to physically access devices. Coinkite, Coldcard's manufacturer, released emergency firmware to fix the issue, but it's important to note that updating existing firmware won't restore security for seeds already generated.
The incident highlights that self-custody security isn't solely determined by the device itself, but also by the firmware, libraries, and code review processes. As a result, hardware wallet users must consider not just the device but the entire code stack that generates their keys.
Written by urgent.news from HackerNoon's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.