Live Markets:
BTC Loading...
ETH Loading...
SOL Loading...
XRP Loading...
ADA Loading...
LTC Loading...
Cryptorah
Breaking
White House Teleprompter Operator Exits After $100K+ Prediction Market Scandal Trump Media Dumps $165M in Bitcoin as Coldcard Losses Hit $88M and FTX Pushes $900M to Creditors Trump Cancels Iran Strikes, Jobs Data Looms: Can Crypto Break Out This Week? Telegram now faces legal fire on three fronts at once, as Australia sues over terror content Stablecoins Offer No Systematic Edge Over Traditional Remittances, Bank of Italy Study Finds South Korea Weighs Interim Stablecoin Rules to Bridge the Gap Before Its Crypto Law Lands South Korea Moves Toward Unified Crypto Framework as Tax Repeal Debate Intensifies Senate Shelves Crypto Clarity Act as Russian Sanctions and Limited Floor Time Squeeze Industry's Regulatory Hopes Saylor's Warning: Bitcoin's Constitution Is Under Threat From Inside, Not Outside Russia Expands Cryptocurrency Mining Ban to Capital Region Through 2032 Pump.fun Layoffs Two Months Before Multi-Million Dollar Token Vesting Spark Controversy Onyx Security Lands $113M Series B to Police Autonomous AI Agents Inside the Enterprise New York Launches Legal Battle Against Kalshi, Alleging Illegal Gambling Operation Korean Police Crack Down on $8.6M XRP Staking Scam as Token Holds Ground Iran-Oman Talks Show Progress on Strait of Hormuz as Bitcoin Rallies Above $65K Hungary Scraps Crypto Validator Rule as CoinCash Secures First MiCA License Grayscale CEO Files to Sell Entire Pre-Conversion XRP Trust Stake as Fund Shrinks 51% Four Augusts in the Red: Can XRP Finally Break Its Bearish Summer Streak? Fed's Hawkish Hold Rattles Crypto: Bitcoin Defends $64K as Liquidations Top $300M EthSystems Launches Privacy Layer to Bridge Traditional Finance and Public Blockchains Crypto Industry Doubles Down on Michigan House Race with $2M Campaign Blitz Crypto Exchanges Go TradFi: Tokenized Stocks and Commodities Hit $6.6 Billion Crypto Braces for a Four-Catalyst Week: Iran Truce, CLARITY Act Vote, Fed Decision, PCE Data Critical Vulnerability in Coldcard Hardware Wallets: 594 BTC Stolen After Years-Long Entropy Flaw Coldcard's Five-Year Randomness Bug: Why Auditors Missed a Silent Swap in the Wallet's Core Security Function Coldcard Firmware Attack Drains $70M in Bitcoin as Fear Index Hits All-Time High Coinbase Canada Pushes for Regulatory Clarity as It Eyes Derivatives and Tokenized Asset Expansion CFTC Warns Prediction Market Platforms Against Generic Event Contract Filings BlackRock and 140+ Institutions Launch Ethereum-Based Stablecoin as ETF Inflows Hit $11.2 Billion BitMart Shuts Down After 9 Years, BMX Token Crashes 58% Bitcoin Tests Critical $68,500 Resistance Wall as Fed Decision Looms Bitcoin Steadies Under $64K Post-FOMC as Pi Network Rallies and Talus (US) Storms the Top 100 Bitcoin Stalls at $63K While BEAT and MemeCore Post Double-Digit Weekend Gains Bitcoin Faces Four Converging Headwinds as Price Tests $62K Support Bitcoin Drops Below $64K as Korean Markets Crater and U.S. Crypto Bill Stalls Bitcoin and Gold Are Both Down Big — the "Quiet Accumulation" Story Behind Both Isn't as Clean as It Sounds Binance Wallet's $50,000 NES Perpetuals Competition: How Privacy-Focused AI Traders Can Compete Binance Adds Gold and Silver Options to Its Abu Dhabi-Regulated Exchange Bhutan Appoints 3iQ as First Institutional Manager for Bitcoin Treasury in Historic Sovereign Crypto Mandate Antora Energy Secures $550M to Scale Thermal Battery Manufacturing for AI Infrastructure and Industrial Heat Analyst Says Bitcoin's Cup-and-Handle Just Broke Out — With a $220K Minimum Target Aave Governance Weighs Pruning Six Blockchains and 50 Idle Markets in Risk-Framework Cleanup $3.6B EverSource Wealth Advisors Discloses XRP and Bitcoin ETF Holdings in Latest SEC Filing $10.4 Billion in Crypto Options Expire Today — Here's What the Positioning Says 10 Best Crypto Tax Software Tools 2026 - Complete Review & Comparison
Sponsored Advertisement Sponsored Ad
news

Coldcard's Five-Year Randomness Bug: Why Auditors Missed a Silent Swap in the Wallet's Core Security Function

Kraken's chief security officer says the industry lacks a standard check that would have caught the flaw: verifying not just that a secure random-number generator exists in the code, but that it's the one actually running.

Jane Doe

By Jane Doe

Published on Aug 3, 2026

8 min read
Make Cryptorah Icon Cryptorah preferred on Google
Coldcard's Five-Year Randomness Bug: Why Auditors Missed a Silent Swap in the Wallet's Core Security Function

Quick Take

  • A software flaw dating to March 2021 caused some Coldcard hardware wallets to generate seed phrases using a weaker MicroPython random-number generator instead of the device's intended true random number generator (TRNG).
  • An ongoing attack believed to exploit this weakness has hit over 4,500 addresses and drained nearly $90 million in Bitcoin as of Sunday.
  • Kraken CSO Nick Percoco says the bug slipped through because audits confirmed the secure TRNG code existed — not that production firmware actually called it — and wants industry-wide entropy-path verification.
  • Coinkite (Coldcard's maker) has halted shipments, destroyed affected inventory, and is telling owners of affected devices not to dispose of them in case funds are recovered.

What Happened

On Thursday, Coldcard maker Coinkite disclosed that a flaw had existed in the device's seed-generation process since March 2021 — the point at which Coldcard reworked how it generates wallet seeds while integrating a new cryptographic library.

That migration had an unintended side effect: instead of routing seed creation through Coldcard's purpose-built true random number generator (TRNG), the process was silently redirected to a weaker random generator built into MicroPython, the firmware's scripting language. In its own postmortem, Coinkite described the situation bluntly — the bulk of randomness on the device was coming from a generator the team wasn't even aware was present in the codebase, while the carefully engineered TRNG code sat mostly unused, invoked only for less critical functions.

"The bulk of randomness on the COLDCARD was coming from a PRNG that I didn't know was actually in the source code base. At the same time the carefully crafted TRNG code I wrote was being used, but just by chance, and only for less important things." — Coinkite, postmortem disclosure

The bug is now believed to be behind an active, ongoing attack exploiting weak seed phrases produced by affected devices. Nick Percoco, chief security officer at Kraken, laid out the underlying audit failure in an X post on Sunday: code reviews could confirm the TRNG existed and functioned correctly, but nothing in the review process checked whether that TRNG was the component actually being called at seed-generation time.

Why It Matters

An Audit Blind Spot, Not Just a Coding Error

Percoco's core argument is that this wasn't simply a one-off mistake by one vendor — it exposes a structural gap in how hardware wallets get certified. He pointed to two frameworks that already exist elsewhere in security-critical hardware: NIST SP 800-90B, the U.S. government standard for designing, testing, and validating physical true random number generators, and BSI AIS-31, Germany's equivalent standard from its Federal Office for Information Security.

According to Percoco, hardware wallets have no real equivalent. Existing protections — Common Criteria certification on secure elements, CSPN certifications, and audits paid for by vendors themselves — don't force the kind of end-to-end verification that would catch a validated entropy source being silently swapped for a weaker one in production firmware.

"Consumers are asked to trust a manufacturer's implementation of the single most critical function in the system, with no independent verification that the approved entropy path is the one actually executing." — Nick Percoco, Chief Security Officer, Kraken
"The payments industry does not let PIN entry devices ship without independent lab testing. The US government does not accept cryptographic modules without entropy source validation. Digital asset self-custody should not be the exception." — Nick Percoco, Chief Security Officer, Kraken

Percoco called the incident a "wake-up call" for hardware-wallet makers broadly, not just Coinkite — the implication being that any vendor's audit process could have the same blind spot if it only checks for the presence of secure code rather than confirming it's the code path actually executing.

The Numbers

The figures below are the only quantified data points included in the source reporting, as of Sunday.

5 yrs Flaw present in code since March 2021, undetected until disclosure
4,500+ Addresses impacted, as of Sunday
~$90M Bitcoin drained in the exploit, as of Sunday
Coldcard RNG Flaw Timeline March 2021 Seed-gen process changed; flaw begins

Thursday Coinkite discloses flaw; shipments halted

Sunday 4,500+ addresses hit, ~$90M drained

Timeline reconstructed from dates explicitly stated in the source reporting. Exact calendar date for "Thursday" and "Sunday" was not specified in the source.

⚠️ Flagged: The source also references a separate, related report of a "4th Coldcard attack wave" sweeping 389 BTC, attributed to a different outlet (Galaxy's Thorn). It is not stated in this source whether that 389 BTC figure is included in, separate from, or overlapping with the ~$90 million total — treat these as two distinct reported figures rather than additive.

Market Reaction

⚠️ Flagged: The source material does not include Bitcoin price data, trading volume, or sentiment indicators. It does reference a separate piece titled "Coldcard exploit sparks Bitcoin flight, 'bullish' crypto consolidation," suggesting some market commentary exists elsewhere — but no figures, quotes, or specifics from that piece are included here, so none can be reported.

What's Next / Things to Watch

  • Shipment halt in effect: Coldcard confirmed the vulnerability on Thursday and has since stopped all device shipments, destroying remaining units at its facilities that contained the affected firmware.
  • Do not discard affected devices: Coinkite has explicitly told owners of affected hardware to hold onto their devices, saying they "may become essential if funds are recovered."
  • Law enforcement coordination: Coinkite says its legal team will coordinate with law enforcement across multiple jurisdictions to support efforts to identify those responsible for the exploit.
  • Industry standard-setting: Percoco's call for independent, standardized entropy-path verification (modeled on NIST SP 800-90B and BSI AIS-31) is a proposal, not a confirmed initiative — whether hardware wallet makers or a standards body act on it remains to be seen based on the source.
Background: What is a TRNG, and why does entropy matter for a hardware wallet?

A hardware wallet's seed phrase is the master key to all funds it controls, and that seed must be generated from a source of randomness (entropy) that's effectively impossible to predict or reproduce. A true random number generator (TRNG) typically draws entropy from physical, unpredictable processes (like electrical noise), while a pseudo-random number generator (PRNG) — such as the general-purpose one built into MicroPython referenced in this incident — produces output that is deterministic and can, in some cases, be far more predictable or lower-entropy than intended. If a wallet's seed is generated with weak or predictable randomness, an attacker who can guess or narrow down the possible seed values can potentially reconstruct a user's private keys and drain their funds — which is the mechanism believed to be behind the ongoing Coldcard attack described in this report.

Sourcing & methodology notes

All facts, figures, and quotes in this article are drawn solely from the supplied source article, which itself cites Nick Percoco's Sunday X post and Coinkite's own postmortem disclosure. No external data, pricing, or market figures were added. Two related headlines mentioned in the source ("Suspected 4th Coldcard attack wave sweeps 389 Bitcoin" and "Coldcard exploit sparks Bitcoin flight, 'bullish' crypto consolidation") are referenced by title only, as no URLs for them were provided in the source material.

FAQs

What exactly went wrong with Coldcard wallets?

Since March 2021, an unintended code path caused affected devices to generate wallet seed phrases using a weaker built-in MicroPython random number generator instead of Coldcard's dedicated true random number generator (TRNG), making seeds potentially easier to predict or reproduce.

How was the flaw discovered, and why did it take five years?

It went undetected because prior code audits confirmed that Coldcard's secure TRNG code existed and worked correctly, but did not verify that this was the code actually being executed during seed generation — a check Kraken's CSO says is missing industry-wide.

How much has been stolen, and is the attack still happening?

As of Sunday, the source reports that over 4,500 addresses had been impacted and nearly $90 million in Bitcoin drained, describing the attack as ongoing.

What should Coldcard owners do with an affected device?

Coinkite has advised against disposing of affected devices, saying they may be needed if funds are recovered. The source does not include further device-specific remediation steps such as reflashing or migration instructions.

Is Coldcard still shipping devices?

No — according to the source, Coldcard halted all device shipments after confirming the vulnerability on Thursday and destroyed remaining inventory containing the affected firmware.

Endnotes

  1. Related coverage referenced in the source article: "Suspected 4th Coldcard attack wave sweeps 389 Bitcoin: Galaxy's Thorn" — ⚠️ no URL provided in source material.
  2. Related coverage referenced in the source article: "Coldcard exploit sparks Bitcoin flight, 'bullish' crypto consolidation: Hodler's Digest, August 2" — ⚠️ no URL provided in source material.

Investment disclaimer: The content reflects the author’s personal views and current market conditions. Please conduct your own research before investing in cryptocurrencies, as neither the author nor the publication is responsible for any financial losses.

Ad Disclosure: This site may feature sponsored content and affiliate links. All advertisements are clearly labeled, and ad partners have no influence over our editorial content.

Sponsored Advertisement Sponsored Ad
Jane Doe

About Jane Doe

Jane Doe is a senior blockchain journalist covering DeFi, Bitcoin, and web3 innovations since 2018.