ChainThink reports that Coinkite, the manufacturer of Coldcard, stated that the vulnerability discovered by hackers serves as a warning to all companies developing Bitcoin hardware and software, not just themselves.
Coinkite stated that it conducted an AI-assisted review of its critical codebase weeks before the vulnerability was exploited, but failed to detect the issue.
After the incident, the company tested the code using advanced models such as Kimi K3, Claude Fable, and Codex 5.6, but none of them identified the vulnerability.
Coinkite reminds that if a team relies on AI to review security-critical code, they should specifically test for build and submodule boundaries.
The company believes that such issues may arise at the interaction point between two independent software components, rather than in the parent code or cryptographic logic typically targeted by reviews.

