BlockBeats report: On July 31, Canadian hardware wallet manufacturer Coinkite issued a security advisory, urging users who generated mnemonic phrases on Coldcard Mk3 devices with firmware versions 4.0.1 to 5.0.3 to migrate their assets as soon as possible. The company stated that preliminary analysis indicates wallets using BIP-39 passphrases are at lower risk, and Mk4, Q, and Mk5 devices are unaffected; the investigation is ongoing.
Meanwhile, security researchers are investigating an unusual transfer involving 594.48 BTC (approximately $38.3 million). Rob Hamilton, CEO of AnchorWatch, stated that the attacker moved 1,324 UTXOs across 500 transactions within three blocks and speculated that the issue may stem from insufficient randomness entropy during wallet generation.
Wizardsardine CEO Kevin Loaec believes the vulnerability may be related to a software library, security chip, specific device batch, or firmware version with a low-entropy random number generator, and attackers may be using AI-generated scripts to brute-force affected wallets. There is currently no conclusive evidence directly linking this fund transfer to the Coldcard Mk3 vulnerability.

