ME News reports that on July 31 (UTC+8), according to PeckShield Alert, hardware wallet manufacturer Coinkite disclosed a critical entropy generation flaw in the COLDCARD cold wallet firmware, affecting Mk2 and Mk3 devices, potentially weakening the security strength of mnemonic seeds generated by the compromised firmware. The vulnerability has already been linked to a BTC theft incident involving approximately $38 million. The project advises users who generated seeds on the affected firmware to upgrade to the patched version as soon as possible, generate new seeds, and migrate their assets. (Source: PANews)
PeckShield: Coinkite Cold Wallet Firmware Vulnerability Linked to $38M BTC Theft
KuCoinFlashShare
PeckShield reported today that Coinkite disclosed a critical flaw in COLDCARD firmware affecting Mk2 and Mk3 devices. The entropy generation issue could compromise seed phrase security and may be linked to a $38 million BTC theft. Coinkite urged users to update their firmware, regenerate their seeds, and transfer their assets. PeckShield and MetaEra emphasized the urgency of this BTC update for affected users.
Source:Show original
Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information.
Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.