Coldcard Losses Near $114M As Small Bitcoin Transfers Spike

ZeroHedge
Published
1
6
Coldcard Losses Near $114M As Small Bitcoin Transfers Spike
Read the full story at ZeroHedgeOriginal
Coldcard Losses Near $114M As Small Bitcoin Transfers Spike

Via Decrypt.co,

Small Bitcoin holders moved coins on July 31 at a rate not seen since the collapse of FTX, according to CryptoQuant, as news spread that Coldcard hardware wallets had been generating guessable keys for five years.

Transfers of less than 1 BTC totaled 39,600 BTC (around $2.5 billion) that day, the firm's Head of Research Julio Moreno tweeted. The last comparable figure was 39,900 BTC on November 16, 2022, days after FTX failed. Daily active addresses rose from 645,000 on July 30 to almost a million on July 31, the highest since December 2024, with the jump concentrated in sending addresses rather than receiving ones.

Some of it went to exchanges. Deposits made up of sub-10 BTC transfers hit 7,300 BTC ($459 million) on July 31, the most since February 6, CryptoQuant said. Moreno linked the move to the Coldcard breach, saying people appeared to be shifting holdings "looking for safety," while noting the connection was not certain.

Notably, Bitcoin's price barely moved amid the wave of exchange deposits, suggesting that users were moving their coins to secure them rather than sell. Bitcoin is currently trading at $62,724, down 0.7% over the past day, per CoinGecko data.

The ColdCard exploit

The Coldcard flaw dates to a March 2021 firmware build error that left seed phrases drawn from far too small a pool. Galaxy Research logged three waves of thefts by Saturday, totaling 1,367 BTC across 4,585 addresses, up from $38 million when the flaw was disclosed and $70 million when Binance founder Changpeng Zhao warned holders.

A fourth is likely under way. Galaxy Research's Alex Thorn flagged sweeps across 15 consecutive blocks on Monday, running at roughly 45 times the normal rate, and after correcting a set that had wrongly included multisig addresses put the wave at 709 addresses and 448.73 BTC ($28 million). That would take the running total to about 1,816 BTC, near $114 million. Thorn added a caveat that no victim has yet confirmed the fourth wave, which rests on pattern matching.

Some sweeps were still sitting unconfirmed in the mempool and had opted into replace-by-fee, he said, meaning holders who act quickly and pay a high fee may be able to outbid the attacker. None of the addresses hit in the first three waves were multisig.

'A wake-up call'

Kraken chief security officer Nick Percoco called the incident a "wake-up call for the entire hardware wallet industry." ColdCard’s Mk4, Mk5 and Q ship with certified secure elements, he noted, and their seeds still came out around 72 bits, because the certification covered the component while nobody verified which code path actually ran.

Percoco wants independent lab validation of entropy sources, bound to specific firmware versions and listed in a public registry, as payment terminals already require. He added that Coinkite's hotfix now fails the build unless the correct generator is linked in, a control he said took about 48 hours to write once the company knew what to look for.

Read more here...

Tyler Durden Mon, 08/03/2026 - 10:20

Related Markets

All Markets
Bitcoin
BTC-USD
View full chart →
View Full Chart
View full chart →
View Full Chart

Market data may be delayed. Not financial advice.

Reader Reactions
The Story At A Glance
  • • A firmware error in Coldcard hardware wallets caused predictable seed phrases, leading to nearly $114 million in Bitcoin thefts.

  • • Small Bitcoin holders moved $2.5 billion in a single day to secure funds following the breach.

  • • The vulnerability affected multiple models including the Mk4, Mk5, and Q.
Context
The flaw originated from a March 2021 firmware error that bypassed secure hardware entropy for a weak software source. This error left thousands of users vulnerable to organized theft waves.

Christian Perspective
This event highlights the inherent instability of relying on manmade digital systems for security. While Bitcoin offers a way to bypass corrupt central banks, this breach proves that even decentralized tools are subject to human error and deception. True security and stewardship must ultimately be rooted in God rather than fallible technology.

Implications
The vulnerability of digital assets underscores the need for individuals to maintain self-reliance and physical control over their resources. As globalist entities attempt to move toward programmable, centralized currencies, these technical failures serve as a warning. Protecting one's family and wealth requires constant vigilance against both systemic corruption and technical incompetence.

Broader Trends
The spike in movement reflects a growing distrust in centralized financial institutions and a desperate search for autonomy. This volatility is a symptom of a decaying technological landscape where even "secure" tools fail. It mirrors the broader instability seen as the nation struggles to maintain order amidst shifting economic and social structures.

Takeaway
Prioritize tangible assets and diverse methods of wealth preservation to protect your household from sudden systemic shocks. Do not place absolute faith in any single technological solution or institution. Maintain the traditional role of the provider by remaining vigilant and prepared for the inevitable failures of a modern, secularized economy.

What is your reaction to this story?

Reader Reactions

Want to join the conversation about this story?

Join our community at Gab.com

Alto is powered by

Gab AI

The one AI they can't control. Our exclusive AI model trained to uphold Christian values and traditional principles in every interaction.

Support Alto & Gab

Alto is funded entirely by readers like you. Your donation helps us continue delivering curated news from a right-wing Christian Nationalist perspective, powered by Gab AI.

Gab Shop

Support free speech with official merchandise

View All Products

Install Alto on Your Phone

Add Alto to your home screen for quick access to breaking news — no app store required.

iPhone & iPad

Using Safari Browser

1

Open alto.gab.com in Safari

alto.gab.com
2

Tap the Share button

at the bottom of Safari
3

Tap "More"

More
4

Scroll and tap "Add to Home Screen"

Add to Home Screen

Tap "Add" to confirm

Alto will appear on your home screen like any other app!

Android

Using Chrome Browser

1

Open alto.gab.com in Chrome

alto.gab.com
2

Tap the menu button

three dots in top right
3

Tap "Add to Home screen"

Add to Home screen

Tap "Add" to confirm

Alto will appear on your home screen like any other app!
gab

Speak Freely

Join millions on the original and only true free speech social network.

What Makes Gab Different

We're not just another social network. We're a platform built on principles that matter.

Freedom of Speech & Reach

All First Amendment protected speech is welcome. No algorithmic throttling or shadow banning.

Family-Friendly Platform

We maintain a clean environment. Explicit adult content is strictly prohibited.

Western Nations Only

Third-world IPs are blocked. No scammers, no spam farms. Built for Western civilization.

Funded By Users

Our users are our investors and customers. You're not the product being sold.

Battle Tested

A decade of standing strong. Banned from app stores, banks—and still here.

American Owned & Operated

We reject foreign censorship demands. Built by Americans, for free people.