‹ BackNewsOn-Chain Security

On-Chain Security

Coldcard RNG exploit cluster moves 0.06 BTC after stealing 1,159.42 BTC
Binance Research says DeFi TVL fell by $43.4 billion in the first half
Bitcoin
2026-07-31 15:22:26

COLDCARD Seed Vulnerability Puts Wallets at Risk as Funds Are Already Moving On-Chain

Bitcoin Magazine, citing an official announcement posted by Coinkite, warned that a serious security flaw is affecting COLDCARD MK3, MK4, MK5, and Q devices. The report says some wallets generated on those devices are being drained because attackers can recover the seed phrase without any action from the user. According to the article, the only wallets considered safe are those created with the dice roll method, provided the user supplied at least 50 rolls of entropy. The piece says any word seed generated after the end of 2020 on a Coldcard is not secure if the user did not add the recommended 50-plus dice rolls. It also says the flaw extends to ephemeral keys and session keys used for Clone Coldcard or Key Teleport, as well as BIP 85 seeds derived from a compromised seed. The attack is described as active, with around 1,000 BTC seen moving on-chain in connection with the issue. For affected users, the article urges an immediate move of funds to a newly generated seed or to a wallet created on a different device. If another hardware wallet is available, the report says that is the fastest option. If not, it outlines a temporary passphrase-based workaround and also mentions Nunchuck, Blockstream Green, and Bluewallet as software wallet options. The article adds that a firmware patch has already been released and says Coldcard remains usable after the update if a new seed is generated securely.

2470
COLDCARD Seed Vulnerability Puts Wallets at Risk as Funds Are Already Moving On-Chain
Coldcard seed-generation flaw linked to 594 BTC drained in 25 minutes
Bitcoin
2026-07-27 01:59:58

CZ warns small exchange deals carry high security risks as MiCA and U.S. crypto bills reshape the market

A packed 24-hour news cycle brought fresh signals from crypto markets, policymakers, security researchers and public companies. CryptoQuant analyst Axel Adler said Bitcoin’s rebound is still facing four pressures: compressed volatility, weak U.S. spot demand, thin buy-side liquidity and continued loss realization by investors. In Washington, Aave founder Stani said the CLARITY Act has entered the "last mile," arguing that even in imperfect form it could become the first U.S. law to directly address DeFi and give institutions, fintechs and banks a clearer legal path into on-chain finance. In Europe, attention is shifting from winning a MiCA license to paying the ongoing cost of compliance. Market participants cited in the report said that dynamic could push the sector toward consolidation, including mergers, joint ventures and bank partnerships, with the U.K. likely to follow a similarly strict path through its own framework. Binance founder Changpeng Zhao, meanwhile, said acquisitions of smaller centralized exchanges remain possible, but post-deal security incidents are hard to attribute, making due diligence and risk controls much harder. Other major developments included updated figures on public-company Bitcoin holdings, Lido’s response to a stETH reward calculation issue, Cascade’s statement that funds tied to the CLS incident had been recovered, and new reports on wallet-targeting malware campaigns and U.S. crypto seizure actions.

980
CZ warns small exchange deals carry high security risks as MiCA and U.S. crypto bills reshape the market
Triple-A says hot wallet exploit caused about $12 million in losses across six chains
TripleH hot wallet flagged in suspected multi-chain exploit with over $9.3 million moved to Ethereum