Coldcard's biggest security failure may have cost $70M

Fonte Cryptopolitan

An attacker has drained over 1,000 bitcoin (approx worth around $70 million) from nearly 1,200 wallets that used Coldcard hardware to generate a key seed, Galaxy Research revealed on Friday. The figure is substantially higher than the initial estimates made by the company 24 hours earlier. The potential losses involve all Coldcard users who created a seed between March 2021 and the present date.

Galaxy Research estimates that 1,082.65 bitcoin were withdrawn from 1,196 addresses, with the majority of the funds moved between 01:10 and 01:50 UTC on July 30, in a 40-minute window. This number vastly exceeds the reported theft of 594 BTC ($38 million) from approximately 500 single-signature wallets. It happened within 40 minutes. Each of the affected addresses owned more than 0.15 BTC. Over 562 BTC were transferred to one particular address that has yet to see any transactions.

The report highlighted the work of Block’s engineering and security teams, which recognized a pattern in the movement of these funds. “The trail of on-chain transactions identified by other researchers, including Clay Garrett, correctly points to the thief. However, it does not identify the vulnerability that enabled this particular theft,” the company noted, warning that “future attacks could target any Coldcard address generated using the vulnerable firmware.”

How Coldcard’s RNG went wrong?

Coldcard is a hardware wallet that utilizes an air-gapped computer to store the user’s bitcoin. The device employs a cryptographic signing method that should theoretically resist any third-party attempts at interception. It requires a 24-word mnemonic phrase for seed generation that is chosen from a large set of potential words. In reality, the true entropy of a Coldcard wallet was lower than expected.

Block’s Bitcoin Engineering and Security teams published a report that detailed the issue. Within the Coldcard firmware, there were two instances of a function that generated random numbers with the same cryptographic signature, including the hardware implementation written by Coinkite and a software version carried over from MicroPython. 

A build-time check that confirmed the presence of the environment setting failed to activate, resulting in some devices utilizing the compromised software random number generator. This vulnerability was patched in the most recent 4.21 release, with the affected versions tracing back to the initial 4.0.0 release from March 2021. The compromised randomness was based on the processor’s serial number and clock, which are not considered secure.

Who is affected by the vulnerability?

The first notice about the security problem came from Coinkite, which published a support page for users who utilized Mk3 hardware with firmware 4.0.1 or newer. The company updated the advisory to also include certain Mk4, Mk5, and Coldcard Q devices and released emergency firmware updates for all affected hardware.

According to reports, Coinkite updated its official advisory to acknowledge that all existing devices are potentially vulnerable to this attack, with firmware upgrades providing only partial security. In theory, all wallets with mnemonic phrases generated before the release of version 4.21 are at risk, according to the Coinkite advisory.

The vulnerability affects more than just seed generation. Coldcard’s paper wallet encryption, key splitting tools, mask generation, and Key Teleport feature all utilize the same randomness function.

Coinkite blames AI for the heist

Coinkite CEO Rodolfo Novak (NVK) published an apology for the security issue, acknowledging that the company was responsible for the error in the mnemonic generation process. “We took full accountability for the firmware bug that led to this situation,” he stated, noting that the initial review of the vulnerability had failed to catch the issue. Novak speculated that the attacker could have used AI to identify the vulnerability, claiming that “this is a sobering reminder of the new paradigm we are entering with AI.”

It is worth noting that Coinkite appears to be arguing against itself, since the Decrypt article notes that the company once used an AI system to scan its own code for potential security problems. That tool was reportedly utilized a few months earlier, with Coinkite claiming that “it did not find this vulnerability or anything else of significance.” Attackers and defenders all have access to the same tools, but in this case, it seems that they failed to do their job.

What should I do if I am a Coldcard wallet owner?

Coinkite recommends that users update the firmware on their devices and create new mnemonic phrases, advising users to make test transactions to the new wallet address before transferring any significant funds. Users should keep their old seed as a backup, as this document will be required to regain access to the funds after the transaction.

The price of bitcoin (BTC) has barely changed in the wake of this revelation. BTC price is hovering near $63,000 on Friday.

If you're reading this, you’re already ahead. Stay there with our newsletter.

Isenção de responsabilidade: Apenas para fins informativos. O desempenho passado não é indicativo de resultados futuros.
placeholder
Ouro perde força enquanto geopolítica dá suporte ao dólar antes da reunião do FOMCO ouro (XAU/USD) atrai novas vendas de continuação (follow-through selling) após a incapacidade do dia anterior de se firmar acima de US$ 4.100, enfraquecendo abaixo do nível de US$ 4.050 durante a sessão asiática nesta terça-feira.
Autor  FXStreet
7 Mês 28 Dia Ter
O ouro (XAU/USD) atrai novas vendas de continuação (follow-through selling) após a incapacidade do dia anterior de se firmar acima de US$ 4.100, enfraquecendo abaixo do nível de US$ 4.050 durante a sessão asiática nesta terça-feira.
placeholder
Ações da Coreia do Sul acionam circuit breakers pelo segundo dia; Kospi cai 6%, 40% abaixo da máxima de junho; SK Hynix, Kioxia despencamTradingKey - Em 29 de julho, as bolsas do Japão e da Coreia do Sul estenderam suas quedas, com o mercado sul-coreano tornando-se novamente a região mais afetada entre as ações asiáticas. A Samsung Ele
Autor  TradingKey
7 Mês 29 Dia Qua
TradingKey - Em 29 de julho, as bolsas do Japão e da Coreia do Sul estenderam suas quedas, com o mercado sul-coreano tornando-se novamente a região mais afetada entre as ações asiáticas. A Samsung Ele
placeholder
US$ 4.100: Ouro falha perto de resistência chave, enquanto tensões no Oriente Médio e apostas em alta do Fed dão suporte ao dólarO ouro (XAU/USD) atrai compradores pelo segundo dia consecutivo, embora permaneça confinado dentro da amplitude do dia anterior e seja negociado abaixo da marca de US$ 4.100 durante a sessão asiática nesta quinta-feira.
Autor  FXStreet
7 Mês 30 Dia Qui
O ouro (XAU/USD) atrai compradores pelo segundo dia consecutivo, embora permaneça confinado dentro da amplitude do dia anterior e seja negociado abaixo da marca de US$ 4.100 durante a sessão asiática nesta quinta-feira.
placeholder
Previsão do Preço do Ouro: O Ouro Conseguirá se Manter em US$ 4.020 com o Aumento das Expectativas de Alta de Juros do Fed?TradingKey - Na sessão asiática de 30 de julho, os preços do ouro ( XAUUSD) dispararam e depois recuaram após a reunião do Federal Reserve, chegando a cair para US$ 4.028,62 durante a sessão. Do ponto
Autor  TradingKey
7 Mês 30 Dia Qui
TradingKey - Na sessão asiática de 30 de julho, os preços do ouro ( XAUUSD) dispararam e depois recuaram após a reunião do Federal Reserve, chegando a cair para US$ 4.028,62 durante a sessão. Do ponto
placeholder
Ex-pesquisador da OpenAI faz apostas de fundo de hedge contra ações de empresas de chips de IAA Situational Awareness, um fundo de hedge especializado em inteligência artificial fundado por Leopold Aschenbrenner, ex-funcionário da OpenAI, busca obter financiamento adicional de investidores em meio à queda acentuada das ações de semicondutores e de IA. O momento é importante porque esse fundo de hedge possui a maior aposta declarada contra as empresas responsáveis pela queda...
Autor  Cryptopolitan
23 horas atrás
A Situational Awareness, um fundo de hedge especializado em inteligência artificial fundado por Leopold Aschenbrenner, ex-funcionário da OpenAI, busca obter financiamento adicional de investidores em meio à queda acentuada das ações de semicondutores e de IA. O momento é importante porque esse fundo de hedge possui a maior aposta declarada contra as empresas responsáveis pela queda...
goTop
quote