Hacker News·4 min read·hard

Lines of code. 1,596 BTC gone

A
Archie627
Lines of code. 1,596 BTC gone
AI Summary

A critical security vulnerability in COLDCARD hardware wallets allowed attackers to drain 1,596 BTC due to a firmware change that weakened random number generation. The flaw, which went unnoticed for five years, highlights the risks of software-based entropy in hardware security.

Two files, four lines, five years unnoticed. This is the COLDCARD entropy failure taken apart step by step — what the defect was, how attackers found the wallets, what affected owners should do — and the four checks OneKey runs so the same thing cannot happen here quietly.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologycrypto

Get the full story

Sign up for Headlinne to unlock AI insights, political bias analysis, and your personalized news feed.

Create free account

Already have an account? Sign in