Go to app

The Vulnerability

Published 7/31/2026, 6:06:50 AM

Coldcard Mk3 users should not panic, but they must take immediate action if their setup falls into a specific high-risk category. On July 30, 2026, an attacker drained approximately 594.5 BTC (~$38.3 million) from roughly 500 single-signature addresses in a coordinated 25-minute window [Source: https://atlas21.com/594-bitcoin-drained-15-minutes-theft/]. While the incident is severe, the vulnerability is mathematically limited to seeds generated using the device's internal random number generator (RNG) on specific firmware versions without additional security layers.

The Vulnerability

The drain targeted a flaw in the Coldcard Mk3 firmware where a build setting caused the device to skip its hardware RNG, falling back to a predictable software substitute [Source: https://theblock.co/post/410235/coinkite-coldcard-mk3-warning]. This resulted in "weak entropy," allowing attackers to pre-calculate and compromise private keys.

Risk Assessment by User Type

The risk is not universal across all Coldcard users. Your level of exposure depends on how you generated your seed and whether you use a passphrase.

User CategoryRisk LevelReason
Mk3 + Single-Sig + No PassphraseCRITICALSeed generation was likely predictable; funds are at immediate risk [Source: https://blog.coinkite.com/coldcard-mk3-seed-generation-warning/].
Mk3 + BIP-39 PassphraseLOWA strong passphrase adds external entropy that protects the wallet even if the base seed is weak [Source: https://theblock.co/post/410235/coinkite-coldcard-mk3-warning].
Mk3 + Dice Roll GenerationLOWManual dice rolls (99+ rolls) bypass the flawed internal RNG entirely [Source: https://blog.coinkite.com/coldcard-mk3-seed-generation-warning/].
Mk3 + Multi-SigLOWRequires compromising multiple keys from different sources; no multisig drains have been reported [Source: https://blog.coinkite.com/coldcard-mk3-seed-generation-warning/].
Mk4, Mk5, or Q ModelsNONEThese models use a different architecture and are confirmed unaffected by Coinkite [Source: https://blog.coinkite.com/coldcard-mk3-seed-generation-warning/].

Technical Details

Recommended Action Plan

If you are using an affected Mk3 device, Coinkite advises moving funds with "calm and care" rather than rushing, which can lead to manual errors [Source: https://blog.coinkite.com/coldcard-mk3-seed-generation-warning/].

  1. Immediate Mitigation: If you cannot migrate to a new device immediately, add a strong BIP-39 Passphrase to your Mk3. This creates a new set of addresses. Move your funds from the "no-passphrase" accounts to these new passphrase-protected accounts.
  2. Long-term Solution: Generate a fresh seed on an unaffected device (Mk4, Mk5, Q, or a different hardware manufacturer) and sweep all funds to the new seed.
  3. Entropy Best Practice: For any future seed generation, use the dice-roll method to ensure the randomness is verified by you and not dependent on hardware firmware.

Conclusion: Panic is unnecessary for users who utilized manual entropy (dice rolls), multisig, or strong passphrases. However, for single-sig Mk3 users without a passphrase, the risk is immediate and requires a controlled migration of funds to a new, secure seed [Source: https://theblock.co/post/410235/coinkite-coldcard-mk3-warning].