Hey guys. Wild 24 hours. I don't normally post but I feel passionately about this - we need to prevent as many victims as possible
Right now I'm seeing a narrative that CC has "70 bits of entropy and can only be hacked by super computers". But I think that's most likely false and dangerously so. Block did a https://engineering.block.xyz/blog/predictable-rng-fallback-and-32-bit-reseed-in-coldcard-firmware that seems to show only 32 bits of entropy. The discrepancy seems to stem from CC wrongly attributing entropy bits to microcontroller/peripheral settings which are not truly random. I understand it's fog of war but the suggestion that funds are safer on non-Mk3 may be totally wrong and cost people their life savings.
At this point it costs little to move the KYC stack to exchanges or move to a temporary software wallet/backup hardware device NOW before people get hurt.
https://m.stacker.news/150361
https://m.stacker.news/150362
Another datapoint