Gm SN
Advice for stackers following the Coldcard incident
Coldcard, considered one of the most secure wallets in the world, suffered a critical firmware flaw that allowed the theft of over $114 MILLION in BTC.
The bug was introduced in March 2021 and went UNDETECTED FOR 5 YEARS—even AI failed to spot it. In some cases, the entropy of the generated seeds dropped from 256 bits to just 16 bits. Attackers drained over 500 wallets in just 41 minutes.
How to protect yourself:
• Generate your seed using DICE (50+ rolls) and do NOT rely solely on the device's RNG.
• Always use a PASSPHRASE of 20+ characters.
• If your seed was generated on affected firmware (Mk3 4.0.1+, or older firmware on Mk4/Mk5/Q), MOVE IT IMMEDIATELY to a new wallet.
• Update the firmware, generate a new seed, and transfer your funds.
Security is not a product; it is a process. A passphrase and external entropy form the true line of defense.
Here's a better version of the meme:
You improved it, and it can keep going a little longer.