Coldcard: Destroyed Inventory with Vulnerable Firmware, Urges Affected Users to Move Funds Immediately
August 3rd - Bitcoin hardware wallet manufacturer Coldcard tweeted that the past three days were one of the most challenging periods in the company's history, with some users losing their savings accumulated over the years. The team has been in constant contact with customers since last Friday, assisting in transferring funds that are still secure and providing recovery guidance.
Currently, the company has officially destroyed the remaining COLDCARD inventory produced with the vulnerable firmware and has suspended shipments. Satscard, Opendime, and Tapsigner are not affected. The released patch firmware can prevent newly generated seed phrases from being affected, but seed phrases generated on the vulnerable firmware still pose a risk. Users are advised to create a new wallet and transfer their funds. The company suggests temporarily considering alternative solutions such as Bitkey, Ledger, Trezor, Jade, Bitbox, etc., and urges affected users to keep the device for future recovery efforts.