Hardware Wallet Security After the Coldcard Exploit: Custody Options Explained (2026)
Between 30 July and early August 2026, bitcoin was drained from thousands of addresses that were held in hardware wallets — the devices people buy specifically to avoid that outcome. The cause was a firmware flaw in Coldcard wallets, made by Coinkite. Three things are worth stating up front: the flaw has been patched, the affected builds are a bounded and identifiable set rather than every device ever sold, and users who had added a passphrase to their seed were at significantly reduced risk. What follows is what happened, who was exposed, what affected users are being told to do, and how the main custody options compare once the failure mode on each side is named.
What happened: a dated timeline
The reported losses escalated in waves. They should be read as a sequence of dated figures, not collapsed into one headline number.
- 30 July 2026 — the first wave. Roughly 594 BTC (about $38 million) was drained from around 500 dormant addresses in under an hour.
- Around 30 hours — how long the attack ran before Coinkite's public disclosure.
- 31 July 2026 — the proceeds had not yet been liquidated. Paul Howard of Wincent, speaking to CoinDesk, said the likelihood of liquidation "will weigh on bitcoin pricing in the near term".
- 1 August 2026 — Coinkite had issued an advisory and shipped patched firmware.
- Early August 2026 — the cumulative total reported across several waves reached roughly 1,367 BTC (about $88–89 million) across 4,585 addresses. Some reports put it higher.
How the flaw worked
A hardware wallet's core promise is that the private key is created on the device and never leaves it. That promise rests on one thing: the seed the key is derived from has to be genuinely unpredictable.
On the affected firmware, seed generation did not draw on the STM32 chip's hardware random number generator. It fell through to a deterministic software generator — MicroPython's Yasmarang fallback. Deterministic is the operative word: the same starting conditions produce the same output every time, so the set of possible seeds shrinks from astronomically large to something an attacker can work through offline and check against the public blockchain.
That is why this exploit required no physical access to anyone's device. Nothing was stolen, opened or tampered with. The keys were reconstructed by computation, and the addresses they controlled were emptied.
Who was affected — and who was not
The exposure is bounded to identifiable firmware: Coldcard Mk3 v4.0.1–4.1.9 and earlier, traceable to a March 2021 build. The version that matters is the one the seed was generated under, not the version currently installed — a device updated many times since can still be holding a seed created on an affected build.
Two things protected users. Seeds supplemented with independent entropy, such as dice rolls mixed into generation, are at significantly reduced risk. So are seeds protected by a strong BIP-39 passphrase. The passphrase is the concrete, under-covered detail in most coverage of this event: it is an additional secret that sits on top of the seed and is never written into the device's backup, so recovering the seed alone does not reconstruct the wallet. It is also the setting most owners skip, because it adds a second thing to lose.
-- Price
What affected users should do
Coinkite's advisory is direct: if the seed was generated on an affected version, migrate the funds.
- Establish which firmware build the seed was created under, not just what the device runs today.
- Install the patched firmware released by 1 August 2026.
- Generate a completely fresh seed and move the funds to it. Patching alone does not repair an existing weak seed — that key already exists and can still be derived.
- Treat the old addresses as compromised and stop receiving to them, even if nothing has moved from them yet.
Custody is a spectrum, not a binary
The useful frame here is not "self-custody versus exchanges". It is a spectrum of trade-offs, where every position has a named failure mode and none has zero.
Hardware wallet with a passphrase
The strongest position against this specific class of attack — a compromised seed is not sufficient on its own. The failure mode is human, not technical: a forgotten or badly backed-up passphrase makes the funds permanently unrecoverable, with no recovery path and nobody to appeal to.
Hardware wallet alone
No counterparty holds anything, and no company failure can touch the funds. The failure mode is firmware and supply chain — precisely this event. The user is also responsible for updates, backups and migrations, and this exploit showed that responsibility includes acting on an advisory quickly.
Exchange custody
The seed problem disappears because the user never generates one. The failure mode moves to counterparty risk, and the reference case is FTX: customer assets sitting with a custodian that failed. Traders who keep a working balance on a platform — whether they are buying bitcoin or trading futures — have exchanged key-management risk for counterparty risk, not eliminated risk.
The argument over which trade-off is better is genuinely open. CoinDesk reported on 2 August 2026 that, unlike the FTX collapse, this exploit has investors sending bitcoin back to exchanges. Bloomberg's Eric Balchunas argued it strengthens the case for spot bitcoin ETFs, which take the user out of seed creation, firmware updates, backups and migration entirely. Willy Woo publicly defended self-custody (CryptoTimes, 3 August 2026). Both are describing a real trade-off, and this event did not settle it.
Frequently asked questions
How do I know whether my Coldcard is affected?
The affected set is Coldcard Mk3 firmware v4.0.1–4.1.9 and earlier, traceable to a March 2021 build. The determining factor is the firmware version in place when the seed was generated. Coinkite's advisory is the authoritative reference for checking a specific device.
Does updating the firmware protect the funds already in my wallet?
No. The patch fixes how new seeds are generated. A seed created on an affected build stays weak after the update, which is why the advisory asks users to migrate to a wallet with a freshly generated seed rather than simply updating.
Did a passphrase actually make a difference?
Yes. Seeds protected by a strong BIP-39 passphrase, or supplemented with independent entropy such as dice rolls, are at significantly reduced risk. It remains a trade-off rather than a free upgrade: an unrecoverable passphrase is an unrecoverable wallet.
This article is for informational purposes only and does not constitute investment advice.
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

IREN Stock and the Microsoft Delivery: What Completing Horizon 1 and Getting Nvidia's Exemplar Status Actually Mean

Kioxia Stock Has 130% Upside According to Analysts: Should You Buy After the July Selloff

Nvidia Stock Price and SpaceX's Exclusive Partnership: What Building Exclusively on Nvidia Actually Changes

Sandisk Stock Falls After Record Q4 Earnings: What $8.97 Billion Revenue and a Guidance Miss Actually Mean

Arm Earnings Q1 FY2027: The $1 Billion Supply Gap to Watch

Stock Market Today: Chip Rout Hits Asia as Fed Meeting Opens

Oil Price Above $90: What the US-Iran War Means for Your Portfolio Right Now

Is TSMC Stock a Buy After Q2 Earnings? What 22x Forward Earnings and 61% AI Revenue Tell Investors

TSMC Stock After Record Q2 Earnings: Why TSM Slipped
Plot twist in the AI race—the next big flex is actually physical infra?

A Deep Dive into the Opportunities Behind NVIDIA’s Strategic Investments

Serenity & Leopold & Nvidia & Trump — Who Is the “Shill King”?

NVIDIA (NVDA) Earnings Date: When Q2 FY2027 Reports and What to Watch

BitMEX Is Closing September 23, 2026: Timeline and How to Withdraw Before the Deadline

Micron Stock (MU): Price, Outlook and How to Buy

How to Log In to MetaMask: Unlock, Troubleshooting and Recovery (2026)

SanDisk Stock (SNDK): Price, Outlook and How to Buy

Bybit Japan Service Termination: The Complete Timeline and What Happens on July 22, 2026

Bitcoin Price Over 10 Years: Historical Recap and Long-Horizon Outlook

BitMart Is Closing: Shutdown Timeline and How to Withdraw Before August 26, 2026

SOXSB Explained: Why the 3x Chip Bear ETF Resets Without You

CLARITY Act: What Happens in the Senate's September Window

How to Call a Crypto Exchange API Without Getting Blocked

Crypto Exchange API: Permissions, Signing and Rate Limits

QQQB and the Fed: What the FOMC Minutes Mean for Nasdaq-100

How to Trade Unitree Stock When You Can't Buy 688836

ETH to USDT: What the Converter Rate Leaves Out

Your Crypto Exchange Is Shutting Down: How to Move Your Funds and Choose the Next Exchange

Meta Stock at $548: The Free Cash Flow Number Behind the Drop


