Coldcard Company Abandons Data Deletion Policy Following $116 Million Wallet Hack

cryptonews.ru2026-08-07 tarihinde yayınlandı2026-08-07 tarihinde güncellendi

Özet

Coldcard wallet maker Coinkite is changing its customer data retention policy following a major July 2026 security breach that resulted in the theft of over $116 million in Bitcoin. The company will no longer automatically delete customer records, a reversal of its prior privacy-focused stance, citing preparation for potential legal obligations arising from the hack. The breach exploited a firmware vulnerability (version 4.0.1) present since March 2021. Security firm TRM Labs warned that any seed phrase created on a vulnerable device before patching should be considered compromised. The attack occurred in several waves, ultimately draining over 1,816 BTC from more than 5,200 addresses, making it the third-largest crypto hack of 2026. Canada was reportedly the hardest-hit region. Coinkite has publicly denied long-standing allegations that it knew about the critical flaw beforehand, pointing to its public incident history log. The hack has shaken trust in self-custody solutions within the Bitcoin community.

Coinkite, the developer of the Coldcard wallet which was hacked in July in a major security incident causing $116 million in damages, has informed its users of significant changes to how their data will be stored ahead of potential legal obligations.

A notice, redistributed on the Coldcard X account early Friday morning, detailed that Coinkite will cease automatically deleting customer records. This statement is a reversal of the company's position, directly linked to a firmware vulnerability that led to the theft of over $100 million in Bitcoin from the company's hardware wallets starting July 30, 2026.

How does Coinkite handle user records?

Coinkite confirmed it will alter its processing of client data "in connection with the security incident made known on July 30, 2026." However, prior to this statement, the company regularly deleted customer records, except for their email addresses and countries of residence.

The change in the standard payment processing procedures for the Coldcard Wallet is part of what the company called preparation for "legal obligations" arising from the theft.

In its statement, the company did not specify exactly what information it plans to store or for how long it will be stored going forward.

Nevertheless, this marks the latest major departure from the principle of prioritizing privacy and self-custody of assets, a mantra for Bitcoin Maxis for decades.

What happened with Coldcard?

The revision of Coinkite's data retention policy came after one of the most serious security incidents this year, which exploited a vulnerability in firmware version 4.0.1 released by the company in March 2021.

As company TRM Labs warned, given the severity of the security vulnerability, installing the patched firmware only protects future wallets. Any seed phrase created on a vulnerable Coldcard card between March 2021 and the time of installing the patch should be considered unsafe.

To date, Cryptopolitan has reported four waves of attacks starting July 30, when the vulnerability was first discovered.

The first attack wave drained about 594 $BTC, worth nearly $38 million at the time, from approximately 500 wallets within 25 minutes. Galaxy Research company tracanother three waves over the next four days. As of this report, the stolen assets amount to 1816 $BTC from over 5200 addresses.

TRM calls this the third-largest crypto hack of 2026, a year in which the industry has already lost over $1.2 billion from 276 incidents.

Coinkite refutes claims that "they knew"

As losses mounted, so did accusations that Coinkite had concealed the defect for years. The company is publicly correcting this situation.

In response to a comment by Jack Mallers on August 7, COLDCARD wrote that "there was no weak entropy fallback," arguing that the weak pseudorandom number generator, called Yasmarang, was a built-in universal MicroPython generator featured in the source code, not a Coinkite fallback.

Separately, on August 5, reports emerged that a 2021 "Rabbit Hole Recap" episode, often cited as evidence of prior knowledge of the issue, discussed a different bug, not the random number generator problem. On Coinkite's own incident history page, 23 security-related events dating back to 2019 are listed, a point the company has repeatedly made to critics.

Canada hardest hit

Geographic factors influenced the scale of the damage. Cryptopolitan reported that about 25% of attributed losses trac to wallet owners in Canada, with the United States and Thailand also significantly affected, according to Chainalysis data linking wallet address databases to likely regions.

Chainalysis explained Bitcoin's spread in Canada by early adoption and influencer campaigns that promoted Coldcard in the local market.

The ripple effects are felt everywhere. A CoinMarketCap weekly analysis review states that the hack has undermined trust in self-custody and pushed some towards exploring AI-assisted Bitcoin custody solutions, having scanned 150 repositories to date.

end-content

Trend Kriptolar

İlgili Sorular

QWhat significant policy change did Coinkite announce regarding user data, and what prompted this change?

ACoinkite announced it will stop automatically deleting customer records, a reversal of its previous data retention policy. This change is directly linked to the July 2026 security breach where over $116 million in Bitcoin was stolen due to a firmware vulnerability, and is part of the company's preparation for potential legal obligations stemming from the hack.

QWhat was the technical root cause of the Coldcard wallet hack, and what makes the vulnerability particularly severe?

AThe hack exploited a vulnerability in the version 4.0.1 firmware released by Coinkite in March 2021. The severity lies in the fact that installing a patched firmware only protects future wallets. Any seed phrase generated on a vulnerable Coldcard device between March 2021 and the moment of patching is considered compromised and unsafe.

QWhat has been the total reported impact of the Coldcard hack in terms of stolen Bitcoin and the number of affected wallets?

AAccording to the article, the stolen funds amount to 1,816 BTC from over 5,200 wallet addresses, making it the third-largest crypto hack of 2026 at the time of reporting.

QHow did Coinkite respond to allegations that the company had known about the security flaw for years?

ACoinkite publicly refuted these claims. The company stated that the weak pseudo-random number generator (Yasmarang) was a built-in universal generator from MicroPython present in the source code, not a Coinkite backdoor. It also pointed to its public incident history page listing 23 security events since 2019, arguing that a 2021 episode cited by critics referred to a different bug, not this random number generator issue.

QWhich country was reported to be the most affected by the hack, and what were the cited reasons for this?

ACanada was reportedly the most affected country, with about 25% of the attributed losses traced to wallet owners there. Chainalysis explained this prevalence by Canada's early adoption of Bitcoin technology and influencer campaigns that promoted Coldcard in the local market.

İlgili Okumalar

Is the Signal That Triggered During Previous Bitcoin Bull Rallies Repeating? Warning!

Cryptocurrency analysis platform CryptoQuant reports that Bitcoin is approaching a critical level based on the MVRV Z-Score indicator, but the current situation does not yet confirm the start of a new bull market. The Z-Score is nearing its 365-day moving average, a key level that has historically signaled a market regime shift. Historically, a sustained break above this 365-day moving average signaled a transition from a recovery phase to an expansion phase, preceding major bull markets in 2017 and 2020-2021. Currently, however, the indicator remains below this average. A confirmed break and hold above it could signal renewed unrealized network profit and the start of a new growth period. Conversely, a rejection from this level might indicate insufficient overall market profitability to support a broader bull rally. The analysis notes a key difference from past cycles: during previous major cyclical lows, the MVRV Z-Score fell below zero into undervalued territory, which has not occurred in the recent correction. This could suggest Bitcoin is undergoing a structurally shallower correction or that a capitulation event on the scale of past macro lows is not yet complete. Additionally, the Z-Score has formed lower peaks in each successive cycle, indicating that market valuation excesses are becoming more constrained over time even if price reaches new highs. For a bullish scenario to materialize, according to CryptoQuant, the MVRV Z-Score must recover and sustain above its 365-day moving average. A bounce rejection would suggest the market is in a "recovery" mode, while a return of the indicator toward zero could reinforce the view that the current correction is not yet over.

cryptonews.ru1 saat önce

Is the Signal That Triggered During Previous Bitcoin Bull Rallies Repeating? Warning!

cryptonews.ru1 saat önce

Morpho Stablecoin Yield Strategy: Same Curator, 3.96% vs. 7.7% Return Gap

**Summary of "Morpho Stablecoin Yield Strategy: 3.96% vs 7.7% from the Same Curator"** This article analyzes a yield opportunity on Morpho, a permissionless lending protocol, where depositors can bypass curated vaults to directly supply stablecoins to individual lending pools for higher returns. The core observation is a significant yield gap: a conservative vault managed by "Steakhouse Financial" offers a 7-day average APY of 3.96%, while its higher-risk vault offers 5.09%. Meanwhile, directly depositing into a specific pool (USDC / PT-reUSD-10DEC2026), which several professional vaults like Steakhouse also invest in, yields approximately 7.7%. This ~3.7 percentage point premium compensates depositors for assuming the specific collateral risk (a structured asset expiring Dec 10, 2026) and forgoing the diversification, monitoring, and emergency actions provided by vault managers. The article details the risks: 1) Concentrated exposure to a single collateral type with potential de-pegging or expiry risks. 2) Low immediately withdrawable liquidity (only 5% of the pool's supply), meaning exits may require queuing. 3) No professional oversight for the pool. Key operational advice includes: * Using the number of reputable vaults invested in a pool as a primary filter (for exclusion, not endorsement). * Always calculating the "landed" APY based on one's deposit size and the pool's utilization rate, rather than trusting the listed rate. * Pre-defining strict exit signals (e.g., 2 weeks before collateral expiry, if liquidity falls below a threshold, or if the yield premium narrows). * Acknowledging that the arbitrage window will close as more capital flows into direct pools or product interfaces improve. The analysis concludes that at current low Ethereum gas fees, the cost barrier for this strategy is minimal (~$160 minimum viable position), making risk tolerance—not cost—the deciding factor. The premium represents payment for taking on risks that professional vaults choose to avoid for their conservative products.

marsbit1 saat önce

Morpho Stablecoin Yield Strategy: Same Curator, 3.96% vs. 7.7% Return Gap

marsbit1 saat önce

İşlemler

Spot

Popüler Makaleler

DATA Nasıl Satın Alınır

HTX.com’a hoş geldiniz! DATA Network (DATA) satın alma işlemlerini basit ve kullanışlı bir hâle getirdik. Adım adım açıkladığımız rehberimizi takip ederek kripto yolculuğunuza başlayın. 1. Adım: HTX Hesabınızı OluşturunHTX'te ücretsiz bir hesap açmak için e-posta adresinizi veya telefon numaranızı kullanın. Sorunsuzca kaydolun ve tüm özelliklerin kilidini açın. Hesabımı Aç2. Adım: Kripto Satın Al Bölümüne Gidin ve Ödeme Yönteminizi SeçinKredi/Banka Kartı: Visa veya Mastercard'ınızı kullanarak anında DATA Network (DATA) satın alın.Bakiye: Sorunsuz bir şekilde işlem yapmak için HTX hesap bakiyenizdeki fonları kullanın.Üçüncü Taraflar: Kullanımı kolaylaştırmak için Google Pay ve Apple Pay gibi popüler ödeme yöntemlerini ekledik.P2P: HTX'teki diğer kullanıcılarla doğrudan işlem yapın.Borsa Dışı (OTC): Yatırımcılar için kişiye özel hizmetler ve rekabetçi döviz kurları sunuyoruz.3. Adım: DATA Network (DATA) Varlıklarınızı SaklayınDATA Network (DATA) satın aldıktan sonra HTX hesabınızda saklayın. Alternatif olarak, blok zinciri transferi yoluyla başka bir yere gönderebilir veya diğer kripto para birimlerini takas etmek için kullanabilirsiniz.4. Adım: DATA Network (DATA) Varlıklarınızla İşlem YapınHTX'in spot piyasasında DATA Network (DATA) ile kolayca işlemler yapın.Hesabınıza erişin, işlem çiftinizi seçin, işlemlerinizi gerçekleştirin ve gerçek zamanlı olarak izleyin. Hem yeni başlayanlar hem de deneyimli yatırımcılar için kullanıcı dostu bir deneyim sunuyoruz.

653 Toplam GörüntülenmeYayınlanma 2026.07.01Güncellenme 2026.07.01

DATA Nasıl Satın Alınır

Tartışmalar

HTX Topluluğuna hoş geldiniz. Burada, en son platform gelişmeleri hakkında bilgi sahibi olabilir ve profesyonel piyasa görüşlerine erişebilirsiniz. Kullanıcıların DATA (DATA) fiyatı hakkındaki görüşleri aşağıda sunulmaktadır.

活动图片