Coldcard: weak seed generation and migration
Coinkite’s incident status describes weakened seed generation and thefts. Corrected firmware changes future generation; it does not strengthen an existing affected seed.
Read disclosure ↗Follow the distinctions between seed generation, multisig validation, Delta PIN behavior and physical chip attacks. Existing weak seeds require different remediation from a software bug.
Coinkite’s incident status describes weakened seed generation and thefts. Corrected firmware changes future generation; it does not strengthen an existing affected seed.
Read disclosure ↗Researcher reported private-key recovery from the Delta PIN signing behavior.
Read disclosure ↗A complete seed was recovered from a challenge wallet.
Read disclosure ↗Failure to verify the device’s own xpub could substitute attacker-controlled keys.
Read disclosure ↗PIN-protection material could be recovered.
Read disclosure ↗Insufficient multisig script validation could allow tampered PSBT files to redirect transaction change. Coinkite credited researcher Dmitry Petukhov.
Read disclosure ↗This is a selected public research archive, not a complete inventory or a rating of current product security.