Bullish

Bitcoin Core Dev Reproduces COLDCARD MK3 Vulnerability via Button Presses

2026-07-31 07:02:01

Developer instagibbs replicates COLDCARD MK3 flaw using setup button presses. MK2/MK3 devices potentially affected, while MK4 remains unconfirmed due to hardware RNG differences.

Woofun AI reports that Bitcoin Core developer instagibbs claimed to have successfully reproduced the reported COLDCARD vulnerability on a newly initialized COLDCARD MK3 device by manipulating button press counts during setup. The developer stated that the issue likely impacts MK2 and MK3 units, though confirmation for the MK4 model remains pending. Developer Antoine Poinsot noted that the MK4 employs a hardware random number generator for seed entropy, distinguishing it from the MK3. The proof of concept and mnemonic phrase verification are currently under review.

WOOFUN AI

Impact Assessment · Quick Read

The successful reproduction of this vulnerability raises immediate security concerns for users of COLDCARD MK2 and MK3 devices, potentially triggering a wave of hardware wallet migrations. The distinction regarding the MK4's hardware RNG suggests a clear mitigation path, which may influence market perception of Coldcard's engineering standards. If the proof of concept is validated, it could lead to broader scrutiny of deterministic seed generation methods in cold storage solutions.
Generated by WOOFUN AI · For reference only, not investment advice

Comments

Me
Replying to @User
0/800

No comments yet.

Notifications

Sign in to view messages
View all messagesManage subscriptions