Coldcard Theft: FBI May Know 1,082 BTC Attacker
6 Articles
6 Articles
If the FBI Knows the Coldcard Hacker, Why Haven’t the Bitcoins Been Recovered?
Identifying the Coldcard attacker may help locate stolen BTC but does not ensure recovery. More than 1,000 BTC from Wave 1 remains linked to three addresses under investigation. Victims still face uncertainty over how recovered BTC would be returned or allocated. For victims of the 2026 Coldcard hack, the biggest question is no longer only who stole their Bitcoin, but whether they can ever get it back. Investigators may have a lead on the attack…
Coldcard Theft Hits $70M As FBI May Identify Attackers
The Coldcard theft investigation has advanced after investigators reportedly traced the first wave of the July exploit to a paid blockchain service account. The attack drained more than 1,082 BTC, while the underlying seed-generation vulnerability has raised broader concerns about firmware security and self-custody risks.
FBI May Have Identified Coldcard Hacker Behind 1,082 BTC Theft
TLDR The first Coldcard attack wave stole 1,082.65 BTC. Block traced the attacker to a paid blockchain data provider account. The provider’s logs reportedly matched the theft pattern with “extraordinary specificity.” More than 1,800 BTC was stolen across multiple Coldcard attack waves. The...
Coldcard Theft Case Update: FBI May Have Identified First-Wave Attackers
The post Coldcard Theft Case Update: FBI May Have Identified First-Wave Attackers appeared first on Coinpedia Fintech News The FBI may have identified the attackers behind the first wave of the July 2026 Coldcard hardware wallet exploit, which resulted in the theft of 1,082.65 BTC worth about $11.8 million, according to Bitcoin Magazine. Investigations by Block and Galaxy Research found that the attackers used a paid blockchain data provider whi…
Coldcard 盗币事件新进展,第一波攻击者身份或已被 FBI 掌握
ChainCatcher 消息,据 Bitcoin Magazine 报道,2026 年 7 月 Coldcard 硬件钱包大规模盗币事件调查取得进展。第一波攻击中约 1082.65 枚 BTC(约 1.18 亿美元)仍存放在攻击者地址中,调查发现攻击者使用了某区块链数据服务商的付费账户,内部日志与盗币模式“高度吻合”,相关线索已移交执法部门。Galaxy Research 分析师 Alex Thorn 表示,第一波攻击者身份“可能已被执法部门掌握”。后续几波攻击合计约 2000 枚 BTC 被盗,其中第二波约 76 枚 BTC,操作模式与第一波相似,可能为同一行为人。事件源于 Coinkite 在 2021 年 3 月的代码更新中引入的熵生成漏洞,导致部分使用 MK2 及后续型号、固件 4.1 及以上版本的设备生成了低强度私钥,种子可被暴力破解。Coinkite 已发布修复固件并建议用户迁移资产,但漏洞影响范围仍在评估中。
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium






