7OrStone

Market Prices

BTC Bitcoin
$77,692.9 -1.75%
ETH Ethereum
$2,419.86 -2.40%
SOL Solana
$100.2 -3.76%
BNB BNB Chain
$689 -0.65%
XRP XRP Ledger
$1.35 -2.85%
DOGE Dogecoin
$0.0819 -2.09%
ADA Cardano
$0.1986 -1.93%
AVAX Avalanche
$7.25 -0.81%
DOT Polkadot
$0.8764 +2.80%
LINK Chainlink
$11.28 -1.75%

Event Calendar

{{年份}}
08
04
upgrade Solana Firedancer

Independent validator client goes live on mainnet

15
04
halving Bitcoin Halving

Block reward reduced to 3.125 BTC

28
03
unlock Arbitrum Token Unlock

92 million ARB released

22
03
unlock Optimism Unlock

Circulating supply increases by about 2%

10
05
upgrade Ethereum Pectra Upgrade

Raises validator limit and account abstraction

12
05
halving BCH Halving

Block reward halving event

18
03
unlock Sui Token Unlock

Team and early investor shares released

30
04
upgrade Celestia Mainnet Upgrade

Improves data availability sampling efficiency

Tools

All →

Altseason Index

41

Bitcoin Season

BTC Dominance Altseason

Market Cap

All →
# Coin Price
1
Bitcoin BTC
$77,692.9
1
Ethereum ETH
$2,419.86
1
Solana SOL
$100.2
1
BNB Chain BNB
$689
1
XRP Ledger XRP
$1.35
1
Dogecoin DOGE
$0.0819
1
Cardano ADA
$0.1986
1
Avalanche AVAX
$7.25
1
Polkadot DOT
$0.8764
1
Chainlink LINK
$11.28

🐋 Whale Tracker

🔵
0x36e6...aea9
1d ago
Stake
2,530,358 USDC
🔴
0xe155...b187
1d ago
Out
41,673 BNB
🟢
0x047c...29c9
30m ago
In
19,274 BNB

Coldcard's RNG Failure: The Hardest Truth in Self-Custody

Video | LarkWhale |
The algorithm priced the ape before the crowd did. This time, the ape was a hardware wallet. On August 20, Coinkite pushed firmware updates for all Coldcard models—Mk4, Mk5, and Q—after a third-party analysis by Block flagged a critical flaw in the random number generator (RNG). The vulnerability allowed the device to fall back to a deterministic MicroPython routine when a feature flag was misread as present. The result? Seeds generated on affected devices were not truly random. If an attacker guessed the state, your keys were never yours. Liquidity didn't drain from a pool; it drained from cold storage. And the market is only beginning to price the fallout. Context: Coldcard has long positioned itself as the gold standard for Bitcoin self-custody—air-gapped, open-source, and fiercely independent. Its user base skews toward security maximalists who trust no one. That trust was built on a simple promise: your private keys never leave the device, and they are generated from a hardware RNG that is cryptographically sound. This incident breaks that promise at the most fundamental level. The RNG is the genesis of every seed, and a flawed RNG means every subsequent layer of security is built on sand. Block's independent analysis, which Coinkite acknowledged as broader in scope than its own, traced the root cause to a code logic error—not a hardware defect. But the damage is systemic. The fix forces users to manually input entropy via dice rolls or coin flips—65 button presses, 50 dice throws, or 128 coin flips per seed. This is not a patch; it's a re-architecture of trust. Core: Let's cut through the noise. The vulnerability is a classic case of a feature flag being evaluated as present when it was defined as zero. MicroPython fallback took over, producing deterministic output. Coinkite's response was swift—firmware 5.6.1 for Mk4/Mk5 and 1.5.1Q for Q—but the fix is not retroactive. New firmware cannot add entropy to already-generated seeds. Every affected user must migrate funds to a new wallet. That migration process is a minefield. Based on my experience stress-testing hardware wallet workflows, I can tell you that the highest risk isn't the RNG bug itself—it's the human error during migration. Users will fumble with seed phrase backups, mis-verify addresses, and skip test transactions. The official guide is detailed, but execution under pressure is a different beast. I've audited similar migration protocols in institutional settings, and even trained staff make mistakes when moving multi-sig setups. The other critical detail: Coinkite has not disclosed verified victim counts or total losses. Law enforcement is investigating. That silence is a red flag. If the bug has been exploited in the wild, the window for attackers was open for months. The firmware also includes broader security hardening—USB review, PSBT validation, SIGHASH_SINGLE restrictions, and a persistent RNG failure halt. These are welcome, but they don't address the core question: why wasn't this caught in internal testing? My bet is the test suite lacked fault injection on the RNG path. This is a systemic failure, not a one-off. Contrarian angle: The market's immediate reaction will be to dump Coldcard and flee to Ledger or Trezor. That's the wrong move. Here's the unreported angle: this incident reveals a deeper truth about all hardware wallets. Every single one of them relies on a hardware RNG that is a black box to the end user. Ledger and Trezor have not had a public RNG failure—yet. But their security narratives are built on the same unverified foundation. The algorithm priced the ape before the crowd did—meaning the market will overcorrect. Coldcard's forced manual entropy is actually a step forward. It shifts the security assumption from trusting a proprietary chip to trusting user-executed physical randomness. Dice throws, if done correctly, are objectively more secure than any RNG that can be backdoored or subtly flawed. The real risk is user compliance: 50 dice throws must be independent, private, and fair. Most people will screw this up. But for the minority who execute it properly, their seeds are now stronger than any hardware-generated seed on the market. This is a contrarian opportunity. The narrative that "hardware wallets are absolutely safe" is dead. The new narrative should be "hardware wallets are only as safe as their entropy source." Coldcard is leading that transition, albeit painfully. Takeaway: Watch the next 72 hours. Coinkite must release verified damage numbers. If they don't, trust erodes further. More importantly, watch the competitors. Ledger and Trezor will run marketing campaigns emphasizing their audited RNGs—but ask for the audit reports. Structure is not a cage; it is a launchpad. This event will force the entire industry to adopt mandatory third-party RNG audits, and that's a good thing. The question is not whether Coldcard survives. It's whether you understand that your cold storage is only as cold as the entropy that birthed it. Value is a consensus, not a contract. Right now, the consensus is fear. The contract is math. Verify the math, or move your coins.

Fear & Greed

63

Greed

Market Sentiment

Gas Tracker

Ethereum 28 Gwei
BNB Chain 3 Gwei
Polygon 42 Gwei
Arbitrum 0.5 Gwei
Optimism 0.3 Gwei

💡 Smart Money

0xd747...f675
Experienced On-chain Trader
+$4.5M
79%
0x1e54...2947
Early Investor
+$0.2M
95%
0x944b...8a48
Market Maker
+$3.4M
76%