Cold storage wasn’t the problem. The seed was

The Coldcard incident is a good reminder that “offline” doesn’t automatically mean secure. The devices didn’t need to be physically accessed. A firmware bug weakened the randomness used to generate some wallet seeds, which may have allowed attackers to reconstruct them offline. Coinkite says updating the firmware alone does not repair an affected seed. A completely new seed has to be generated after updating. Researchers now estimate that as much as 1,816 BTC, around $114M, may have been swept f

CryptoAlerta — análise de criptomoedas e mercado em tempo real