How was nearly 4,000 BTC taken from the Liquid Network without the keys being compromised?
The attacker/s called themselves 'white hats' and returned most of the bitcoin. But does that make them white hats?
Listen to @Abstr_ct explain more here:
piped.video/live/1RWwb55Ezj8
Join C4 for a live discussion on Sept. 22 at 1pm edt. We'll look at recent cryptocurrency incidents, where security failed, and what we can learn from each one.
Understanding how incidents happen makes for better security decisions.
Join here:piped.video/live/1RWwb55Ezj8
Brevo, an email service provider used by C4 and many other companies, experienced a security incident.
As far as we know, C4 was not impacted.
Be cautious of links and downloads. Never share credentials, authentication codes, seed phrases, passphrases, or private keys.
Strong cryptography doesn't automatically mean a secure system.
During the Secure Key Generation panel at the C4 Security Summit, @Adatm_T_H at @station_70 discussed why implementation matters, particularly when it comes to something as fundamental as entropy.
Not enough randomness has cost millions.
CCSS Steering Committee member @forwardsecrecy explains why sufficient entropy is foundational to secure key generation. It's why its been part of the CCSS since 2014.
Learn more about the (CCSS): cryptoconsortium.org/standar…
If your work touches Bitcoin, demonstrating that you understand how it actually works matters.
The Certified Bitcoin Professional (CBP) credential proves your knowledge of Bitcoin.
Get certified: cryptoconsortium.org/product…
Security folks spend a lot of time thinking about what could go wrong. We may seem paranoid, but billions lost to hacks give us good reason to be.
A SOC 2 is useful, but it doesn’t tell you everything.
Want to align with CCSS? Start with a CCSSI like Justin from @HalbornSecurity
“AI cannot break what is not broken.”
At C4’s security summit, @0xGianfranco from @OpenZeppelin talked about the growing role of AI in finding and exploiting vulnerabilities.
More clips from the C4 Security Summit coming soon.
During his keynote at the C4 Security Summit @lopp from @CasaHODL talked how attackers are increasingly going after the people behind the systems.
Strong technology matters, but attackers often look for another way in, like through human behavior.
More Summit clips coming soon!
This entire event is going to be great! There are some great speakers lined up, incredibly pertinent and timely topics, and it’s free! Looking forward to helping kick it off with a look at the current threats to the blockchain and digital asset industry.
Excited to be on this one. The crypto threat landscape has shifted fast over the last year, and this panel is a good crowd to unpack it with.
Free, virtual, Aug 19 · 9am–12pm ET 👇
cryptoconsortium.org/c4summi…
How do you choose the right approach to crypto custody?
At the C4 Security Summit, our Choosing a Custody Model session discusses options and how different needs and risks lead to different designs.
With speakers from:
@FireblocksHQ@RipioApp
Zanarc
Plusninone Security
We’re excited to have @lopp from @CasaHODL, part of our CCSS committee, deliver the keynote, Why Cryptocurrency Security Matters, at the C4 Security Summit.
📅 August 19, 2026
🕘 9:00 AM–12:00 PM ET
💻 Free live virtual event
Register: cryptoconsortium.org/c4-secu…
C4 Security Summit!
📅 August 19, 2026
🕘 9:00 AM–12:00 PM Eastern
💻 Free Live Virtual Event
Registration Required: cryptoconsortium.org/c4summi…
Hear from industry experts, with a keynote from @lopp
The Coldcard entropy incident remidns us that strong crypto systems depend on strong operational processes.
Upcoming CryptoCurrency Security Standard (CCSS™) trainings are in Aug. for EMEA, Oct. for APAC, and Nov. for AMER.
Reserve your spot today: cryptoconsortium.org/trainin…
Weak randomness is one of the most fundamental risks in crypto. If keys are generated with poor entropy, the rest of the security stack doesn’t matter.
Join us for a deep dive into entropy and key generation.
piped.video/live/mnoSFJyoIOI…
Catch our livestream on the Coldcard seed generation incident: piped.video/live/q4BBjZLDzQo
Members of C4's CCSS™ Committee, @lopp, @mperklin, @forwardsecrecy, discuss entropy, secure key generation, and the security lessons highlighted by the incident.
@Abstr_ct gave a fantastic class on crypto key creation at #BTC2019 and shared ceremony.guide/ as a way to understand how unguessable keys can be created.
It's a great way to get a practical feel for how keys work @LearnMoreWithC4
Special Livestream Today 🎲
Our CCSS™ Committee will discuss the seed generation issue affecting certain Coldcard hardware wallet devices and firmware versions and the importance of entropy.
🗓️ July 31 • 2 PM ET
piped.video/live/q4BBjZLDzQo