A technical breakdown of exactly what happened with coldcard.
Been getting a lot of questions about the coldcard seed bug,
so — short version. It wasn't a hack. Nobody broke a PIN, opened a device, or installed malicious firmware.
A build flag meant affected devices picked their secret from a far smaller set than they should have.
Those coins were guessable from the day the wallet was made. Some of them, five years ago. Here's my breakdown of what to know.