We made a short visual explainer to help people understand the Coldcard bug, and what it means for the security of affected wallets.
Bitcoin's entire security model depends on a user's ability to select astronomically large numbers from a truly random set.
If you imagine every possible Bitcoin private key as individual atoms, when a private key is generated properly, the pool of possibilities is so large that it's like an attacker is hunting for one specific atom hidden somewhere across 2 billion galaxies. No classical computer could ever search that many possibilities.
Unfortunately, affected Coldcard firmware drew its seeds from a much smaller, more predictable pool. If every possible Coldcard private key was an atom, the possible set of keys would only be about the size of a large virus. In comparison, a standard computer could work through that space in just a few hours.
Our video helps visualize what this difference looks like, we hope this is helpful for everyone to establish the importance of true entropy in key generation.
We are deeply sorry for anyone who lost funds to this bug. We know several people that were personally affected, including members of the BPI team. Losing funds after working hard protect your wealth is extremely difficult.
We are developing a set of policy reflections based on this vulnerability that we hope to publish as soon as possible.
@UncleCheeki@kinetic_finance@KLoaec@giacomozucco Even human-composed pattern passphrases will give enough entropy with enough characters, unless its linkin park lyrics or something stupid.
ExamplePassphrase!AnythingWillWork69420DuDuDuMaxVerstappen~!Etcetera-YaKnow?
1/ During our investigation of the Coldcard drain yesterday, we identified an unusual pattern in the sweeps. That pattern led us to a hypothesis that has since been confirmed: the operator used a paid account at a well-known blockchain-services provider to query the source addresses and perform other related activity during the sweeps.