My heart still hurts for everyone who got burned with the coldcard. This was such a massive failure at such a critical foundation that it blows my mind that it happened. I still can’t decide whether it was due to making the firmware *way* to convoluted (there is reason to think that this got lost in a dance they were doing that didn’t even need to be there) or if this was truly malicious and an orchestrated attack.
My conspiracy brain can’t let go of the latter option, but from looking further into it i can see why it would have been missed as well. They simply engineered it in a pointlessly complex way. Simple is reliable.
Customer: I lost 3 BTC. Five years of DCA. What are you doing for the people this happened to?
Coldcard: A new firmware release is available. 5.6.1 for Mk4 and Mk5.
Customer: I’m asking about the victims.
Coldcard: This release follows three weeks of sustained review.
Customer: Are you sorry?
Coldcard: We continue to acknowledge the customers who suffered severe financial losses.
Customer: Is acknowledging the same as sorry?
Coldcard: It is an acknowledgement.
Customer: Who wrote the code that emptied me?
Coldcard: It was the seed-generation attack.
Customer: Who wrote the code?
Coldcard: The attack.
Customer: Is anyone being compensated?
Coldcard: Updating does not repair an existing seed.
Customer: Is that a no?
Coldcard: Users should generate a new seed and move their funds.
Customer: There are no funds. That’s why I’m here.
Coldcard: We strongly recommend verifying the signed firmware download.
Customer: Have you spoken to a single one of us?
Coldcard: The release includes many additional security and correctness improvements.
Customer: Have you spoken to a single one of us?
Coldcard: Thank you for helping make this release stronger.
Customer: Do you understand what you’ve done to us?
Coldcard: The firmware is available now.
@StevieJarosz@_Checkmatey_ I am not trading or making money off off it but it was nice to watch while it was free 😁 easily the best analysis out there imo
@marc02200@Trezor@COLDCARDwallet Do not depend on single device rng. Passphrase doesn't matter that much if seed is broken. If you know how setup multisig with different vendors