@BitcoinIsaiah More info.
Mk3 with no dice rolls or passphrase is literally a ticking time bomb. The attacker only scanned the latest 200 TX for each discovered wallet, so they might have simply missed yours by luck.
Mk4 (and Q) are relatively safe but move the funds soonish
We will probably never have a confirmation but I'm certain it was discovered by an LLM.
This means that open source will no longer just be a internet kudos marketing gimmick. It will be submitting your code to be battle tested.
Coldcard's code already has been.
2/2
On the Coldcard situation.
They're fully to blame for this. No possible excuse.
That said, they have their product's software open sourced, which is arguably the "right way" to go about software development.
The bug was there since 2021, but no one saw it.
1/x
With the CS2 launch I decided to create a cross platform, terminal only, ebot inspired, server manager: CSCTRL.
Here's a small glimpse into some features such as server selection, live score and player monitoring, server cfg loading and of course rcon support