Galaxy Says at Least 15 Attackers Exploited Coldcard Vulnerability

Galaxy said at least 15 different attackers exploited a Coldcard vulnerability. Dragonfly’s managing partner said the issue may have been avoidable with roughly $2 worth of AI hardening.

Galaxy Says at Least 15 Attackers Exploited Coldcard Vulnerability

What happened?

Galaxy said at least 15 different attackers exploited a Coldcard vulnerability. Dragonfly’s managing partner said the issue may have been avoidable with roughly $2 worth of AI hardening.

Why it matters

The development matters because hardware wallet security is a core trust issue for crypto users and companies. When a vulnerability is reportedly exploited by multiple attackers, it highlights how even narrow technical weaknesses can become a wider ecosystem concern.

Galaxy said at least 15 different attackers exploited a vulnerability tied to Coldcard, according to source material from Cointelegraph. The report also cited Dragonfly’s managing partner as saying the weakness may have been avoided with about $2 worth of AI hardening.

The development matters because hardware wallet security is a core trust issue for crypto users and companies. When a vulnerability is reportedly exploited by multiple attackers, it highlights how even narrow technical weaknesses can become a wider ecosystem concern.

The source material does not provide details on the amount of funds affected, the timing of the attacks, or the specific technical mechanism involved. It also does not state whether Coldcard users need to take any particular action.

For readers, the key takeaway is that Galaxy identified repeated exploitation of the Coldcard vulnerability, while the Dragonfly comment frames the incident as a potentially preventable security failure. The case adds to ongoing scrutiny of how crypto infrastructure providers test and harden products before attackers find weaknesses first.

Source: Cointelegraph

Keep exploring

Related stories

Apple’s Submission Cap Reportedly Delayed a $200K macOS Exploit Report

Apple’s Submission Cap Reportedly Delayed a $200K macOS Exploit Report

A Milan startup says it used ChatGPT to identify a macOS vulnerability that could enable full system takeover. The company claims Apple’s new submission cap stopped it from reporting the flaw before the issue became public.

Read
Dinari Opens Tokenized U.S. Stock Platform to Eligible American Investors

Dinari Opens Tokenized U.S. Stock Platform to Eligible American Investors

Dinari is expanding access to its tokenized U.S. equities platform for eligible investors in the United States, allowing purchases through self-custody wallets using USDC. The launch comes as competition grows over how public stocks should be represented and traded on blockchains.

Read
Intesa Sanpaolo Cut Bitcoin ETF Exposure While Expanding Ether ETF Stake in Q2

Intesa Sanpaolo Cut Bitcoin ETF Exposure While Expanding Ether ETF Stake in Q2

Intesa Sanpaolo sharply reduced its iShares Bitcoin Trust position in the second quarter while increasing its holding in BlackRock’s ether ETF. The shift came during a weak quarter for both bitcoin and ether, alongside sizable outflows from U.S. spot crypto ETFs.

Read