根據區塊公司的工程團隊指出,此漏洞源自於 Coinkite 隨機數生成器的瑕疵。在某些情況下,系統會使用設備序號等簡單數值來生成種子助記詞,導致駭客能夠輕易預測並系統性地耗盡用戶錢包。
儘管 2026 年上半年的加密貨幣遭竊總額較去年同期有所下降,但駭客攻擊次數卻創下歷史新高。這起事件不僅突顯了離線儲存的潛在風險,也讓許多受害者對加密貨幣及硬體錢包技術失去信心。

Hackers recently exploited a software flaw in Coldcard hardware wallets issued by the Canadian company Coinkite, stealing over $110 million worth of Bitcoin from thousands of accounts. This incident caused massive losses for investors who believed cold wallets were the safest storage option. (Key numbers: 1.1)
According to Block Inc.'s engineering team, the vulnerability originated from a flaw in Coinkite's random-number generator. Under certain conditions, the system used simple values like device serial numbers to generate seed phrases, allowing attackers to easily predict them and systematically drain user wallets.
Although the total amount of stolen cryptocurrency in the first half of 2026 decreased compared to the previous year, the number of hacking incidents reached a record high. This breach highlights the potential risks of offline storage and has caused many victims to lose faith in cryptocurrency and hardware wallet technologies.