Coldcard Faces Another Security Breach with Phishing Post
- On Oct. 11, a phishing link was posted on Coldcard’s official X account.
- Coldcard reports its credentials and offline two-factor authentication remain secure.
- The incident follows a July firmware issue that led to losses of over $100 million in Bitcoin.
- The phishing message falsely claimed a critical vulnerability in seed generation.
- Coldcard has requested an investigation from X Support due to lack of unauthorized login records.
The fraudulent post on Coldcard’s social media account raised concerns about security, despite the company maintaining that its systems were not breached. The incident is particularly troubling following a major firmware flaw earlier this year that resulted in significant losses for users.
Coldcard continues to face scrutiny over its security measures as it investigates how the phishing post was published without any signs of unauthorized access. (Source)