Huge $116 Million Bitcoin Theft Hits Offline Wallets

Hackers have stolen 116 million dollars in bitcoin from Coldcard hardware wallets.
Coldcard devices are offline crypto wallets,
which many people consider the safest place to store digital money.
But blockchain data shows attackers emptied more than 5,200 wallet addresses.
The theft happened because of a flaw in a software update from March 2021.
This bug turned off the wallet's hardware random number chip.
Instead of creating random keys, the device made seeds in a predictable pattern.
Hackers used regular computers to guess these patterns,
and took the money without needing physical access.
This attack shocked the entire crypto community
because even careful offline users lost their funds.
Coldcard's maker, Coinkite, is urging all users
to move their funds to safe wallets immediately.
The company is helping victims file police reports,
but it has not offered to pay back the stolen money.

Quiz 🧠

Q1. Even offline crypto devices can be hacked if their software has bugs.
①True
②False
Show answer

✅ True

Software errors can create weak security keys, letting hackers guess them even without internet access.

Q2. What does 'flaw' mean in 'a software flaw'?
①a mistake
②a new feature
③a big update
④a high price
Show answer

✅ a mistake

A flaw is a bug, error, or weakness that prevents something from working correctly.

Q3. If a crypto wallet creates passwords in a predictable pattern, why is it dangerous?
①Hackers can guess them easily
②The device stops working
③It uses too much power
④The screen turns off
Show answer

✅ Hackers can guess them easily

When patterns are predictable, computers can quickly calculate secret keys and take the money.

Dialogue 🎧

Alex: Okay, this crypto story kind of broke my brain today.
Sophia: Uh oh. What did you read now?
Alex: Hackers stole 116 million dollars in bitcoin. They drained it straight out of offline wallets.
Sophia: Wait, offline? You mean crypto wallets that never touch the internet?
Alex: Exactly. People use Coldcard hardware wallets because they think it is the safest place.
Sophia: Right, like a digital safe box. So how did anyone steal from them?
Alex: Blockchain data shows attackers emptied more than 5,200 wallet addresses.
Sophia: That is insane! Did someone steal the actual devices?
Alex: Nope. The theft happened because of a flaw in a software update from March 2021.
Sophia: A software bug? How does that affect an offline device?
Alex: This bug turned off the wallet's hardware random number chip.
Sophia: Wait. So it stopped generating secure random keys?
Alex: Yes! Instead of random keys, the device made seeds in a predictable pattern.
Sophia: No way. So the passwords became predictable?
Alex: Exactly. Hackers used regular computers to guess these patterns endlessly.
Sophia: And they took the money without needing physical access? That is terrifying.
Alex: It shocked the entire crypto community. Even careful offline users lost everything.
Sophia: Is the company doing anything to fix this?
Alex: Coldcard's maker, Coinkite, is urging all users to move their funds immediately.
Sophia: Are they offering to pay back the stolen money?
Alex: They are helping victims file police reports. But they have not offered to pay back the money.
Sophia: Oof, that is tragic. Doing everything right and still losing it all gives me chills.

Study this news in the app