tags. We'll translate each paragraph.
Let's translate the first paragraph: "A firmware flaw in Coldcard hardware wallets weakened the random number generator used to create seed phrases, leading to the theft of roughly 594 bitcoin from about 500 single-signature wallets on July 30–31, 2026. The vulnerability affected Mk3, Mk4, Mk5, and Q devices running specific firmware versions, replacing the hardware random number generator with a predictable software substitute. That cut entropy from 128 bits down to 72 bits — enough to make some seeds guessable."
Persian: "یک نقص فریمور در کیف پولهای سختافزاری Coldcard مولد اعداد تصادفی مورد استفاده برای ایجاد عبارات seed را تضعیف کرد و منجر به سرقت تقریباً ۵۹۴ بیتکوین از حدود ۵۰۰ کیف پول تکامضایی در تاریخ ۳۰ تا ۳۱ ژوئیه ۲۰۲۶ شد. این آسیبپذیری دستگاههای Mk3، Mk4، Mk5 و Q را با نسخههای خاصی از فریمور تحت تأثیر قرار داد و مولد اعداد تصادفی سختافزاری را با جایگزین نرمافزاری قابل پیشبینی تعویض کرد. این کار آنتروپی را از ۱۲۸ بیت به ۷۲ بیت کاهش داد — که برای قابل حدس شدن برخی seedها کافی بود."
We need to be careful with "seed phrases" -> "عبارات seed" or "عبارات بازیابی" but seed is a technical term, often kept as "seed" in Persian. We'll use "عبارات seed". Also "single-signature wallets" -> "کیف پولهای تکامضایی" or "تکامضا" but we can say "کیف پولهای تکامضایی". "random number generator" -> "مولد اعداد تصادفی". "entropy" -> "آنتروپی". "bits" -> "بیت". "guessable" -> "قابل حدس".
Second paragraph: "The bug lived in the seed generation code. On Mk3 devices with firmware 4.0.1 through 5.0.3, and on Mk4 and Mk5 devices before version 5.6.0, as well as Q devices before 1.5.0Q, the hardware random number generator was swapped out. Instead of drawing on the chip's true random source, the firmware fell back to a software-based generator that was far less random. The result: seeds with only 72 bits of entropy instead of the intended 128. That's a difference of 2^56 possible seeds — a gap that made brute-force attacks feasible for well-resourced adversaries."
Persian: "این باگ در کد تولید seed قرار داشت. در دستگاههای Mk3 با فریمور ۴.۰.۱ تا ۵.۰.۳، و در دستگاههای Mk4 و Mk5 قبل از نسخه ۵.۶.۰، و همچنین دستگاههای Q قبل از ۱.۵.۰Q، مولد اعداد تصادفی سختافزاری تعویض شد. به جای استفاده از منبع تصادفی واقعی تراشه، فریمور به یک مولد مبتنی بر نرمافزار که بسیار کمتر تصادفی بود بازگشت. نتیجه: seedهایی با تنها ۷۲ بیت آنتروپی به جای ۱۲۸ بیت مورد نظر. این تفاوت ۲^۵۶ seed ممکن است — شکافی که حملات brute-force را برای دشمنان دارای منابع کافی امکانپذیر میکرد."
We need to keep "2^56" as is, but in Persian we can write "۲ به توان ۵۶" or keep as "2^56". Probably keep as is for technical accuracy. Also "brute-force" is often kept as "brute-force" or "حمله brute-force". We'll say "حملات brute-force".
Third paragraph: "Who was at risk" -> heading. We'll translate as "چه کسانی در معرض خطر بودند" or "چه کسانی آسیبپذیر بودند". We'll use "چه کسانی در معرض خطر بودند".
Then: "Not every Coldcard user was vulnerable. The risk depended on the device version and how the seed was generated. Seeds created with a BIP-39 passphrase or with at least 50 dice rolls were not considered compromised. The main exposure hit single-signature wallets, where one seed controls all funds. Multisignature setups require additional keys, so they were less affected. The attackers swept funds from roughly 500 wallets, suggesting they targeted seeds that were generated on the vulnerable firmware without extra entropy sources."
Persian: "همه کاربران Coldcard آسیبپذیر نبودند. خطر به نسخه دستگاه و نحوه تولید seed بستگی داشت. seedهایی که با عبارت عبور BIP-39 یا حداقل ۵۰ بار پرتاب تاس ایجاد شده بودند، در معرض خطر تلقی نمیشدند. قرار گرفتن اصلی در معرض خطر، کیف پولهای تکامضایی بود که در آنها یک seed کنترل تمام وجوه را بر عهده دارد. تنظیمات چندامضایی به کلیدهای اضافی نیاز دارند، بنابراین کمتر تحت تأثیر قرار گرفتند. مهاجمان وجوه را از حدود ۵۰۰ کیف پول برداشتند، که نشان میدهد آنها seedهایی را هدف قرار دادهاند که در فریمور آسیبپذیر بدون منابع آنتروپی اضافی تولید شده بودند."
We need to explain "BIP-39 passphrase" -> "عبارت عبور BIP-39" or "عبارت عبور (Passphrase) BIP-39". We'll keep BIP-39 as is. "dice rolls" -> "پرتاب تاس". "multisignature" -> "چندامضایی".
Fourth paragraph: "Fixed firmware and lingering trust" -> heading: "فریمور اصلاحشده و اعتماد باقیمانده" or "فریمور اصلاحشده و اعتماد باقیمانده". We'll use "فریمور اصلاحشده و اعتماد باقیمانده".
Then: "Coldcard released patched firmware: version 5.6.0 for Mk4 and Mk5, and 1.5.0Q for Q devices. Mk3 users were advised to upgrade to a later firmware or replace the device. The incident is a reminder that hardware wallets reduce online risks but still require trust in the firmware, the supply chain, and the user's own practices. A single firmware bug can undo the security promise of cold storage."
Persian: "Coldcard فریمور وصلهشده منتشر کرد: نسخه ۵.۶.۰ برای Mk4 و Mk5، و ۱.۵.۰Q برای دستگاههای Q. به کاربران Mk3 توصیه شد به فریمور جدیدتر ارتقا دهند یا دستگاه را تعویض کنند. این حادثه یادآوری است که کیف پولهای سختافزاری خطرات آنلاین را کاهش میدهند، اما همچنان به اعتماد به فر