. We'll translate each part.
Let's break down:
First paragraph: "A Canadian entrepreneur lost 18.25 Bitcoin — worth roughly $1.6 million — from a Coldcard hardware wallet in under seven minutes on July 29, 2026. The theft is part of a much larger pattern: Galaxy Research has identified three suspected attack waves targeting Coldcard-generated addresses, draining 1,367.05 BTC (about $88.6 million) from 4,585 source addresses. The vulnerability, the firm says, traces back to a 2021 flaw in the code that generates seed phrases, with attackers allegedly using AI to brute-force affected seeds."
Translate: "יזם קנדי איבד 18.25 ביטקוין — בשווי של כ-1.6 מיליון דולר — מארנק חומרה של Coldcard תוך פחות משבע דקות ב-29 ביולי 2026. הגניבה היא חלק מתבנית גדולה בהרבה: Galaxy Research זיהתה שלושה גלי תקיפה חשודים המכוונים לכתובות שנוצרו על ידי Coldcard, ומרוקנת 1,367.05 BTC (כ-88.6 מיליון דולר) מ-4,585 כתובות מקור. הפגיעות, כך אומרת החברה, נובעת מתקלת קוד משנת 2021 ביצירת ביטויי הגיבוי (Seed), כאשר התוקפים השתמשו ככל הנראה בבינה מלאכותית כדי לפרוץ את ה-Seeds הפגיעים."
We need to ensure numbers and facts are accurate. Also "hardware wallet" is "ארנק חומרה". "seed phrases" - we can say "ביטויי גיבוי" or "Seed phrases" - but we can keep "Seed" as is. We'll use "ביטויי Seed" or "Seed" as is. To be clear, we can say "ביטויי הגיבוי (Seed)".
We'll keep "BTC" as is.
Now second paragraph: "The July 29 attack
The Canadian victim's wallet was emptied fast — 18.25 BTC gone in less than seven minutes. That speed points to a precomputed list of vulnerable seeds rather than a real-time crack. Galaxy Research's on-chain analysis shows the stolen Bitcoin hasn't moved since; it sits in attacker-controlled addresses. The firm hasn't confirmed whether insufficient randomness in the seed generation is the root cause, but its findings rely entirely on on-chain data.
" Translation: "התקיפה ב-29 ביולי
הארנק של הקורבן הקנדי רוקן במהירות — 18.25 BTC נעלמו בפחות משבע דקות. מהירות זו מצביעה על רשימה מחושבת מראש של Seeds פגיעים, ולא על פריצה בזמן אמת. ניתוח ה-on-chain של Galaxy Research מראה שהביטקוין הגנוב לא הוזז מאז; הוא יושב בכתובות הנשלטות על ידי התוקפים. החברה לא אישרה האם חוסר אקראיות מספקת ביצירת ה-Seed הוא הגורם השורשי, אך הממצאים שלה מסתמכים אך ורק על נתוני on-chain.
" We need to keep "on-chain" as is or translate? Usually "on-chain" is used as is. We'll keep it. Third paragraph: "How the vulnerability works
Coldcard's default seed-generation method is described in the device's manual as 'involves the most trust' yet also 'low risk to users.' The 2021 code flaw apparently made some seeds predictable enough that AI-assisted brute-forcing became feasible. Alternatives exist — users can combine the hardware's output with dice rolls to remove trust in the hardware — but most users likely followed the default path. Galaxy hasn't publicly identified which specific Coldcard firmware versions are affected, but the attack waves suggest a broad exposure.
" Translation: "כיצד פועלת הפגיעות
שיטת יצירת ה-Seed המוגדרת כברירת מחדל של Coldcard מתוארת במדריך המכשיר כ'כרוכה באמון הגדול ביותר' אך גם 'בסיכון נמוך למשתמשים.' תקלת הקוד משנת 2021 ככל הנראה הפכה חלק מה-Seeds לצפויים מספיק כך שפריצה בסיוע בינה מלאכותית הפכה לברת-ביצוע. קיימות חלופות — משתמשים יכולים לשלב את הפלט של החומרה עם הטלת קוביות כדי להסיר את האמון בחומרה — אך רוב המשתמשים ככל הנראה עקבו אחר הנתיב המוגדר כברירת מחדל. Galaxy לא חשפה בפומבי אילו גרסאות קושחה ספציפיות של Coldcard מושפעות, אך גלי התקיפה מרמזים על חשיפה רחבה.
" Fourth paragraph: "Who was hit
The drained holdings had sat dormant for an average of 3.18 years, meaning most victims were long-term holders — the kind of users who buy a hardware wallet and forget about it. The 4,585 source addresses span three distinct attack waves, though Galaxy hasn't said when the first wave began. The Canadian entrepreneur's case is the most recent confirmed victim, but the total haul of 1,367.05 BTC makes this one of the larger hardware-wallet breaches on record.
" Translation: "מי נפגע
ההחזקות שרוקנו ישבו ללא תנועה במשך 3.18 שנים בממוצע, כלומר רוב הקורבנות היו מחזיקים לטווח ארוך — סוג המשתמשים שקונה ארנק חומרה ושוכח ממנו. 4,585 כתובות המקור משתרעות על פני שלושה גלי תקיפה נפרדים, אם כי Galaxy לא אמרה מתי החל הגל הראשון. המקרה של היזם הקנדי הוא הקורבן המאושר האחרון, אך הסכום הכולל של 1,367.05 BTC הופך את זה לאחת מפריצות ארנקי החומרה הגדולות ביותר שתועדו.
" Fifth paragraph: "Coldcard has not issued a public statement about the vulnerability as of Aug. 2, 2026. Galaxy Research's analysis remains preliminary — it hasn't definitively confirmed insufficient randomness, and the firm says its conclusions are based solely on on-chain patterns. The stolen Bitcoin hasn't moved, leaving open the question of whether the attackers will try to launder it or hold



