Loading market data...

Coldcard Entropy Bug Lets Hackers Drain 594 BTC; Peter Todd Warns Single-Sig Wallets Unsafe

Coldcard Entropy Bug Lets Hackers Drain 594 BTC; Peter Todd Warns Single-Sig Wallets Unsafe

The vulnerability

" -> "

脆弱性

" Then: "The bug lies in how Coldcard generates random numbers for private keys. A weak entropy source made it possible for attackers to brute-force the keys, effectively guessing them. The exploit didn't require physical access to the device in every case — remote attackers could scan the blockchain for vulnerable addresses and sweep the funds." Translation: "このバグは、Coldcardが秘密鍵の乱数を生成する方法にあります。エントロピー源が弱いため、攻撃者が鍵をブルートフォース(総当たり)で推測することが可能になりました。この脆弱性は、すべてのケースでデバイスへの物理的なアクセスを必要とするわけではなく、リモートの攻撃者がブロックチェーンをスキャンして脆弱なアドレスを見つけ、資金を一掃することができました。" We need to keep "brute-force" as "ブルートフォース" or "総当たり". "sweep the funds" -> "資金を一掃する". Third paragraph: "

594 BTC drained

" -> "

594 BTCが流出

" or "594 BTC流出" but better "594 BTCの流出" as heading. Actually the heading is "594 BTC drained" so we can say "594 BTC流出" or "594 BTCが流出". I'll use "594 BTCの流出" but it's a heading, so maybe "594 BTC流出" is fine. Then: "On-chain data shows 594 BTC moved from multiple addresses linked to Coldcard users. At current prices that's about $38 million. The theft appears to have happened over several days, with the hackers methodically targeting wallets that used the compromised entropy. It's one of the larger hardware-wallet-related heists in recent memory." Translation: "オンチェーンデータによると、Coldcardユーザーに関連する複数のアドレスから594 BTCが移動されました。現在の価格で約3800万ドルに相当します。この盗難は数日間にわたって発生したようで、ハッカーは侵害されたエントロピーを使用したウォレットを計画的に標的にしました。これは最近のハードウェアウォレット関連の窃盗事件の中でも大規模なものの一つです。" "heists" -> "窃盗事件" or "強奪". We'll use "窃盗事件". Fourth paragraph: "

Peter Todd's warning

" -> "

Peter Todd氏の警告

" Then: "Todd, a longtime Bitcoin core developer, didn't mince words. He said that after this bug, relying on a single signature from any hardware wallet is too risky. He didn't name Coldcard specifically in every tweet, but the context was clear. The warning lands hard because single-sig wallets are the default for most Bitcoin users — one key, one point of failure." Translation: "長年ビットコインコア開発者であるTodd氏は、言葉を選びませんでした。彼は、このバグの後、どのハードウェアウォレットでも単一の署名に依存するのはリスクが高すぎると述べました。彼はすべてのツイートでColdcardを具体的に名指ししたわけではありませんが、文脈は明確でした。この警告が重くのしかかるのは、シングルシグウォレットがほとんどのビットコインユーザーのデフォルトであり、1つの鍵が1つの障害点となるからです。" "didn't mince words" -> "言葉を選ばなかった" or "遠回しに言わなかった". We'll use "言葉を選びませんでした". "lands hard" -> "重くのしかかる" or "強く響く". Fifth paragraph: "

What users should do

" -> "

ユーザーが取るべき対策

" Then: "Anyone using a Coldcard — or any hardware wallet that relies on a single private key — should consider moving funds to a multisignature setup. Multisig requires multiple keys to authorize a transaction, so a single compromised device doesn't mean lost coins. The timing isn't great: the market is already jittery, and a $38 million theft doesn't help confidence." Translation: "Coldcard、または単一の秘密鍵に依存するハードウェアウォレットを使用している人は、マルチシグネチャ(マルチシグ)設定への資金移動を検討すべきです。マルチシグは取引を承認するために複数の鍵を必要とするため、単一のデバイスが侵害されてもコインが失われるわけではありません。タイミングは最悪です。市場はすでに不安定で、3800万ドルの盗難は信頼を損なうだけです。" "jittery" -> "不安定" or "動揺している". "doesn't help confidence" -> "信頼を損なう" or "自信を高めない". Sixth paragraph: "Coldcard has not yet released a public statement about the bug or a firmware patch. Users are left waiting for an official fix while the stolen BTC sits in wallets controlled by the hackers. Whether those coins can ever be recovered is an open question." Translation: "Coldcardは、このバグに関する公式声明やファームウェアのパッチをまだ公開していません。ユーザーは公式の修正を待つしかなく、盗まれたBTCはハッカーが管理するウォレットに残っています。それらのコインがいつか回収できるかどうかは未解決の問題です。" Now meta description: "A Coldcard entropy bug allowed hackers to steal 594 BTC ($38M). Bitcoin developer Peter Todd warns single-signature wallets are no longer safe. Learn about the vulnerability and what users should do." Translation: "Coldcardのエントロピーバグにより、ハッカーが594 BTC(3800万ドル)を盗むことができました。ビットコイン開発者のPeter Todd氏は、シングルシグネチャウォレットはもはや安全ではないと警告しています。この脆弱性とユーザーが取