,
tags. Meta description: "Канадський підприємець втратив 18,25 BTC менш ніж за сім хвилин. Galaxy Research стверджує, що зловмисники використовували ШІ для брутфорсу сід-фраз Coldcard через дефект 2021 року, викравши загалом $88,6 млн." We need to ensure numbers are formatted with commas as in Ukrainian? Usually use space or comma? We'll keep as in original: 18.25 BTC -> 18,25 BTC (comma decimal separator in Ukrainian). Similarly 1,367.05 BTC -> 1 367,05 BTC? But we'll keep the original format? The instruction says keep facts, numbers accurate. We can use Ukrainian decimal comma. But to be safe, we can keep the original numbers as they are? Since it's translation, we should adapt to Ukrainian conventions. However, the instruction says "Keep all facts, numbers, and data accurate" - meaning the values should be same, but formatting can be localized. We'll use comma as decimal separator and space as thousands separator. For example: 18,25 BTC, 1 367,05 BTC, $88,6 млн. But in the original they have $88.6M, we can write $88,6 млн. Also 4,585 -> 4 585. We'll do that. Let's translate paragraph by paragraph. Original: "A Canadian entrepreneur lost 18.25 Bitcoin — worth roughly $1.6 million — from a Coldcard hardware wallet in under seven minutes on July 29, 2026." Translation: "Канадський підприємець втратив 18,25 біткоїна — приблизно $1,6 млн — з апаратного гаманця Coldcard менш ніж за сім хвилин 29 липня 2026 року." Next: "The theft is part of a much larger pattern: Galaxy Research has identified three suspected attack waves targeting Coldcard-generated addresses, draining 1,367.05 BTC (about $88.6 million) from 4,585 source addresses." Translation: "Ця крадіжка є частиною набагато більшої схеми: Galaxy Research виявила три ймовірні хвилі атак, спрямованих на адреси, згенеровані Coldcard, які викачали 1 367,05 BTC (близько $88,6 млн) із 4 585 вихідних адрес." Next: "The vulnerability, the firm says, traces back to a 2021 flaw in the code that generates seed phrases, with attackers allegedly using AI to brute-force affected seeds." Translation: "За словами фірми, вразливість бере початок із дефекту 2021 року в коді, який генерує сід-фрази, і зловмисники, ймовірно, використовували ШІ для брутфорсу уражених сідів." Now the h2: "The July 29 attack" -> "Атака 29 липня" Paragraph: "The Canadian victim's wallet was emptied fast — 18.25 BTC gone in less than seven minutes. That speed points to a precomputed list of vulnerable seeds rather than a real-time crack. Galaxy Research's on-chain analysis shows the stolen Bitcoin hasn't moved since; it sits in attacker-controlled addresses. The firm hasn't confirmed whether insufficient randomness in the seed generation is the root cause, but its findings rely entirely on on-chain data." Translation: "Гаманець канадської жертви був спустошений швидко — 18,25 BTC зникли менш ніж за сім хвилин. Така швидкість вказує на попередньо обчислений список вразливих сідів, а не на злом у реальному часі. Аналіз Galaxy Research на основі блокчейну показує, що вкрадені біткоїни з тих пір не рухалися; вони знаходяться на адресах, контрольованих зловмисниками. Фірма не підтвердила, чи є недостатня випадковість у генерації сідів кореневою причиною, але її висновки повністю ґрунтуються на даних блокчейну." Next h2: "How the vulnerability works" -> "Як працює вразливість" Paragraph: "Coldcard's default seed-generation method is described in the device's manual as 'involves the most trust' yet also 'low risk to users.' The 2021 code flaw apparently made some seeds predictable enough that AI-assisted brute-forcing became feasible. Alternatives exist — users can combine the hardware's output with dice rolls to remove trust in the hardware — but most users likely followed the default path. Galaxy hasn't publicly identified which specific Coldcard firmware versions are affected, but the attack waves suggest a broad exposure." Translation: "Метод генерації сідів за замовчуванням у Coldcard описується в посібнику пристрою як «передбачає найбільшу довіру», але також «низький ризик для користувачів». Дефект коду 2021 року, очевидно, зробив деякі сіди достатньо передбачуваними, щоб став можливим брутфорс за допомогою ШІ. Існують альтернативи — користувачі можуть комбінувати вихідні дані апаратного забезпечення з киданням кубиків, щоб усунути довіру до апаратного забезпечення — але більшість користувачів, ймовірно, дотримувалися шляху за замовчуванням. Galaxy публічно не визначила, які конкретні версії прошивки Coldcard уражені, але хвилі атак свідчать про широкий вплив." Next h2: "Who was hit" -> "Хто постраждав" Paragraph: "The drained holdings had sat dormant for an average of 3.18 years, meaning most victims were long-term holders — the kind of users who buy a hardware wallet and forget about it. The 4,585 source addresses span three distinct attack waves, though Galaxy hasn't said when the first wave began. The Canadian entrepreneur's case is the most recent confirmed victim, but the total haul of 1,367.05 BTC makes this one of the larger hardware-wallet breaches on record." Translation: "Викрадені активи залишалися неактивними в середньому 3,18 року, тобто більшість жертв були довгостроковими власниками — тими користувачами, які купують апаратний гаманець і забувають про нього. 4 585 вихідних адрес охоплюють три окремі хвилі атак, хоча




