Loading market data...

Coldcard Hardware Wallet Hack Causes $111 Million in Losses, Galaxy Digital Finds

Coldcard Hardware Wallet Hack Causes $111 Million in Losses, Galaxy Digital Finds

The $111 Million Toll

->

Thiệt hại 111 triệu USD

Then:

Galaxy Digital, a financial services firm that tracks digital asset markets, examined the hack and put the losses at over $111 million. That figure covers the stolen funds from Coldcard users, though the exact number of affected wallets or individuals hasn't been released.

Translation:

Galaxy Digital, một công ty dịch vụ tài chính theo dõi thị trường tài sản kỹ thuật số, đã xem xét vụ hack và ước tính thiệt hại lên tới hơn 111 triệu USD. Con số này bao gồm số tiền bị đánh cắp từ người dùng Coldcard, mặc dù số lượng ví hoặc cá nhân bị ảnh hưởng chính xác vẫn chưa được công bố.

Next:

Coldcard is a popular hardware wallet used by crypto holders who want to keep their private keys offline. The device is built around a secure element and is often marketed as a more advanced option for those who take self-custody seriously. So the scale of the loss is notable for a product that's supposed to be one of the most hardened on the market.

Translation:

Coldcard là một ví phần cứng phổ biến được sử dụng bởi những người nắm giữ tiền mã hóa muốn giữ khóa riêng tư của họ ngoại tuyến. Thiết bị này được xây dựng dựa trên một phần tử bảo mật và thường được tiếp thị như một lựa chọn cao cấp hơn cho những ai coi trọng việc tự lưu ký. Vì vậy, quy mô thiệt hại là đáng chú ý đối với một sản phẩm được cho là một trong những sản phẩm bảo mật nhất trên thị trường.

Next:

Why Firmware Security Matters

->

Tại sao bảo mật phần mềm cơ sở lại quan trọng

Then:

The hack highlights a critical need for rigorous firmware security in hardware wallets. Hardware wallets are only as strong as the code that runs on them. If an attacker can slip malicious instructions into the firmware, they can bypass the very protections that make these devices secure.

Translation:

Vụ hack này nhấn mạnh nhu cầu cấp thiết về bảo mật phần mềm cơ sở nghiêm ngặt trong các ví phần cứng. Ví phần cứng chỉ mạnh bằng mã chạy trên chúng. Nếu kẻ tấn công có thể đưa các lệnh độc hại vào phần mềm cơ sở, chúng có thể vượt qua chính các biện pháp bảo vệ giúp các thiết bị này an toàn.

Next:

Galaxy Digital's analysis points to a vulnerability in the firmware as the entry point for the attack. That's a worrying sign for an industry where users are told to trust the device, not the exchange or the network. Firmware updates are supposed to fix bugs and close holes, but this incident shows that even the update process itself can be a weak link.

Translation:

Phân tích của Galaxy Digital chỉ ra một lỗ hổng trong phần mềm cơ sở là điểm xâm nhập của cuộc tấn công. Đó là một dấu hiệu đáng lo ngại cho một ngành mà người dùng được khuyên nên tin tưởng vào thiết bị, chứ không phải sàn giao dịch hay mạng lưới. Các bản cập nhật phần mềm cơ sở được cho là để sửa lỗi và vá lỗ hổng, nhưng sự cố này cho thấy ngay cả quá trình cập nhật cũng có thể là một mắt xích yếu.

Next:

A Blow to Self-Custody

->

Một đòn giáng vào việc tự lưu ký

Then:

The hack challenges trust in self-custody solutions. For years, the pitch has been simple: hold your own keys, and you don't have to rely on a third party to keep your funds safe. Hardware wallets are the backbone of that promise. When one gets compromised, it shakes the confidence of everyone who's been told to move their money off exchanges.