Hostile AI auditors eliminate security patch windows
- Machine-speed AI auditing has eliminated the traditional time window developers use to patch code flaws.
- Attackers leveraged large language models to spot a five-year-old firmware vulnerability in Coldcard hardware wallets.
- Security teams now spend thousands on frontier AI models to scan open-source software before adversaries do.
The grace period for fixing vulnerable software is officially dead.
On Citadel Dispatch, hosts Matt Odell and Marty Bent examined how malicious actors used large language models to uncover a flaw dating back to March 2021 in Coldcard hardware wallet firmware. The integration error reduced internal entropy from near-infinite randomness to just 2 to the 32nd power. That dropped the math down to a level where standard computers could guess private keys and sweep Bitcoin reserves instantly.
The exploit exposes a fundamental shift in defensive software architecture. AI models now digest public code repositories in seconds, pinpointing logic errors and mathematical fallbacks that human auditors missed for years. What used to take months of painstaking manual review now happens instantly at machine scale.
On Rabbit Hole Recap, Odell stressed that open-source projects must assume hostile AI agents audit their repositories around the clock. The failure of single-device hardware setups forces an immediate transition toward mandatory multi-vendor multisig storage models, removing single points of failure across self-custody.
By the time Bitcoin And addressed the fallout, the focus shifted from incident response to automated defense. Security researcher Rob Hamilton deployed over $10,000 in AI tokens using OpenAI tooling to execute rapid security sweeps across more than 100 Bitcoin-related code libraries.
White-hat volunteers and security teams spent 48 straight hours conducting manual triage while hostile algorithms scoured public blockchains for vulnerable addresses.
Security through obscurity is gone. Developers either run machine-speed audits first or watch hostile automated agents dismantle their code.
Source Intelligence
- Deep dive into what was said in the episodes
Not Cold Enough | Bitcoin News • Aug 3
Also from this episode: (9)
Other (9)
- David Bennett states Coldcard models Mark III, Mark IV, Mark V, and Q with firmware 4.x+ were compromised by a predictable seed generation vulnerability, while firmware 3.x models appear unaffected. The flaw, active since 2021, stemmed from a software error that reduced entropy from 2^256 to approximately 2^32 bits, making wallet seeds easily guessable.
- Bitcoin began moving from affected Coldcard addresses around July 30th, 2026, via coordinated, automated sweeps targeting large balances first (over 1.15 BTC), then smaller amounts in subsequent waves. Attackers could generate candidate seeds and compare them to the public blockchain without direct access to devices.
- CoinKite initially dismissed public warnings, continued to sell affected products for 48 hours after the vulnerability was known, and later released a firmware update that reportedly bricked devices. David Bennett argues CoinKite's failure is inexcusable and recommends never using their products again, including OpenDimes and BlockClocks.
- Volunteer teams, including BTC Sessions and Rob Hamilton, provided extensive support to affected users, with BTC Sessions reporting efforts protected "tens of millions of dollars." Foundation Devices also assisted Coldcard users, highlighting a community-driven "immune system" approach to crisis.
- David Bennett advises immediately migrating funds from any CoinKite product; he suggests using centralized exchanges like Coinbase or Kraken as a temporary measure if other self-custody options are untrustworthy or unavailable. He emphasizes avoiding panic and performing test transactions.
- David Bennett describes this incident as a "crossing the Rubicon" moment, where AI's ability to automate exploit discovery against vast code repositories means continuous, daily security audits are now essential. He suggests this creates a "security moat," raising costs for smaller projects.
- David Bennett proposes "swarm audits" where community members pool resources (AI tokens, compute, human review) to continuously vet open-source codebases. He successfully used Grok to audit Bitbox 02 Nova's code, underscoring the potential for collective vigilance.
- A "second layer" of sophisticated phishing attacks emerged, using truthful information about the Coldcard vulnerability, legitimate links, and urgent calls to action to trick users into revealing seed phrases or installing malicious software. David Bennett warns no legitimate manufacturer will ever ask for a seed phrase.
- David Bennett places sole blame on CoinKite founder Rulo Novak for the "shitty code" and systemic failure, rejecting attempts to extend liability to influencers like Matt Odell or Marty Bent, who are investors in CoinKite through their firm 1031.
CATASTROPHIC COLDCARD BUG • Aug 3
- The bug, which existed for five years, appears to have been recently identified with assistance from AI, possibly through OpenAI's Cypher program utilized by Rob Hamilton's team for auditing Bitcoin projects.
Also from this episode: (12)
Custody (6)
- A critical vulnerability in Coldcard hardware wallets (versions 4.0.1 and later, or any model after 4.0.0) compromises private keys due to a faulty random number generator.
- The catastrophic Coldcard bug, introduced in March 2021, compromises seeds generated on any device after that date unless sufficient dice roll entropy (over 100 rolls) or a passphrase was used.
- Hosts advise all Coldcard users to immediately move their funds off the devices and to cease using the product entirely, regardless of previous protective measures like passphrases or multisig.
- The hosts had previously conducted Coldcard workshops since December 2019 at Chaincode Labs with figures like Evan Kaludis and James O'Byrne, demonstrating features like dice rolls and passphrases.
- Hosts concede to complacency, having placed too much trust in CoinKite's NVK and Peter; they now believe the concept of a "magic bullet" beginner-friendly solution for high-value self-custody is dead.
- The hosts will now refrain from directly recommending specific custody solutions, instead laying out options and emphasizing multi-vendor multisig and robust passphrases as critical for long-term secure Bitcoin storage.
Media (2)
- The hosts express deep regret and take accountability for recommending Coldcard for seven years, admitting their past confidence was misplaced despite consistently advocating "don't trust, verify."
- The Coldcard vulnerability was publicly disclosed on August 3, 2023, at Bitcoin block height 960885, prompting hosts to release this podcast immediately to maximize user notification efforts.
Safety (4)
- The Bitcoin community has rallied to assist affected users, with Rob Hamilton (@Roboneham on X) publishing an extensive guide detailing Coldcard vulnerabilities, migration options, and recovery steps.
- Attackers are actively brute-forcing compromised Coldcard seeds using GPUs, while authorities are investigating an attacker who reportedly pinged a centralized API provider to look up vulnerable addresses.
- The hosts clarify the vulnerability is entirely CoinKite's responsibility, stating their firm 1031 is a minority investor (under 10%) with NVK and Peter maintaining majority ownership and control.
- Users are strongly advised not to update Coldcard firmware, as new releases may brick devices; instead, the immediate priority should be transferring all funds off the compromised hardware.
Related Stories
BITCOIN
Coldcard entropy flaw shatters single vendor Bitcoin custody
Stacker News Live · Bitcoin And | Bitcoin & Economic News · Rabbit Hole Recap · Citadel Dispatch · Ungovernable Misfits · What Bitcoin Did · Presidio Bitcoin Jam · TFTC: A Bitcoin Podcast · Square Engineering
AI & TECH
Jensen Huang leads 100 tech firms against closed AI rules
Hard Fork · The Daily · Rabbit Hole Recap · This Week in AI · Moonshots with Peter Diamandis · The AI Daily Brief: Artificial Intelligence News and Analysis

