ODELL · 4d he did not tell me anything about the bug except that users of my guide were not affected Laser @Laser 1786462396 Huh? Your guide can't protect customers from the USB REPL flag. That allows attackers who have physical access to an unlocked Coldcard to extract secrets, regardless of how they setup the wallet (using micriSD and diceware). Laser @Laser · 1w #Coinkite has claimed that the known vulnerability released in 4.0.0 was the USB interactive debugger flag being left on, and that it was patched in 4.0.1. There are 3 glaring problems. 🔍 1. The 4.0.0 release was never distributed to #Coincard customers; 4.0.1 is the first f Show more 2🎯1