The Coldcard RNG failure was not due to a weakness in HW/SE RNGs.
The CC firmware’s multiple layers of complexity meant that the secure RNG was swapped for an insecure one. (They also never used SE RNG in Mk3)
I estimate that there is only <64 bits of entropy in these seeds
⚠️ I have strong reasons to believe Mk4/5 is also at risk, with those devices only having somewhat more entropy.
CHANGE YOUR SEEDS!!
The CC firmware’s multiple layers of complexity meant that the secure RNG was swapped for an insecure one. (They also never used SE RNG in Mk3)
I estimate that there is only <64 bits of entropy in these seeds
⚠️ I have strong reasons to believe Mk4/5 is also at risk, with those devices only having somewhat more entropy.
CHANGE YOUR SEEDS!!
1613❤️7👀3❤️2👍2😯1🤙1