Losses tied to Coldcard hardware wallets are approaching $114 million as a surge in small-value Bitcoin transfers points to renewed activity from what researchers believe may be a fresh wave of thefts.
Losses Mount for Coldcard Users
Cumulative losses connected to Coldcard wallets have climbed to nearly $114 million, according to recent analysis. The figure underscores the ongoing security challenges facing even users who opt for cold storage solutions, which are typically marketed as among the safest ways to hold cryptocurrency offline.
The uptick coincides with an unusual spike in on-chain movement of smaller Bitcoin amounts, a pattern that analysts often associate with the aftermath of large-scale security breaches, as compromised holdings are broken up and shuffled to obscure their trail.
The scale of losses shows that even offline storage carries risks when the surrounding ecosystem is targeted.
Small Transfers Signal Deeper Trouble
Transfers of less than 1 BTC have reportedly reached levels not seen since the days immediately following the collapse of the FTX exchange in late 2022. Such a concentration of low-value transactions can indicate that stolen funds are being fragmented and laundered, or that anxious holders are moving assets in response to perceived threats.
Galaxy Research has flagged what it describes as a likely fourth wave of thefts, suggesting the incidents affecting Coldcard-linked wallets are part of a recurring and evolving pattern rather than isolated events.
Analysts monitoring the situation have pointed to several key observations:
- A concentration of sub-1 BTC transfers echoing post-FTX activity
- Cumulative losses nearing the $114 million mark
- Indications of a possible fourth distinct wave of thefts
What It Means for Holders
The findings serve as a reminder that hardware wallets, while a valuable layer of protection, are not immune to broader threats spanning supply chains, phishing schemes, and social engineering. Security researchers continue to urge users to verify device authenticity, keep firmware current, and remain vigilant about how and where they source their storage devices.
As the crypto market matures, the recurring nature of these thefts highlights the persistent cat-and-mouse dynamic between security teams and bad actors seeking to exploit any weakness in the chain of custody surrounding digital assets.
