A Coldcard hacker reportedly moved $7.7 million in bitcoin, an amount described as 45% of the BTC stolen in a third attack wave. The claim remains unverified: no transaction records, wallet addresses, or official statements have been supplied to confirm the transfer or the Coldcard attribution.
TLDR KEYPOINTS
- A reported movement of $7.7 million in BTC has been attributed to a Coldcard hacker.
- The figure is framed as 45% of bitcoin stolen in a stated third attack wave.
- The transfer, the percentage denominator, and the Coldcard link all still require verification.
Coldcard hacker reportedly moves $7.7 million in BTC
The reported event centers on a single claim: that funds tied to a Coldcard hacker were moved on-chain, valued at $7.7 million in bitcoin. That dollar amount and the “hacker” label come from the reported headline and are not yet backed by supplied evidence. For related coverage, see Bitcoin Prices Rally After $116 Million Coldcard Hack.
What the reported transfer establishes
Moving bitcoin is not the same as selling, cashing out, laundering, or recovering it. The available context describes only a wallet movement, not what happened to the coins afterward or where they ended up. For readers in Southeast Asian markets, this distinction matters because on-chain movement alone does not signal sell pressure on regional exchanges such as Indodax or Coins.ph. For related coverage, see PolyNext Awards & Conference Dubai 2026: Advancing the Global Dialogue on Plastic Recycling and Circularity.
No transaction hash, wallet address, timestamp, or attribution document has been provided. A movement of this kind would normally be traceable on a Bitcoin block explorer such as mempool.space, which shows the transaction hash, value at time of transfer, and sender and receiver addresses. Until such a record is identified, the transfer stands as a reported claim. Kanalcoin has previously covered a Coldcard wallet exploit involving 1,778 bitcoin and reporting that a Coldcard firmware exploit could drain funds, but neither confirms the details of this specific transfer.
Nothing in the supplied context establishes that Coldcard hardware or firmware was compromised in this instance. A documented Coldcard-related vulnerability exists in the public record, catalogued as CVE-2019-14356, but that entry does not connect to the reported $7.7 million movement.
How the reported transfer relates to the third attack wave
What the 45% figure refers to
The headline states the moved BTC represents 45% of bitcoin stolen in a third attack wave. The supplied context does not define what that percentage is measured against, so the relationship between the transfer and the third-wave theft remains the headline’s stated claim, pending confirmation of the denominator.
What is known about the third wave
Dates, affected parties, details of any earlier waves, and the attack method are all absent from the supplied context. No total stolen figure can responsibly be calculated from the rounded amount and percentage, and there is no basis to assume the remaining funds are unmoved.
What still needs verification
Transaction evidence and attribution
A sourced account would need transaction records, the timing of the movement, the BTC quantity, the timing of the dollar valuation, the scope of the percentage, and the basis for the Coldcard connection. Prior Kanalcoin coverage of a Coldcard exploit linked to a $116 million hack illustrates the level of detail confirmation requires.
Any destination-wallet labels, vendor response, victim counts, or recovery claims should be treated as unknown unless a later research phase supports them.
Disclaimer: This article is for informational purposes only and does not constitute financial or investment advice. Cryptocurrency and digital asset markets carry significant risk. Always do your own research before making decisions.
