Loading summary
Alex Gladstein
You've had a dynamic where money's become freer than free. If you talk about a Fed just gone nuts, all the central banks going nuts. So it's all acting like safe haven. I believe that in a world where central bankers are tripping over themselves to devalue their currency, Bitcoin wins. In the world of fiat currencies, Bitcoin is the victor. I mean, that's part of the bull case for Bitcoin.
Marty Bent
If you're not paying attention, you probably should be. Probably, should be. Probably should be. Alex, the vibe has shifted from the last time we saw each other, which was a Thursday at the Galaxy event in dc.
Alex Gladstein
Yeah, it was just shifting. I think you came maybe an hour before that pub key event started and said they're might be some issue with cold card. And I, in my head I was like, you know, oh no. But I was hosting that event. So I got all tied up and I didn't realize that I didn't really see you the rest of the night until. And then the next day I listened to your episode with James Ob where you said that you were in a. Had to be in a corner on the phone the whole time, which I of course now totally understand.
Marty Bent
Yeah, pretty rough. It's been a shitty week. But I wanted to get you on because you and the team at Galaxy have done an incredible job of tracking the attackers. It looks like there's multiple waves of attacks of people brute forcing private keys of those that were generated on cold card devices and contacting victims. And I think the knowledge you guys have gathered and the information that you've gathered over the last five days is important for people to understand what's going on. And so I have, I have the chart here. Maybe we start there. Sure. Just what you guys have have found based off of the information and the outreach they've gotten from victims and I think you said so far 94 have reached out to you.
Alex Gladstein
Yeah, it's in the mid-90s. I mean, it's growing. I mean, all the time. I mean, especially as I do. I did Nick Batia's show yesterday. I did Unchained yesterday, where of course I called for victims to not be ashamed. You did nothing wrong. You did not deserve this. Share. First of all, file police report. Well, first of all, secure. You haven't secured your funds on a potentially vulnerable cold card. Please do that immediately. But also share your drained addresses and the transaction IDs that drain them. I know, you know it's hard for people to do it, but because I'VE been saying that people have been sharing, and it's because of that sharing that we've been able to identify so many of the coins and where they are, what addresses they're sitting in. So, you know, it's also. And sort of in exchange, although I don't think of it, in fact, that initially I wasn't even doing it this way, but I can fulsomely trace anything in Bitcoin. I have a very powerful proprietary Bitcoin stack with some clanker sitting on top of it that help me traverse. So I've been providing back forensic reports to victims that they can then use to report to their local authorities, to the FBI, and that we can use as well to report to crypto exchanges and chainalysis and all of that so that, you know, there's a chance that the funds get frozen. But please do continue to reach out and share those addresses with me so that we can keep building up the picture of the attack as it unfolds.
Marty Bent
And let's dive into the nature of these attacks. Obviously it started late Thursday afternoon, early Thursday night. And I think it's become clear that AI was used to identify this vulnerability and then exploit it. And you can see that in the patterns of the waves of drainings that we've seen. In the first wave, it seems apparent that the person who started draining wallets of cold card users didn't really understand best practices or how to actually scope through a wallet. There was a very specific pattern to this first wave, correct?
Alex Gladstein
Yeah. So this, this pattern, I, I don't. I think they were the first. They're certainly where I learned of the pattern, which was the engineers at Block Inc. Obviously, the guys behind Cash App, Icky, Spiral, et cetera, Square. Right. They identified this pattern as a pattern. Right. A key piece of the Pattern was a fixed 30 sat per V byte fee on all draining transactions that was substantially higher than the median fee rate at the time. Which being higher than the median is not in itself that surprising. Right. Attackers are willing to overspend to make sure they, you know, get the funds. But, you know, normal people with urgent transactions don't have many bursts of transactions from previously unknown addresses with a fixed fee rate. Right. Like your wallet, your typical wallets will suggest fee rates, you know, if you want to confirmed in this amount of time. Right. Fee estimation is actually a big thing Bitcoin Core itself has worked on in Core, let alone all the other wallets. Right. So that was a key feature of pattern of wave one. This is the only pattern of coins. We have very high confidence in our stolen due to this vulnerability that was solely based on a pattern. Right. And so they identified this pattern. It was very mechanical looking. Right. There's a lot about it that looks like it was designed and then executed by automation. I'll say.
Podcast Sponsor/Host Announcer
Right.
Alex Gladstein
And there are others, other patterns that also look like that. Right. These aren't, they don't all look like that, but many of them have features in the topography of the movements and the design of the transactions themselves. The fee rates that look automated.
Marty Bent
In terms of where these, these coins are going to. I think the first wave had a lot of address reuse too.
Alex Gladstein
Yeah. So. So waves one and two and in fact there's almost a better chart that I tweeted earlier. Well, I have a chart of wave one as a perfect example. Wave one alone, these are like called Sankey charts and like they show like fun movements. This is like just the highest level overview chart. Right. This shows the various waves. Waves 1, 2 and 3 are high confidence promoted. That's where people are getting this like 13, you know, 56 type number. I've also promoted like a lot of what's what we call footprints A through N. These, some of them are pattern matched all but what I should say is that wave one was designed and then later confirmed, but first designed solely by pattern matching from block. I took the pattern they described, they saw. I set off across the entirety of not just confirmed blocks and their transactions, but also the entire UTXO history. So that's not the UTXO set, that's the UTXO set at every single state in bitcoin ledger ever. Right. It's literally like 3.8 billion rows that I have. Yeah. So if you look at wave one here, this is all wave one. Now like each of these four funnels, right? These are many addresses in each case being consolidated into four independent, what we call collectors. Right. They're collectors because they consolidate stolen funds into one step and then that collector sent to 3 second hop holding addresses. And you can see for some reason there's this little gray band that comes out of the first funnel here. That's not another second hand that's actually still sitting in the collector. But I put it on the right side here just to show that like the right side is where the funds sit. So this is actually a pretty typical looking siphoning topology or topography. I'm not sure which. I think what people know what I mean that you see in like other types of crypto hacks. Right. It all gets drained immediately into an address the hacker controls. And then often they move it to like the proper setup that they want. Right? Now sometimes what you see, especially in a hacker determined to exfiltrate the funds, you know, into the fiat system or into whatever other chosen currency they want, then you start to see radical things like peel chains where they blow up the fund the held coins into like hundreds or thousands of different pieces. And then later they, they, you know, rejigger them into 20 pieces that don't look the. And they do it again and again, right. Just to make it really difficult to track. Also often they siphon them into like, if stable coins are ever stolen, they often immediately transfer them into eth, right? Because it's more immutable than the stablecoin or Bitcoin. Sometimes immediately get sent through Thor chain and then sent onto ETH and then sent through another bridge into this thing. Because bridges are harder to track funds through. Unlike those, all of the coins here in wave one are just sitting inert in these three addresses on the right. So they have not moved. Right. And this is also true for waves two and three. But one of the other things that's interesting here about wave one and I didn't in the thread where you pulled this, don't have the wave 2. Wave 2 looks quite similar as well. And where it's many victim addresses consolidated into a holding address and then moved to a second address where they currently sit inert. That is a very clear pattern, right? Like wave three, which is the other one that's in that thread. Just maybe if you pull up as an example, looks totally different. And, and I will say also there is no CO span between waves 1, 2 or 3 attacker addresses. There were CO spans between those bottom two funnels. So this is wave 3. This is actually much more sophisticated. There is no common collector address. This is 293 chains. And by chains here we mean like, you know, inputs, like category, you know, groups of inputs. So three 293 transactions, funding 293 staging addresses, funding 293 PTO switch vaults. Right. So each group of victim addresses was by itself moved into a staging one and then by itself moved into a vault, which, you know, could be a multi sig. We wouldn't know until they spend transactions. But none of those have been spent. I think all but six of the staging address of the 293 staging addresses only contained funds from one wallet. And now we can see that because of like co spends of the wallets. And I also have a Lot of victims that I've identified that are in these, right? This is how we. And so the other thing is, like, wave one was a pattern that was described by block, which I expanded and later has been confirmed by many victim Testimonies reports. Waves 2 and 3 were identified by Galaxy Research solely by victim reports, right? Like, people started saying, my coins were lost. And when I gathered like 10 from wave two or like 10 from wave three, it started to become apparent it didn't actually take 10. It takes fewer than you realize. Because once you get like two or three that look alike, you send the clankers off to look at all the blocks all around that and say, does anything else look like a bunch of addresses into a staging address into a, you know, pay to what? Script witness.
Marty Bent
Script hash was.
Alex Gladstein
Script witness that, whatever. Into a vault, right? Then you say, oh, my gosh, there's an entire burst of. Of transactions that look exactly like that. And that's how, you know. And then, of course, I start publishing about it. People start saying, I think I might be in wave three. They send me their stuff. We get further corroboration. It becomes like high confidence. So, you know, one, the. Another interesting feature of one and two, I told you they look similar, right? Many victims into very few staging addresses, then into second hops where they're inert. The only two of one, like, of really. There's a couple down. Talk about footprints, which are these smaller operators that have emerged. But there are a pretty sizable number of people who were drained in wave one that were not completely drained, who were later fully drained in wave two. So there's a number of those that gives us some, I would say medium to high confidence that wave one and wave two are the same attacker. Now, you know, someone could. And by the way, wave one, to your point, was all just after midnight, July 30th, UTC. So some people were like, oh, I was July 29th. And it was like, no, if you look, you were like, you know, West Coast, July 29th at night. That was actually early morning UTC. July 30th. We use UTC because that's like the default bitcoin core and stuff. So it's just like, easier to pick one. Wave one happened in 41 minutes. Very identifiable.
Marty Bent
Right?
Alex Gladstein
Like you don't usually. Because another big identifying feature is that not one of the high confidence, what I call promoted, meaning, like we're saying these are drained, like these. No longer a question. Not One of those UTXOs was created before March 17, 2021, when the, you know, cold Card firmware bug was introduced. And I will say like there's other patterns. Like the, the median dormancy of all these coins is like four years. An enormous portion of the coins in waves 1, 2 and 3, which are the majority still of, you know, high confidence victim addresses, the vast majority had never spent a coin. Right. So these are just receiving coins. Very indicative of people stacking sats into their cold card and you know, in cold storage. So you know, I think like there's co spend which can help identify. But again, everything after wave one were pattern to the extent we found patterns. There are some where I'm not seeing a pattern, but I have a victim report. The one that I see it looks credible and drained. And so we've incrementally added those two. But also we found something like we're up to, I think in the graphic, the first graphic you showed we were up to footprint N. That means we have multiple. The footprints are. We have multiple victims where the topography looks similar. They don't necessarily co spend. A few of these co span and so we're very confident and have promoted. But as you can see this graphic is everything that we haven't yet confirmed. This goes up well over 2,000 bitcoin shaded ones are I think not confirmed. Right. By any owner. Right. These are patterns that we found but haven't yet gotten a confirmation at all. Some of those footprints are. They're identified by the fact that victims showed us. And we've, you know, said is there anything else that looks like this? But we don't quite have enough confirmation that we should extrapolate it out to transactions that we don't actually have confirmed by a victim. Right. Because there are plenty of transactions in waves one and two and three that we haven't actually gotten a victim report about, but we're very confident are part of the wave. So that's just some background on the methodology that we've been doing. And just as background, like I have direct victim confirmation for about 400 bitcoin of the 1500 or so that we currently call high value promote. So a sizable amount have I've talked to.
Marty Bent
Yeah. It's so heart wrenching.
Alex Gladstein
Yeah.
Marty Bent
But and I think explaining if you haven't, if you have a cold card, I don't care what your setup is. I mean if you roll dice you should be fine. But if you don't have confidence that you did it correctly, just get it off.
Alex Gladstein
I agree. Yeah. And I one another important thing to say. But again and I have a cold card MK3, I believe with no password and no dice in a multi sig quorum that cannot reach signing threshold. So it really can't be affected at the moment. And in that quorum I've never spent so there. The address isn't known to hold coins on chain for example because it's you know like a, it's a script hash address that has never revealed its script. Right. So but I, I and I haven't because I know that that isn't vulnerable at the moment. I haven't actually rotated the cold card out yet, but I absolutely will. So and I will say I haven't updated this analysis since like midday yesterday, but I can say in waves 1, 2 and 3 for sure there are zero multisigs identifiable. So as far as I'm concerned, there's no evidence that any multisig setup has been breached here. Now of course if you had like say a 2 of 3 multi sig quorum where 2 of 3 are cold card mk3 is like mine with no passphrase and no dice roll that is vulnerable. I haven't seen one instance yet of it being attacked. It's probably, you know, Rob Hamilton and the red team working on this is probably more and James OB are probably more apt to actually talk about that. But I, I understand that's probably lower on the tier of priorities that the black hats are looking at to search namespace for. It's more complicated. But all that being said, like I am of the view that like anything on a cold card at all, including my sub threshold quorum key should be rotated. I mean it's, there's just no reason to, to stick around if you have any doubt whatsoever, in my opinion.
Podcast Sponsor/Host Announcer
Sup freaks? This rip was brought to you by our good friends at Square. If you run a business, you need payments, you need hardware, you need software, invoices, point of sale tools and a system that does not turn every basic operational task into a headache. Square spent years making it easier for small businesses to get paid and keep moving. And now with Block leaning deeper into Bitcoin, Square sits at an important intersection. Real world merchants, payment infrastructure and the future of Bitcoin commerce. We're making Bitcoin everyday money freaks. You are starting or upgrading your business setup. You can get up to $200 off square hardware@square.com go tftc. All right freaks. You know I don't take sponsored money from products I wouldn't use myself. So listen up. The Aven Bitcoin Visa card is one of the most interesting things I've seen in the bitcoin lending space in a long time. Here's the deal. You can get a line of credit up to a million dollars backed by your Bitcoin without selling a single sat. No games, no annual fees, no minimum draws. And your Bitcoin is custody by Bitco, one of the most trusted names in digital asset security. Aven never lends it out. There's no rehypothecation. You stay in control. You can lock in a fixed rate for up to 10 years. 10 years. That's 10 times longer than most lenders out there. Or go interest only for up to five years. Rates start at 8.99% APR. For a product that lets you keep your stack and still access liquidity, it's hard to beat. On top of this, guess what? You also get 2% unlimited cash back every time you use the card. Spend fiat. Keep your Bitcoin. That's the whole game. If you've been stacking for years and need liquidity without triggering a taxable event, this is worth a serious look. Go to aven.combitcoin that's AVN.com bitcoin check it out.
Marty Bent
Yeah, and it's a timing thing. I mean bringing this back to the waves, obviously waves one and two at a very specific pattern. But that is the game theory at play right now. It's just a ticking time bomb. If you have private keys generated with the affected versions of the firmware, which started being released in March of 21. So I think version 4, 0.0 and beyond are affected. Different models have different levels of entropy. Older models I think have more, pretty confident of more entropy, but still not a sufficient amount of entropy to protect you from a brute force attack. So move your coins if you haven't already. And the game theory is such that once the alarm bell was sounded last Thursday and it became obvious that this was exploitable, you just have to assume that other actors are going to enter the fray to try to exploit this too. So the time bomb could be accelerating. The pace of the clicking, ticking of the talk can be accelerating. So move with haste. And I think that's another weird factor that's entered the conversation too is there's, I mean I've been listening to spaces and following this discussion since Thursday night on the train ride back. People are already talking about this because you had people like wicked Bitcoin, Portland, Hodl, Rob Hamilton, Praveen, like basically downloading the scripts to, to brute force private keys or seed phrases on their computers and they were able to identify wallets. And the ethical conundrum of do we sweet this as white hat hackers into addresses that we control in the hope that we can get this back to the original owner of that conversation started pretty early Thursday night. I think there has been confirmation that some people have engaged in white hat sweeping of these coins. But it gets into the again the ethical dilemma, but then the just the logistics of even if you do that, how do you get the coins back? And I think that's another important detail in if there is a scenario in which we identify the attacker or white hats have swept funds and they want to return them. I think the ability to prove that you were the individual that actually created the private key initially depends on you actually having your physical device.
Alex Gladstein
Yeah. And you mentioned a couple people there too. You got a shout out to Wicked, Wicked. I think what is he Wicked smart Bitcoin is that. And he doesn't even say that anymore. But that guy's been doing like spaces just helping people who, you know, answering Q and A on self custody at the most granular level. I have literally listened to him help dozens of people like move coins off their cold cards live. Reminds me of the old clubhouse days a bit.
Marty Bent
Yeah. What? Because I know you identified somebody. I forget from which wave that sent it to a casino.
Alex Gladstein
Yeah, this, this one was pretty ugly, like not from waves 1, 2 or 3. Those coins are inert. They're not. They haven't moved. Right. And those are the key ones that we, that we're watching because they comprise the largest share of the known stolen coins. 1, 2 and 3. Yeah. There was a victim that we traced and that I think 7 or 10 of their 17 Bitcoin was instantly moved to Thor chain, which is a cross chain dex that lets you effectively send bitcoin into a multisig controlled by their validators. And you can put an Ethereum address, for example, and a trade order in an opera turn and then they spit out the equivalent eth on the other side in Ethereum. And so you enter your Ethereum address in the hopper turn, plus some other instructions about the trade that you want done. Luckily, the way it works is it's pretty easy to trace through there, at least in my limited experience tracing. And then, then it's a matter of using the Etherscan API to follow where it goes. And Etherscan has a lot of deposit addresses for exchanges and services labeled. These were something like, I don't know, $450,000 worth of the bitcoin now eth was deposited at an offshore casino that I'd never heard of called dual.com. and so I told the victim this and gave instructions on how to send a preservation request and a freeze request to the casino. And they, this was like at 1am on Sunday morning. So like late Saturday night Eastern time. And they did get a response. And it was like, we're not going to freeze until we get a police report demanding the freeze. And I found that to be offensive because it was midnight on weekend. There was literally zero chance that a police report was going to be sent anytime soon. And I thought the prudent measure for any sort of financial institution when receiving a credible cryptographic forensic report, effectively proving that the funds emanated from a stolen address would be sufficient to just, I'm not saying take the coins from the casino depositor. I'm saying don't allow them to be withdrawn. Right. Until an investigation is complete. I guess they declined to do that, though they did promise me via DM that they would preserve the information about it, which, you know, and I, I don't know what jurisdiction this dual.com is actually registered in or if they are, but that may be all that's required. And you know, they wrote back on X that there it was unreasonable to demand solely based on a report that their customers could not withdraw. It is an interesting thing about, raises a lot of interesting ideas. One is that, you know, I have the victim report. The victim can prove they do possess the keys, but the nature of this exploit is that they are not the only one who now possesses the keys. And eventually everyone might possess the keys to all of these coins. Right. And that's, that's tricky. That's one reason why we really encourage people to formally file like victim reports with the local police. The FBI is IC3 Canada's Anti Fraud Center. The, you know, Royal Canadian Mounted Police, they have got a whole list, by the way, if people need to know who to contact in their jurisdiction. These exist all over the world, right there. Some of them share information with each other. And all that is to establish victimhood early because there could be a time if funds are recovered where many people use keys to claim that they're theirs. Right? And it becomes a whole cluster. That's why I also tell people not to destroy their cold cards even after they've moved funds off of them or had their funds drained, because there might be forensic evidence on the gold card that can be used to establish their, you know, that they're the primary owner in the chain. And another thing that it Raises is the question of hold authority. This came up once recently with an A hack and a defi hack, and it's forgetting which one it is. There's been many where Zach, XBT and others notified very early to Circle that funds were being exfiltrated and bridged. Sorry, bridged over. Circle's sort of, I think it's called CCTP cross chain stablecoin bridge, which is an interesting version of a bridge, by the way, that's more secure than some of the like lockup funds on one side, reissue them on the other, because it goes through Circle, but it goes through Circle. So Circle is the issuer of usdc, just cancels them on one chain and reissues them to you on the other hand, which is actually safer in a lot of ways because it's not like locking them up to create a honey pot on one side of the chain, which is how so many defi bridges are exploited. Anyway, they didn't, they Circle declined to stop this even though they'd been warned for like six hours loudly on Twitter that this was happening. And they said that they needed what was called hold authority. This is now, in clarity, this idea of hold authority. It says that, you know, if you credibly know that or have reports that there's, you know, this type of fraud, whatever going through your centralized platform, you, you can hold it, freeze it on your platform for some amount of time. I think in clarity, it's 48 hours while you investigate and, and you are totally immune from civil liability. So I understand. You know, I think there's an argument to be made in the case of the dual.com with this one that I talked about. Like, you know, are they worried about being sued by their client who they promised, you know, their user, you know, instant withdrawals? Like, I, you know, I get that it's a little tricky, but I'm becoming a little bit like, you know, Tayvano, if people follow her, who used to was like head of security at Metamask and had my ether wallet big, big, I think participant in the seal, you know, rapid response crypto hacks team, she has just zero patience for this type of behavior. And just the more people I've talked to from the cold card hack and seeing this type of thing and just like knowing the funds are there and not being able to get them to act is incredibly frustrating. So, yeah, we haven't, I, I gotta say, the vast majority of coins, we have not seen that type of exfiltration behavior from. Maybe there's luck. Maybe they do have kyc@duel.com and you know, with the police report, maybe they'll be able to identify that hacker. But that's the other part of the story, Marty, that is definitive. Well, it could also be, but very doubtful, I would say definitively not the same hacker from waves 1, 2 and 3.
Marty Bent
Well, didn't block report that waves 1, 2 and 3, the hacker was obviously using some chain analysis tool that was a paid service.
Alex Gladstein
So yeah, I think this is Wave one in particular, which is the, the one that they really blogged about where I got that first pattern to work with. They said that. And I don't know how they figure this out, but I think they. Clay from Block said that they. From. From bitkey, I believe. Right. Said that they confirmed this with the blockchain infrastructure provider. I don't know the details, but what I do know and what they said was, and what I assume is a blockchain infrastructure provider is like in this case, a party that you can connect to their RPC and pull blockchain data from potentially from many chains. Right. They have APIs or RPC providers. There are many of these. To be clear, it's a great service, especially for blockchains like Ethereum and Solana, which are even more cumbersome to run than Bitcoin. Right. Many people use these for many, obviously, to be clear, obviously totally legitimate reasons. But somehow Block said that they had identified that the same entity they believe to pattern, they observed that what I now call Wave one had queried like, I guess a lot of the addresses that they ultimately attacked through this blockchain provider and that in talking with the blockchain provider, they learned that this entity had used a paid account at the blockchain provider. So I think this is very promising as potentially the ability and that authorities have been notified. So potentially the Wave one attacker could be identified and that could be very, very promising. You know, knock on wood. I, I don't want to, you know, get ahead of ourselves here, but, you know, you say run your own node, verify your own transactions in the blockchain. Apparently Wave one hacker did not do that. So even though it would have been pretty trivial to do so.
Marty Bent
Yeah, he didn't spin up his own node. And that, I mean that, that begs the question too, like what, what can these attackers do now that they have the coins? Obviously you mentioned like Thor, Chain and split.
Alex Gladstein
There are things I, I think, yeah, I've seen some bitcoiners who aren't as, haven't followed or been as close to most of These hacks are like centralized exchanges or like smart contracts and defi, right? Historically, bridges, DEXs, obviously centralized exchanges, many such instances. It doesn't happen very often in the bitcoin ecosystem directly outside of centralized exchanges because there is no defi on Bitcoin. Right. It's pretty simple protocol, which makes it a lot more secure in my view at the protocol level than many of these others, which are much more complicated and, and it doesn't have the generalized scripting that others do. So like, you know, you don't have people creating novel new programs and stuff like that. Multi sig is native on Bitcoin, whereas it's not on Ethereum, etc.
Marty Bent
Etc.
Alex Gladstein
So people have been saying, like what? What can they do? We can track it everywhere. They can be just the hackers can themselves be expert money launderers, they can pay money launderers. These people exist, they have methods. Like it is possible for them to exfiltrate these coins. It is hard. It's definitely hard, right? There are mixers and tumblers, you know, in the bitcoin world that they could use, but those are like very watched targets by law enforcement. Right? So you can bridge to another network that has privacy protocols. Right. The fact that the one we talked about, the one to duel.com didn't go through like tornado cache first on eth before going to dual.com is surprising. Suggests they really were not very sophisticated. Even. Even though this attack seems so sophisticated and it is pretty sophisticated, that shows you like how it's degrading. Like waves 1 and 2 and 3 are more sophisticated and who knows why they're sitting inert on bitcoin. I can tell you it's not because it's impossible for them to exfiltrate the funds, but it is difficult to do so without getting caught. Right? And that is a silver or potential positive that it isn't easy. But I would caution, don't hang your hat on that. It is possible to launder money out of bitcoin reeks.
Podcast Sponsor/Host Announcer
Look at me, I'm glowing.
Marty Bent
I've got an angel's halo going around me. You know why that is? I feel good, I feel taken care of. I feel blessed, healthy, happy.
Podcast Sponsor/Host Announcer
That is because I'm a crowd health member. My family and I have been crowd health members for five years now. Literally this month, five years ago, we joined crowd health. We've had two babies, we've had multiple health events, and we're never going back to health insurance. Crowd health is crowdfunded health care. So you sign up for crowd health,
Marty Bent
you pay a monthly fee, you help out with other people's bills and it's
Podcast Sponsor/Host Announcer
significantly cheaper then health insurance. We were on Cobra. It's a family of three when I
Marty Bent
when I left my last job before
Podcast Sponsor/Host Announcer
I went full time to cftc went on the crowd health. Now as a family of five we pay I believe $700 a month. It's significantly cheaper. They're going to negotiate prices lower for you. They've consistently negotiated health care prices as much as 50, 60, 80% in many cases. They help out with babies. You have a pregnancy, you pay the first $3,000 and the crowd covers the rest. If you have a regular health event, you pay $500 and the crowd pays the rest. Go to joincrowdhealth.com, sign up today. Use the code TFTC Opt out of health insurance. I'm uninsured baby and I love it. Use the code tftc@joincrowdhealth.com and you'll get 99amonth for the first three months that you're on the crowd health platform in the community.
Marty Bent
Bitcoiners.
Podcast Sponsor/Host Announcer
You found sovereign money. Now find sovereign health and sovereign healthcare. Sup freaks when you take Bitcoin seriously, you start with custody. You want to control your keys, avoid single points of failure and make sure your savings cannot disappear because you or someone else screwed up what Unchained has been focused on since 2016. Unchained is the leader in collaborative multi sig custody and Bitcoin financial services that keep you in control. They secure over $12 billion in Bitcoin for more than 12,000 clients. That means about one out of every 200 Bitcoin sits inside an Unchained vault. Their model is simple. You hold two keys, they hold one key. It always takes two keys to move Bitcoin, meaning their single key can't access
Marty Bent
your Bitcoin on its own.
Podcast Sponsor/Host Announcer
Just resilient shared custody that gives you institutional grade security while keeping you sovereign. Unchain also lets you trade straight from your vault, access Bitcoin backed commercial loans, open a bitcoin IRA where you hold your own keys and set personal business, trust or retirement vaults. They even offer inheritance solutions built for long term hodlers. Or opt for the highest level private client service with Unchained signature and get a dedicated account manager, discounted trading fees, exclusive access to events and features, and much much more. If you want a partner that helps you secure and grow your Bitcoin without giving up control, go to unchained.com and use the code TFTC10 at checkout to get 10% off your new Bitcoin multisig vault. That's TFTC tenchain.com.
Marty Bent
i mean there's been a massive reaction. Obviously you and your team are tracking this. It seems like there has been somewhat of a immune response to not only obviously for cold card victims, but it has incited this urgency across the industry to begin auditing every system. And that's something that's been fascinating to watch unfold over the last five days, is the speed with which Rob Hamilton, the new CEO of Bitcoin and the Red team that are working on basically auditing as many projects as possible are uncovering. I mean they haven't disclosed any, but Rob did come out and confirm that all the vulnerabilities that they have found so far do not put funds at risk immediately or funds of risk at all. I believe he said, don't quote me on that. Good, double check that. But I think it's, I said this yesterday on rhr like by no means is this something that this cold card hack, this cold card vulnerability, what's human error? It seems like AI was used to discover from these, these attackers and they've exploited it. But there have been reports of others in the past that we've all been made aware of now that, that were reporting that they had collisions and their, their coins were getting out there. So this, see, has objectively been possible for five years. It seems like there were some users reporting that they went to their wallet and funds were swept. And yeah, maybe that wasn't an attacker, it was just a coincidence of somebody creating a private public key pair using a cold card and sweeping the funds once they noticed there was some there already. But AI is a very, very big and is becoming a larger sub theme to all of this, both the exploit side and the reaction to it as well.
Alex Gladstein
Yeah, absolutely. And you know, it's worth noting I think, and I'm not going to cite any of the names because I forget them, but bugs in the entropy random number generators in crypto wallets have existed before and have been found without AI. So it's not that AI was needed to find this bug in the implementation of cold cards random number generator, but it is pretty likely that it was used and it's definitely being used by attackers to operationalize the vulnerability. Rob and the Red Team, there's a bunch of efforts going on, right. I'm focused on, on chain tracing of funds because that's what I'm good At Rob and many others are just burning tokens, like evaluating, doing code review with Frontier cyber enabled models. But also like Kimi and glm, the open source models, unlike basically any thing they can get their hands on in the Bitcoin community. So other hardware wallet code bases, like libraries that underlie important Bitcoin infrastructure, like everything you can think of, which is a huge effort. There's also, like we said, people like Wicked literally helping individuals migrate coins. There's people that are trying to replicate the attack in order to like, determine how many addresses are still at risk.
Marty Bent
Right.
Alex Gladstein
Like, and you need substantial compute for that. People are chipping that in. There is a huge immune response from the Bitcoin community in reaction to this exploit. But to your broader point, Marty, about attacking and defending with AI, that's been a, you know, a huge problem, right? Like you, you remember there's the open AI. I know you guys covered this. The OpenAI lab leak that hacked into Hugging Face, which itself is an AI model repository. Hugging Face said they couldn't use Frontier models to defend themselves. They kept hitting all the cyber safeguards and so they had to fall back on Chinese open source models. And to me, the idea that American companies have to rely on Chinese AI models to defend themselves is absurd. And something needs to give here. I don't know if it's just the sort of safety ism emanating from the Frontier labs or if it's in reaction to the US government's midnight phone call to Anthropic that halted the release of Mythos, but something needs to change. And I wrote this on X. You know, to the extent that I have any reach, I'm escalating that to the highest levels I have access to because it's absolutely insane. Even myself, I primarily am using Claude code and Codex and even asking again on a database that's local of Bitcoin data, which is public. Right? Even saying, hey, I have a report from a victim that they were drained in this transaction id. Can you pull the transaction information out of my own computer? And I'm hitting Fable 5 safeguard and getting downgraded to Opus, right? It's insane. It's just insane. Something's got to give here.
Marty Bent
No, it does. To think that, I mean, it's a try. I mean it's something that we've been saying in Bitcoin, just in the concept of trying to throw KYC AML restrictions on Bitcoin, bring it to the chain level, or prevent people from accessing privacy preserving tools. It's like, well, yeah, you can try to prevent people from using Bitcoin in a peer to peer fashion or using it in a private way, but criminals don't care. They're going to use it that way no matter what. They're criminals because they do not have a high regard for the law in the first place. And so when it comes to this discussion around AI and defending against attacks and being proactive to secure your systems and make them more robust from a security posture, it's insane that we have to fight this battle, particularly in the US Right now. Everybody's using Kimmy, I believe Gwen came out with a new model just yesterday that's in the mix. And I think the red team I saw Rob or Callie say that they did get access to OpenAI's Edge Enterprise Frontier model.
Alex Gladstein
Yeah. And I can just say I know of some big crypto companies that have access to either class wing or OpenAI frontier cyber models and have been doing work on, you know, code based review and vulnerability reporting, responsible disclosure, stuff like that in stuff that also helps Bitcoin. And also I think there's, I don't know if it's pronounced like this. You know, when you've only read something, you never heard it said out loud. Project LUPE is an open source like LLM security vulnerability project. I don't know who runs it, but I know Steve Lee is involved and they're also working on this. So there are a lot of efforts. It's not just bitcoin or even blockchains. Like this is a global question, like every company needs to upgrade. We're in an arms race right now. I do think it's going to be episodic and we'll get to it'll plateau where the defenders have caught up to the attackers. And so there's a little bit of a detente. I think governments will impose some actual like pausing and safeguarding as these things get better and better. For better or worse. I think they will even, I think the Chinese government will eventually not allow like the most dangerous because you know the open source models can be used by their people as well. And so like I think you'll see but we are definitely still in early innings where it is like attackers are outpacing defenders and so defenders. And by the way that's like true for like every weapon on Earth. You know, like the Mongols like defeated the whomever's because they had horses, they were shooting arrows from horses. And that had never been seen before. Right. Like we're kind of in that era. Right. Like you know, the American Revolution, they kind of invented guerrilla warfare, and that was overwhelming to the British's column warfare. So, like, we're still in that stage, but I think it'll be episodic where, you know, you reach plateaus and then who knows, maybe step function increases, cause another episodic arms race and blah, blah, blah. But we're definitely still in a period where the defenders don't have access to good enough defensive tools, I don't think.
Marty Bent
No, I mean, obviously Bitcoin is being affected right now, but there was a. There was a report out of Minneapolis, I believe, or Minnesota a couple weeks ago about a water treatment plant being affected by some virus and shutting down. If you think of how antiquated the software around grid system. Grid systems are today, energy systems like this is. I mean, when it comes to the broader discussion about getting access to frontier models, to people that need to defend these systems, I think it's. It's an imperative. It is a national security issue at this point.
Alex Gladstein
Yeah, is. And I have to say, like, I don't have the answer on what the policy should be exactly. I just know that current status quo isn't good enough.
Marty Bent
No, I know you got to jump here. Thank you for taking some time to hop on. I really want to get you on so that anybody who may be a victim out there and isn't aware of the research that your team is doing and the data gathering.
Alex Gladstein
You can see we publish fair amount on GLXY research on X, but so you can get all the info on how to contact me and us through that. But that account's DMs are not open, so you can DM me on xtangiblecoins. I would love to help. And Marty, I just wanted to say, like, thank you for being in this community. I know it's been a really tough time for you guys. As longtime users of ColdCard as well, I've used Cold Card. I think the first rap I ever did on Galaxy Brains had a line about using cold card keys because we hold hard cheese. And also I've been explaining this attack to journalists, to institutional investors who are interested but not affected because they use custodians and stuff like that. And one of the things I've been saying about why this is so demoralizing and such a tragedy, though I believe anyone having their money stolen for basically any purpose is terrible, is that these victims didn't do anything wrong and they didn't even do anything risky. In fact, if, like I said, the vast majority of the Coins being stolen, their addresses. Addresses had never spent their coins and they'd only received. And the average, the median dormancy of the coins being stolen is like 3.8 years. These are long term DCA Bitcoin believers. The cultural demographic of people that use Coincai. I mean I've got a block clock over my shoulder the last 250 episodes of Galaxy Brains. The people that use these are largely the most philosophical believers in bitcoin. And this sort of strikes at the core of the self custody. You know, work hard and save in bitcoin. You know, again, nobody deserves to have their money stolen. But these people didn't put their coins on a shady crypto exchange to speculate. They didn't accidentally, which, you know, leak their coins, didn't, you know, drop their hardware wallet unlocked on the ground. They didn't accidentally upload their seed phrase. Not that those are mistakes, but these people didn't make any mistakes. And that's what makes it so upsetting and why people are worried about sort of the future of the self custody movement. Now just say self custody is not dead. This was a poorly implemented thing. Random number generators do work. They are proven to work. This one was not proven to work. And that's why Rob and the Red team and many others, Portland and Calais and others who are helping are so essential. I think the wake up call for us in the bitcoin world is that, you know, verifying and auditing codes, not like a checkbox, like it's something we've got to be doing, you know, 24 7, 365. But I personally do believe this will damage the, you know, single sig, you know, keep your hardware wallet under the bed and put your seed in a seed plate. I think the future of self custody is multisig collaborative custody. I do believe that firms like CASA and Unchained and Nunchuck and the miniscript based ones like Liana Wallet and Anchor Watch and others, I'm sorry if I'm forgetting others. There are ways to provably and to really diversify the exposure to hardware, wallets or specific key generation mechanisms. That might sound difficult when I say multi sig collaborative custody, but actually there are many strong companies that provide this as a relatively cheap service. So you know, if you are hell bent like I am in doing self custody, look into those. I think we need to be a lot more deliberate about the risks that people take. I do think telling people to roll 100 dice just not going to work for the majority of people. But there are easier ways. You don't have to be permanently demoralized about self custody.
Marty Bent
I agree there. I'm not going to give any advice at the moment, but I think the only advice I will give is if you have a cold card, if you're for some reason just becoming aware of this, just move your funds asap. Alex. Thank you brother. If you aren't following Alex and the team at Galaxy Research, if you're a victim, make sure you're following them. Make sure you're reaching out again. I think police reports, if there is a chance of recovery of funds like having that police report and holding onto your device will be, will be critical. So make sure you follow that, that advice. And this is obviously a developing situation, so make sure you follow the teams that are on top of this, which Alex and the team at Galaxy is very much on top of this right now.
Alex Gladstein
Thanks a lot Marty. Good to be here. Yeah. Please reach out if you're affected.
Marty Bent
Peace and love freaks.
Podcast Sponsor/Host Announcer
Okay, thank you for listening to this episode of tftc. If you've made it this far, I imagine you got some value out of the episode. If so, please share it far and wide with your friends and family. We're looking to get the word out there. Also, wherever you're listening, whether that's YouTube, Apple, Spotify, make sure you like and subscribe to the show. And if you can leave a rating on the podcasting platforms, that goes a long way. Last but not least, if you want to get these episodes a day early and ad free, make sure you download the Fountain podcasting app. You can go to Fountain FM to find that $5 a month get you
Marty Bent
every episode a day early ad free helps. The show gives you incredible value, so
Podcast Sponsor/Host Announcer
please consider subscribing via Fountain as well. Thank you for your time and until next time,
Host: Marty Bent
Guest: Alex Thorn (Galaxy Research)
Date: August 5, 2026
In this urgent and deeply technical episode, Marty Bent sits down with Alex Thorn from Galaxy Research to dissect the recent and devastating “Coinkite Hack.” The episode focuses on unpacking the timeline and methods of the attack, analyzing the identifiable patterns in stolen Bitcoin, the community’s rapid response, and the evolving defensive game in the age of AI-enabled attacks. Thorn offers unique insights as one of the primary coordinators of the victim outreach and on-chain forensics, sharing both the broader implications for Bitcoin self-custody and practical steps for those potentially affected.
Vulnerability Emergence:
Forensic Work & Community Response:
Tracking the Coins:
The Problem of Proof and Recovery:
Collective Audit and Transparency:
AI in Offense and Defense:
Ethical Dilemma and White Hat Response
[21:40] Marty:
“The ethical conundrum of do we sweep this as white hat hackers into addresses that we control in the hope that we can get this back to the original owner…even if you do that, how do you get the coins back?”
Need for AI Defensive Access
[41:11] Alex:
“The idea that American companies have to rely on Chinese AI models to defend themselves is absurd. And something needs to give here.”
The Pain of Victimization
[16:34] Marty:
“Yeah. It's so heart wrenching.”
Message to Victims
[02:05] Alex:
“If you haven't secured your funds on a potentially vulnerable cold card, please do that immediately. But also share your drained addresses and the transaction IDs that drain them…you did nothing wrong.”
Broader Message on Security
[48:30] Alex:
“…self custody is not dead. This was a poorly implemented thing…Random number generators do work. They are proven to work…The wake up call for us in the bitcoin world is that verifying and auditing code’s not like a checkbox, like it’s something we’ve got to be doing, you know, 24/7, 365.”
| Timestamp | Topic | |-----------|-------| | 00:07 | Context: Why Bitcoin “wins” in fiat chaos (Gladstein) | | 01:18 | Outline of the Galaxy team’s work and appeal for victims to reach out | | 03:45 | Pattern of the attack: use of automation, high fees, address reuse | | 06:29 | Deep-dive into how coins are consolidated and traced | | 13:55 | Attack confirmed to only affect coins created after March 2021 firmware update | | 16:53 | No evidence multisig setups compromised; rotate all Coldcards just in case | | 21:40 | White hat “sweeping” and ethical dilemmas | | 23:25 | Real-world case: traced funds to casino, issues with freezing assets | | 30:45 | Attackers used paid blockchain analytics infrastructure—identity trace possible | | 39:47 | AI’s role in both discovering the bug and the community defense | | 41:11 | Frustration with limitations on AI cyber-defense; use of foreign models | | 47:33 | Emotional impact on self-custody advocates and the culture | | 51:46 | Recommendations: move funds, file police reports, future is collaborative custody | | 52:30 | Outro: How to contact Galaxy Research and next steps for victims |
The situation is evolving. Stay alert, act quickly, and follow reputable sources covering ongoing developments.