Bitcoin Forum
August 10, 2026, 11:16:02 AM *
News: COLDCARD users only: critical vulnerability risks funds stored on COLDCARD devices; immediate action required
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Possible all Bitcoin Hardware Wallets be hacked due to 'Trust in Device Entropy?  (Read 233 times)
dim_mak5 (OP)
Member
**
Offline

Activity: 215
Merit: 17


View Profile
August 07, 2026, 10:09:06 PM
 #21

I have a feeling BlackRock Wall Street in the near future is going to fund a new hardware wallet company and release a new closed source hardware btc wallet that is so called 'Government Approved' that is insured up to max 0.1 BTC for retail customers and 1 BTC for commercial customers kinda like FDIC insurance because they can afford to. Only by doing this they can trick the nearly all btc hodlers to give up self custody. They will try to corner the bitcoin hardware wallet and be like like Iphone in the cell phone market.

They will sponsor most of the hacks to get hodlers to fear self custody.

True Entropy is suppose to be more random that the lottery number being drawn out.

Can anyone confirm whether existing hardware wallets entropy will still be secure in 5-10 years time? Never mind quantum computers.

I still cant understand someone paying money for a hardware wallet for Entropy yet still expect to roll the dice for added randomness is insane. It is like paying for a cheeseburger but buying your own cheese slice and adding it in yourself in the burger. The customers paid for Entropy so why they rolling the dice? The hardware wallet manufacturers are implying are entropy chips are not as good as your old fashioned dice rolling?

What if wall st sponsored hackers or Ai hackers figured out the randomness of lets say Ledger and Trezor devices and most BTC in cold storage gets hacked.

Why Michael Saylor not stash any of his bitcoins in a hardware wallet and instead use a third party insured Custodian like Coinbase?

Satoshi Wallet that has a million bitcoins in it, that must be truly random generated as it hasn't been hacked yet. What randomness Entropy Satoshi used?
dim_mak5 (OP)
Member
**
Offline

Activity: 215
Merit: 17


View Profile
August 07, 2026, 10:44:02 PM
 #22

Also Hardware Wallets should not have a back up built in software entropy randomness generator if the hardware entropy chip in the hardware wallet fails. Also firmware software updates should be isolated from the software entropy generator as a simple bug in the code in the update could compromise the software entropy generator.

What's the point of a hardware wallet when it uses software for entropy  Huh Huh. Why call it hardware when its really a cheap software? Coldcard should have called their wallet a hardware/software hybrid wallet They misled their customers.
lombok
Sr. Member
****
Offline

Activity: 1176
Merit: 354



View Profile WWW
August 07, 2026, 11:57:28 PM
 #23

Also Hardware Wallets should not have a back up built in software entropy randomness generator if the hardware entropy chip in the hardware wallet fails. Also firmware software updates should be isolated from the software entropy generator as a simple bug in the code in the update could compromise the software entropy generator.

What's the point of a hardware wallet when it uses software for entropy  Huh Huh. Why call it hardware when its really a cheap software? Coldcard should have called their wallet a hardware/software hybrid wallet They misled their customers.
Indeed, the susceptibility of the physical randomness chip is also true risk on it is own. It is exactly to avoid the single point of failure in the electronic elements that a hybrid software based approach is used. The name physical wallet does not lose its validity by the fact that its main purpose is not process algorithms but to isolated offline transactions. The alternative of randomization of dice separately has shown to be a workable solution in the dissolution of doubts in tampering with inner codes.


███████▄▄███▄███▄
███▄▄████████▌██
▄█████████████▐██▌
██▄███████████▌█▌
███████▀██████▐▌█
██████████████▌▌▐
████████▄███████▐▐
█████████████████
███████████████▄██▄
██████████████▀▀▀
█████▀███▀▀▀

▄▄▄██████▄▄▄███████▄▄▄
███████████████████████████
███▌█████▀███▌█████▀▀███████████▄▄▄▄▄▄▄▄
███▌█████▄███▌█████▄███▐███████████████████▄
▐████████████▀███████▄██████████▀▀▀▀▀▀▀▀████▀
▐████████████▄██▄███████████▌█████████▄████▀
▐█████████▀█████████▌█████████████▄▄████▀
██████████▄███████████▐███▌██▄██████▀
██████████████▀███▐███▌██████████████████████
████▀██████▀▀█████████▌███▀▀▀▀███▀▀▀▀▀▀▀████▌

█████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████
 
P R E M I E R   B I T C O I N   C A S I N O   &   S P O R T S B O O K
 

█████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████████

█▀▀









▀▀▀

▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
98%
RTP


▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀

▀▀█









▀▀▀

█▀▀









▀▀▀

▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
HIGH
ODDS


▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀

▀▀█









▀▀▀

██████
██
██
██
██
██
██
██
██
██▄▄▄▄
▀▀▀▀▀▀

███████████████████████████████
 
PLAY NOW
 

███████████████████████████████

██████
██
██
██
██
██
██
██
██
▄▄▄▄██
▀▀▀▀▀▀
shinratensei_
Legendary
*
Offline

Activity: 3920
Merit: 1054


Leading Crypto Sports Betting & Casino Platform


View Profile
August 08, 2026, 03:40:01 AM
 #24

Also Hardware Wallets should not have a back up built in software entropy randomness generator if the hardware entropy chip in the hardware wallet fails.
As far as I know that was never the intended design, otherwise it would be a really bad design for something that is designed to be very secure, they intended to use hardware TRNG by disabling MICROPHY_HW_ENABLE_RNG to 0 but MicroPhyton is falling back to use inferior software PRNG. They thought the MicroPython fallback didn't exist.

The bulk of randomness on the COLDCARD was coming from a PRNG that I didn’t know was actually in the source code base (it is from a submodule, Micropython). At the same time the carefully crafted TRNG code I wrote was being used, but just by chance, and only for less important things.

..Stake.com..   ▄████████████████████████████████████▄
   ██ ▄▄▄▄▄▄▄▄▄▄            ▄▄▄▄▄▄▄▄▄▄ ██  ▄████▄
   ██ ▀▀▀▀▀▀▀▀▀▀ ██████████ ▀▀▀▀▀▀▀▀▀▀ ██  ██████
   ██ ██████████ ██      ██ ██████████ ██   ▀██▀
   ██ ██      ██ ██████  ██ ██      ██ ██    ██
   ██ ██████  ██ █████  ███ ██████  ██ ████▄ ██
   ██ █████  ███ ████  ████ █████  ███ ████████
   ██ ████  ████ ██████████ ████  ████ ████▀
   ██ ██████████ ▄▄▄▄▄▄▄▄▄▄ ██████████ ██
   ██            ▀▀▀▀▀▀▀▀▀▀            ██ 
   ▀█████████▀ ▄████████████▄ ▀█████████▀
  ▄▄▄▄▄▄▄▄▄▄▄▄███  ██  ██  ███▄▄▄▄▄▄▄▄▄▄▄▄
 ██████████████████████████████████████████
▄▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▄
█  ▄▀▄             █▀▀█▀▄▄
█  █▀█             █  ▐  ▐▌
█       ▄██▄       █  ▌  █
█     ▄██████▄     █  ▌ ▐▌
█    ██████████    █ ▐  █
█   ▐██████████▌   █ ▐ ▐▌
█    ▀▀██████▀▀    █ ▌ █
█     ▄▄▄██▄▄▄     █ ▌▐▌
█                  █▐ █
█                  █▐▐▌
█                  █▐█
▀▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▀█
▄▄█████████▄▄
▄██▀▀▀▀█████▀▀▀▀██▄
▄█▀       ▐█▌       ▀█▄
██         ▐█▌         ██
████▄     ▄█████▄     ▄████
████████▄███████████▄████████
███▀    █████████████    ▀███
██       ███████████       ██
▀█▄       █████████       ▄█▀
▀█▄    ▄██▀▀▀▀▀▀▀██▄  ▄▄▄█▀
▀███████         ███████▀
▀█████▄       ▄█████▀
▀▀▀███▄▄▄███▀▀▀
..PLAY NOW..
dim_mak5 (OP)
Member
**
Offline

Activity: 215
Merit: 17


View Profile
August 09, 2026, 01:09:14 AM
 #25

The Entropy hardware chip should be Isolated from firmware updates because buggy firmware/software updates can compromise the entropy randomness of the chip correct? For example you can have the state of the art military grade 1zillion bit entropy randomness generator hardware chip that took $billions in R&D that can be ruined compromised by a slave wage below minimum wage low paid cheap programmer in India working 20hr shifts in the software team releasing a buggy firmware update because the hardware wallet company want to cut operation costs to appease their shareholders.
Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!