Bitcoin Infrastructure Attacks Steal $100 Million from Coinkite Users
Attackers exploited critical vulnerabilities in Coinkite hardware wallets and BTCPay servers, prompting an AI-driven security audit of 400 open-source Bitcoin projects.
A series of critical security exploits has targeted Bitcoin infrastructure, resulting in the theft of approximately $100 million from Coinkite hardware wallets. The attack drained 2,000 bitcoin from over 5,200 addresses, leading developers to issue an urgent advisory for users to generate new seeds and migrate their funds.
Simultaneously, BTCPay confirmed that attackers exploited a vulnerability in the Lightning Network Daemon (LND) node in versions prior to 2.4.2. The exploit allowed attackers to steal user funds, prompting warnings for operators to disable their servers immediately.
In response to these breaches, the Bitcoin Red Team utilized Moonshot's Kimi K3 AI model to perform a massive security audit of nearly 400 open-source projects. Within 24 hours, the audit identified approximately 5,000 vulnerabilities, including 85 critical and 635 high-severity bugs. These coordinated failures have contributed to Bitcoin price weakness and renewed concerns regarding the safety of self-custody wallets.