BTC/USD $68,420 +2.8%
ETH/USD $3,540 +1.4%
SOL/USD $142.80 -0.6%
BNB/USD $605.20 +0.9%
XRP/USD $0.62 -1.2%
DOGE/USD $0.18 +5.4%
BTC/USD $68,420 +2.8%
ETH/USD $3,540 +1.4%
SOL/USD $142.80 -0.6%
BNB/USD $605.20 +0.9%
XRP/USD $0.62 -1.2%
DOGE/USD $0.18 +5.4%
Markets

Coldcard Maker Investigates Phishing Link Posted on Hacked X Account

The hardware wallet company says it is probing an online compromise after a malicious link appeared on its official social media account. Coinkite, maker of the Coldcard hardware wallet, is i

AnonymousCryptoCompass newsroom
October 11, 2026
4 min read
NEWS
Coldcard Maker Investigates Phishing Link Posted on Hacked X Account
CryptoCompass editorial visual for markets coverage.

The hardware wallet company says it is probing an online compromise after a malicious link appeared on its official social media account.

Coinkite, maker of the Coldcard hardware wallet, is investigating a new security incident. A phishing link appeared on the company's official X account, according to reports from U.Today and CryptoBriefing. The company is working to determine how the account was accessed and what, if any, user exposure resulted.

Coldcard has built its reputation on offline, air-gapped security for storing bitcoin private keys. Its hardware is designed to keep signing operations isolated from internet-connected devices. This latest incident, however, took place in the online realm rather than through the physical device itself.

Reports describe this as a repeat compromise for the company, though the nature of the earlier incident differs from the current one. The earlier issue reportedly involved concerns tied to the hardware or supply chain, while this latest episode centers on an online account takeover. The distinction matters because it shifts the threat surface from device manufacturing to digital account security, a different risk category entirely.

Phishing links distributed through compromised social media accounts are a common attack vector in the crypto industry. Attackers often use a trusted brand's account to lure followers into visiting fraudulent websites. These sites can mimic legitimate wallet interfaces or prompt users to enter seed phrases or connect wallets to malicious smart contracts.

For hardware wallet users, the core security promise rests on keeping private keys offline. An account-level phishing incident does not necessarily compromise that offline security model directly. It can, however, trick users into taking actions outside the device that expose them to loss, such as visiting a fake update page or entering sensitive information on a spoofed site.

Coinkite has not detailed, in the reporting available, the full scope of the breach or confirmed whether any customer funds were affected. The company's investigation is ongoing, and further details are expected as the situation develops.

Market Impact

Security incidents involving well-known hardware wallet brands tend to draw scrutiny across the broader self-custody market. Coldcard has positioned itself as a security-focused option for bitcoin holders who prioritize offline key storage over convenience.

An online account compromise, even without direct impact on the hardware itself, can still affect user trust and prompt broader conversations about social media account security practices among crypto companies. Other wallet makers and exchanges may face renewed pressure to harden their own account protections following this incident.

Coinkite's investigation into the phishing link is ongoing, and the company has not yet detailed the full scope of the breach. Users of Coldcard devices are advised to verify any links or communications claiming to come from the company through official channels.

Frequently Asked Questions

What happened to Coldcard's official account?

A phishing link was posted from Coldcard maker Coinkite's official X account, prompting an internal investigation into how the access occurred.

Does this incident affect the security of Coldcard hardware wallets?

Reports indicate this was an online account compromise rather than a hardware-level breach. Coldcard devices are designed to keep private keys offline and isolated from internet-connected systems.

Has Coinkite confirmed whether customer funds were affected?

Available reporting does not confirm whether any customer funds were lost. Coinkite's investigation is ongoing and further details are expected.

Is this the first security issue involving Coldcard?

Reports describe this as a repeat incident for the company, though the earlier issue reportedly involved different circumstances than this online account compromise.

Originally reported by AltcoinGordon, written by Grace Mitchell. Republished with permission.

View the original on AltcoinGordon →

The post Coldcard Maker Investigates Phishing Link Posted on Hacked X Account appeared first on TheCoinrise.com.