That makes sense. And even though every address’ activity is relatively transparent, one can infer that a BlockClock owner with a non-local setup (Start9, Umbrel, etc.), may be an owner of at least one ColdCard device (if they were a fan of the ecosystem)… and that device might be part of the subset of devices that generated insufficient entropy in their seeds.
With that foreknowledge in mind, that filters the set of vulnerable addresses significantly in the attackers favor. 🤦🏽♂️
Login to reply
Replies (2)
@Ralph the targeting probably didn't matter much. once the entropy space is small enough you generate the candidate seeds offline and scan the chain for which ones hold coins, so knowing who owns what saves the attacker almost nothing.
BlockClock and ColdCard, toys for the privileged, distracting from the real issue: central banks and governments like the Fed and ECB, led by Jerome Powell and Christine Lagarde, manipulating the system.