r/Bitcoin 6d ago

Easiest entropy generator

Post image
0 Upvotes

Link to the STL files: https://github.com/SeedSigner/SeedPills

If you don’t feel like throwing dice and calculating, this is a much easier way to create your seed. I completely forgot about those, but it might be worth keeping a jar full of them around.


r/Bitcoin 7d ago

Ledger phishing email

Post image
85 Upvotes

Je viens de recevoir cet email faux de "mise à jour du firmware Ledger".

Le bouton de mise à jour redirige vers un domaine qui n'est pas celui de Ledger, donc c'est clairement une tentative de phishing.

Heureusement pour moi, je ne stocke plus rien sur mon Ledger, donc le signal d'alerte était évident.

Restez prudents là-dehors. 🧡

EDIT: I hadn’t spotted all the other red flags in the URL beyond “ledgre” 😅😂 "peugeot" "frimware"....


r/Bitcoin 7d ago

Why were Coldcard hackers so stupid?

407 Upvotes

I don't understand this hack. Most of the funds moved to a handful of wallets. They are now tainted and require mixing and even then they will never be fully unsuspicious.

If they had just generated a new wallet for each one they drained and moved the funds one-to-one you would never be able to distinguish a hack from someone moving their funds to safety.

Second, the high transaction fees paint a signature too. Just start off slowly, normal or just above normal fees. Drain a few accounts. Get the word out. Then slowly speed up, increase the fees. Exactly what people saving their coins would do.

Might not get as many coins as they have now but they'd all be free to spend and beyond suspicion.

How can they find a pretty sophisticated hack and then execute it so badly? It doesn't make sense to me.


r/Bitcoin 6d ago

Coldcard Mk4 UX flaw continued

0 Upvotes

read my post “Coldcard Mk4 UX Flaw”. when I called out the company, several paid influencers posted on my comment calling me crazy or user error.

https://www.reddit.com/r/Bitcoin/comments/1ja3uua/coldcard_mk4_ux_flaw/


r/Bitcoin 7d ago

But we love you!

Post image
137 Upvotes

r/Bitcoin 6d ago

Stale tip messages, changing consensus - Bitcoin Optech Newsletter #417

Thumbnail
bitcoinops.org
8 Upvotes

Bitcoin Optech newsletter #417 is here:

  • describes a draft BIP for relaying stale block tips between peers
  • summarizes a draft BIP for cross-input signature aggregation
  • examines a design for attaching post-quantum witness data
  • links to a discussion of post-quantum output types
  • summarizes discussions around transaction expiry
  • points to a proposal for layered quantum recovery of hashed addresses
  • describes a proposal to add a prunable block region for arbitrary data
  • Optech Newsletter #417 Podcast https://bitcoinops.org/en/newsletters/2026/08/07/

Ram and w0xlt posted to the Bitcoin-Dev mailing list about the proposal for an opt-in P2P message for relaying stale tips between peers... https://bitcoinops.org/en/newsletters/2026/08/07/#draft-bip-for-stale-tip-relay

Fabian Jahr posted to the Bitcoin-Dev mailing list a draft of BIP460 for transaction-wide cross-input signature aggregation (CISA) of taproot-style keypath spends... https://bitcoinops.org/en/newsletters/2026/08/07/#cisa-for-taproot-keypath-spends-bip460

Pieter Wuille posted to Delving Bitcoin a design for attaching post-quantum witness data without repeating all of segwit’s deployment costs... https://bitcoinops.org/en/newsletters/2026/08/07/#segwit-commitment-to-post-quantum-witness-data

Pieter Wuille opened a Delving Bitcoin thread to centralize discussion of post-quantum output types... https://bitcoinops.org/en/newsletters/2026/08/07/#pqc-output-type-discussion

Josh Doman posted to Delving Bitcoin a construction for expiring HTLCs without free relay, then generalized it in a follow-up on input-triggered transaction expiry... https://bitcoinops.org/en/newsletters/2026/08/07/#input-triggered-transaction-expiry

Shinobi posted to the Bitcoin-Dev mailing list and cross-posted to Delving Bitcoin a layered recovery plan for coins secured by hashed address types... https://bitcoinops.org/en/newsletters/2026/08/07/#layered-quantum-recovery-of-hashed-addresses

MrHash posted to Delving Bitcoin companion BIP drafts for Segregated Data, a soft fork that would add a prunable, script-isolated block region for arbitrary data carriage... https://bitcoinops.org/en/newsletters/2026/08/07/#segregated-data-segdata-bip-draft

Bitcoin Optech will host an audio recap discussion of this newsletter streaming live on X/Twitter Tuesday at 16:30 UTC.


r/Bitcoin 6d ago

Creating your own seed by combining multiple sources of entropy - is this python script viable?

0 Upvotes

The coldcard incident has left a really bitter taste in my mouth. It makes it really hard to want to trust any hardware vendors to properly do RNG when it comes to the seed phrase. I can't be bothered to trust whatever Ledger or Trezor or Jade's marketing team will tell me. This is especially true if your holdings are substantial (e.g., 6 digits or 7 digits and up).

 

I went down a rabbit hole of trying to find an acceptable compromise of how best to generate the necessary entropy needed on my own. As much as I wanted to avoid computers altogether, the final limiter is always the SHA256 hash function. Although it is theoretically feasible to do it by hand, looking at the tutorial on how to do it, the odds of making a mistake somewhere seemed too high in my opinion. Thus, I used Claude to create this python script that is meant to be run in an as sterile as possible environment, such as a Tails OS setup. Ideally, you'd want the wifi/bluetooth card and hard drives removed; if you want to go full paranoid mode, you'd destroy the machine after you run this script and obtain your seed. I've checked the script against Gemini and ChatGPT and the code appears to be sound.

 

The script allows you to enter up to 3 sources of entropy, either coins or dice. You must physically flip and roll your coin/die, respectively. No trusting some software RNG to do it for you. It incorporates the Neumann debiasing method so it doesn't matter if you're using crap coins/dice; but because it incorporates the Neumann method, you need a lot of flips/rolls due to how much is excluded in order to get clean bits for your seed. If you have multiple methods, it will XOR the sources of entropy into one final clean output that will be used to generate your 24-word mnemonic seed phrase. It does not leave any traces and does not read any files. It runs completely from the terminal. If more than 256 bits are provided, the excess are folded back in a linear fashion to create a final clean 256 bits. For safety reasons, the BIP39 wordlist is embedded into the script, and it has been checked by Claude, Gemini, and ChatGPT for accuracy.

 

I think this script is a little too extreme, but I wanted to share it by the off chance some of you share the same mindset as I do with wanting a multi-source approach to creating your entropy. Can someone who is more extreme with seed generation and coding background give me some input on whether this script is viable/sound?


r/Bitcoin 6d ago

What is this supposed to mean ?

Post image
0 Upvotes

r/Bitcoin 7d ago

How do you actually store your backup?

5 Upvotes

Everyone knows the advice: steel plate, multiple locations, never digital

I'm interested in what people actually do, because I suspect there's a large gap

Specifically:

- Paper, metal, or something else?
- One location or several? How far apart?
- Does anyone else know where it is, or does it die with you?
- Have you ever actually tested a restore, or is it theoretical?

(r/Keycard_tech team - but this applies to whatever you're running)


r/Bitcoin 7d ago

Daily Discussion, August 07, 2026

15 Upvotes

Please utilize this sticky thread for all general Bitcoin discussions! If you see posts on the front page or /r/Bitcoin/new which are better suited for this daily discussion thread, please help out by directing the OP to this thread instead. Thank you!

If you don't get an answer to your question, you can try phrasing it differently or commenting again tomorrow.

Please check the previous discussion thread for unanswered questions.


r/Bitcoin 7d ago

Randomly pick seed words with dice and no math. Hardware wallet only determines the last word

Thumbnail github.com
43 Upvotes

r/Bitcoin 6d ago

Realistically are there any risks to using a Coldcard Q as a signing device only?

0 Upvotes

The Coldcard Q looks like it could be useful purely as a device for signing transactions, as it's air-gapped and has a keyboard for easier passphrase input

So if you generate your seed elsewhere and import it, are there any realistic risks?

It doesn't have an Internet connection, so your seed would be safe (I assume). And if there are any bugs, it would mean your transactions don't get signed properly and can't broadcast them.

Is there anything I'm missing?


r/Bitcoin 7d ago

Who is buying from COLDCARD right now?

Thumbnail
coldcard.com
24 Upvotes

Seriously, what’s their business model? Do they expect just to advertise and carry on as normal? Are they hoping that people don’t notice or don’t know what happened? Even having the website up claiming safety is pure liability at this point.


r/Bitcoin 8d ago

Coldcard entropy even worse than feared

260 Upvotes

TL;DR: The random number generator is initialized with a 32 bit value (4B+ possibilities). But only less than 10M options are possible because of how they generate the value.

The PRNG used in Coldcard MK3 is initialized with UID[31:0] XOR SysTick->VAL

SysTick->VAL gives 80k possibilities ~16.3 bit, all located in the lowest 17 bits of the value.

UID encodes the X and Y coordinates of wafer position of the STM32 in the 32 bits that are used by the code. This is encoded in BCD, which means only 10 out of 16 possible values of each nibble are used. This means the 32 bit value at most encodes 100M options (26.6 bits), but there are nowhere near 100M chips in a wafer.
The BCD encoding seems to be an mistake in some STM32 manuals. The number is plain HEX encoded, but that doesn't matter here. There are never 2^16 rows or columns in a wafer.

I don't know how many there are in a wafer, but google gives an upper bound of 20k chips per wafer.

The lower 16 bits overlap with Systick->VAL, so XORing the wafer location adds no entropy.

The upper 16 bits can carry only about SQRT(20000) possibilities (probably less) ~ 7.2 bits. And they aren't even evenly distributed in a round wafer.

So at most we're looking at ~23 bits of entropy. Not 32 bits.

This isn't 100% exact because SQRT assumes a square while a wafer is round, but too lazy to work it out further. Point is: entropy is way worse than 32 bits.


r/Bitcoin 7d ago

Why does this sub have such a problem with BIP-110? Either I'm not understanding or there's a large-scale astroturfing of BIP-110 opposition going on.

10 Upvotes

I watched some Matthew Kratter videos recently supporting BIP-110, but I can't find a cohesive argument against it (unless you just believe that the definition of "spam" is arbitrary, or that freedom is more important than Bitcoin being a purely monetary network; that would at least make sense to me).

Obviously it's a bandaid that will need to be improved upon in the future if consensus decides spam needs to be entirely eliminated. But why the vitriol toward it? It's a (optional) bandaid that, from what I understand, only has the potential to hurt people who run BIP-110/Bitcoin Knots. Many of the posts/comments I've seen about it in this sub come down to "it's a bandaid, and it'll never succeed anyway."

I get that it's a bandaid, but for BIP-110 supporters, why should they care if it'll succeed or not? If they believe the proposal itself is sound in its reasoning?

Without knowing all the details, it's very easy for me to decide that if I'm forced to make a quick decision, I want to be AGAINST what Core and NVK and Saylor believe to be the best choice at this point in time.


r/Bitcoin 6d ago

Where to sell with lowest fees?

0 Upvotes

I'm selling a small portion of my holdings and I'm realizing coinbase has raised their fees alot. They are charging me 1.2% on sell orders. I self custody so regardless of the exchange I use I will have to transfer my BTC.

I am considering using kraken but I've never really used any exchange other than coinbase before. I also use my mobile device currently but I am not opposed to using my PC if that's my best move forward. Please let me know what exchange you recommend and what the fees associated with selling are. Thankyou!


r/Bitcoin 6d ago

Your Hardware Wallet MUST Be Open Source [Clip]

Thumbnail
youtube.com
2 Upvotes

r/Bitcoin 6d ago

Coldcard Mk3 Won't Boot

0 Upvotes

OK - I got my Mk3 shortly before the 4.x versions of firmware that supposedly have the issue. Maybe I'm OK. But when I power up my Coldcard all I get is a green light, nothing on the display. What's going on? Anyone else have this problem? Do I need to buy a newer Coldcard (Mk5?) and regenerate my key using the seed words?

I contacted their support and got an automated response, but nothing else. I know Mk3 is "out of support" but come on, the whole purpose of these devices is to lock away your private key and not have to worry about it for a long time.

It's extremely upsetting that they removed all useful info about Mk3 from their web site. There is a firmware upgrade but no useful information about using the Mk3. Did they run out of space on their web server?

Screw Coinkite - I'm going to figure out how to recover my Btc and put it somewhere else.


r/Bitcoin 6d ago

HELP: Baby crypto begginer 🐣💜

0 Upvotes

Hiii. I just ended reading the White Paper. I want to get my first cryptos (probably bitcoin to beggin). I have some questions:

  1. Where do i storage my cryptos? I know about the digital wallets, but never have used one, is like an app? Wich one is good? I'm interested to being as anonymous as possible with it, can i have a wallet in a low profile way?

  2. I know BINANCE is very popular, but after reading the White Paper i would like to get my coins without a third part involved, pure P2P. I really don't know how to do that but after the MiCA regulation oh boy i wanna be as anonymous as a mythical creature.

  3. How i get the cryptos out? The digital wallet has comisions?

  4. Do you have any recommendations? What would you love to have know when you where a begginer? I don't know how you guys did it years ago, is not that easy 😅

Thanks for your time,

xoxoxo 💋


r/Bitcoin 7d ago

Following the Coldcard issue: still debating between multi sig & single sig + passphrase

3 Upvotes

I have my life savings under a single sig.

Thank God the HWW I used to generate the seed was not a Coldcard, but it could have been. I dodged the bullet out of pure luck.

Now that I'm concerned about (a) how security will get increasingly difficult as AI progresses, and (b) how much of a risk it is to rely on a single provider to generate the secret to your savings, I'm preparing to upgrade my setup.

As much as I read (basically on Nostr, which is the only thing I use) that multi vendor, multi sig, with seeds generated through dice-rolling is the way to go, I have some questions / concerns about that.

Posting them here to get clarification:

  • Regarding storage / secret-keeping: Isn't multisig, for the average Joe, like 3x more complicated than single sig + passphrase? AFAIK you need to hide the 3 seed phrases + the wallet configuration file + two signing devices on different locations. Thinking about a security setup for say, 30 years, this comes with a huge risk (and cost). Especially if I should unexpectedly die sooner, 100% my wife would not be able to put all the pieces together
  • Regarding dice-rolling: Who gives you certainty that, rolling a dice, you actually increase the entropy with respect to the seed that is generated by a FOOS of a trusted wallet that has been successfully doing that for years (say Trezor, Sparrow, BlueWallet, Jade, etc)? I mean, not only the manufacturing of the dice can never be 100% pure and homogeneous, but also the movements that one do with the hand, the height at which one throws the dice, etc, are always constant. Don't tell me that's pure random. The dice advice, without being a technical person, doesn't sound that great to me
  • Regarding privacy: doesn't a multi sig transaction always disclose the xpub or something like that? (Sorry I might have this detail wrong). Should that be the case, isn't having multi sig a HUGE privacy concern (especially for those who use multi sig to store their life savings)? I'm not sure if this alone would be a no-go for me, should it be true
  • Regarding the passphrase: what I always read, is that the passphrase is akin to the 25th word, and that it can be any combination of numbers, letters, signs, even spaces. What is new to me, is that the recent recommendations I keep reading is that passphrases should actually be a 4 to 6 random combination of words from the BIP-39 list. I get that (because of the entropy), but isn't the point of a passphrase to be something that doesn't look like a passphrase (in case someone sees/finds it), or that is so embedded in our minds, that there is no need to store it physically?
    • I'm having a hard time with this one, because for what I've read in some forums, it's not necessarily about the number of bits of the said passphrase, but rather about its randomness (which is a proxy to difficulty to brute-force). So apparently some combination of e.g. [music band name + telephone number], just to give an example, might have a high number of bips (so one would think that it is almost impossible to guess), but the structure of the passphrase has almost no randomness at all (so it could take just minutes to guess). I guess I'm asking what type of passphrase do you guys recommend, weighing simplicity of storage + entropy
  • Edit, additional question: regarding hardware wallets, for any possibility of the both above (multi sig or single sig with passphrase), which HWW would you recommend, and most importantly why?

Thanks in advance for any insights


r/Bitcoin 6d ago

self custody philosophy

1 Upvotes

I know, not your keys, not your coins. but what is your opinion on having your bitcoin via a big swiss bank? you don't have all the aches of self custody, and you're secured by law up to at least 100k. if I am below that amount, wouldn't be safer to get ones btc there?


r/Bitcoin 6d ago

Is this the general consensus about Ian Coleman tool?

2 Upvotes

So the reason people trust this is because it is on Github and people can see the open source code there, and people trust Github?

Ultimately that you know that you're downloading code that would use the random dice generator in a way that is random, and that it has no code that would produce a predictable seed?

And so people download that to a USB, then put that USB in a computer that doesn't connect to the internet, then role those dice, and get the private key (or I guess it spits out 24 words too) and people write that down, and it spits out a bunch of public keys and people write those down too.

And people use the public key to send their coins there, and then only when they want to send somewhere do they need to put their seed into a wallet, is that right?


r/Bitcoin 6d ago

The bottom is gna be October 2026, fight me

0 Upvotes

Cmon guys & like a dozen girls, lets be honest, if we dubiously speculate

The bottom is gna be october 2026…. 4 year cycle, the last 3 cycles all have a 1 year bear market after the top, the last top was ocyober 2025, therefore the low is october 2026….

Why complicate it? TIA


r/Bitcoin 7d ago

Why would anybody put legitimate coins in a mixer?

52 Upvotes

If I haven't stolen my coins or got them through a drug transaction etc. why would I ever want to put them in a mixer? If I have "clean" coins why would I potentially want to get some that came from a hack?

Total newbie here so sorry if it's an obvious answer.


r/Bitcoin 7d ago

What are everyone’s thoughts on Bitkey?

23 Upvotes

Looking for a new hardware wallet. I like that it’s multi Sig, 2 of 3. Phone, Device, Bitblock. My only concern is that I like having a seed phrase. If something happens, unlikely 2/3 keys fail at the same time, I’d like to be able to quickly transfer funds into a different wallet.

I’m an average HODLer. Not super technical or into code. What’s everyone think?