Coldcard 熵漏洞暴露单签风险,多厂商多签成比特币托管新基线

链捕手
Aug 27

ChainCatcher 消息,Coinkite 旗下硬件钱包 Coldcard 被曝存在严重熵漏洞,该漏洞自 2021 年起未被发现,导致超过 1 亿美元比特币被盗,受害者多为使用单一助记词钱包的用户。弱熵使得攻击者能够通过定制化手段猜测私钥,这一事件促使比特币社区重新审视单签自托管的可靠性。

在此背景下,多厂商多签(Multi-vendor Multisig)方案正成为长期持有者推荐的新托管基线。该方案要求用户使用来自不同钱包厂商的密钥构建多签地址,例如 Trezor Safe 7、Ledger Nano 与 Casa 恢复密钥组成 2-of-3 多签,从而降低对单一硬件厂商的信任依赖。多签还能抵御扳手攻击,并催生了 AnchorWatch 等以 BTC 计价的比特币保险服务。

不过多签也存在缺点,用户除需保管阈值密钥外,还需保存多签脚本或模板副本,以便在钱包服务离线时独立恢复资金。

Disclaimer: Investing carries risk. This is not financial advice. The above content should not be regarded as an offer, recommendation, or solicitation on acquiring or disposing of any financial products, any associated discussions, comments, or posts by author or other users should not be considered as such either. It is solely for general information purpose only, which does not consider your own investment objectives, financial situations or needs. TTM assumes no responsibility or warranty for the accuracy and completeness of the information, investors should do their own research and may seek professional advice before investing.

Most Discussed

  1. 1
     
     
     
     
  2. 2
     
     
     
     
  3. 3
     
     
     
     
  4. 4
     
     
     
     
  5. 5
     
     
     
     
  6. 6
     
     
     
     
  7. 7
     
     
     
     
  8. 8
     
     
     
     
  9. 9
     
     
     
     
  10. 10