Edited By
Thomas Schreiber

A significant controversy has erupted around Coinkiteβs CEO and CTO regarding the alleged theft of over $114 million in cryptocurrency. Users are demanding answers and accountability after detailed allegations surfaced that point to a coordinated effort to exploit a vulnerability within the companyβs hardware wallet, Coldcard.
In a detailed examination of past statements and decisions made by Coinkite, experts highlight repeated dismissals from leadership about the possibility of a so-called "retirement attack." This type of risk involves manipulating randomness in the generation of wallet seed keys, potentially opening the door to future thefts.
In December 2020, CEO Rodolfo Novak (known as NVK) openly mocked concerns over retirement attacks, suggesting users simply rely on dice rolls for randomness.
A worrying change in the code was committed just ten weeks later by Coinkiteβs CTO, Peter Gray, who allegedly used a pseudonymous GitHub account to introduce a flawed pseudorandom number generator.
Despite warnings by developers and users in the following years, the security risk remained unresolved.
"They sold the warning, but when it mattered, they ignored it," said one industry analyst.
December 2020: NVK publicly questions the viability of a retirement attack.
February 2021: CTO ships faulty code that compromises wallet security.
May 2025: Developer James OβBeirne raises concerns about the RNG source, met with dismissive responses from Coinkite.
July 2026: Following a mass theft, Coinkite's credibility faces serious scrutiny as users demand an explanation.
The ongoing discourse in forums and user boards reveals a mix of outrage and skepticism among community members:
"If true, the leadership at Coinkite should face criminal charges," asserted a concerned user.
Others pointed out the absurdity of dismissing warnings while maintaining a nonchalant approach to security: "This isn't just careless; it's dangerously negligent."
Some commenters have even speculated that an inside job is not just possible but likely, given the sequence of events leading to the theft.
π΄ Multiple warnings ignored: Users raised alarms about security flaws dating back to 2021.
π‘οΈ Leadership's credibility at stake: With evidence mounting, calls for prosecution are intensifying.
π User trust eroding rapidly: Many loyal customers now feel betrayed and misled.
As investigations continue, users are left questioning the integrity of both Coinkite's leadership and the safety of their assets. The fallout from this incident could reshape how hardware wallets are viewed and regulated across the industry.
Thereβs a strong chance that legal action against Coinkiteβs leadership will escalate as evidence mounts. Prosecutors may pursue criminal charges related to negligence and fraud, especially given the overwhelming outcry from users and industry experts alike. Experts estimate that thereβs an 80% likelihood the company will face civil lawsuits, which could further erode user trust and impact business operations. In the short term, Coinkite will likely struggle to maintain its user base, as many customers may choose to withdraw their assets and seek alternatives, leading to a swift change in market dynamics for hardware wallets.
Consider the fallout from the Enron scandal in the early 2000s. While on the surface, it seemed like a high-stakes game of finance, the true loss was rooted in a deep-seated disregard for ethical responsibility and transparency. Just as Enronβs leadership chose to ignore warning signs from their own staff, Coinkite's executives have followed a similar path, where internal alarms went unheeded. This pattern of dismissing concerns may ultimately serve as a lesson that resonates far beyond the cryptocurrency industry, highlighting the importance of accountability in any leadership role.