Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes
2026-08-02T01:23:59Z•a83531215d32c169a928ea0b7b38f3441fd9b4e393bb12d49763b4e8b900c4b6
CVE-2026-20316CVE-2026-48449CVE-2026-59726CVE-2026-66066BYOVDCISA-KEVactive-exploitationai-securitycloud-securitycryptocurrency-theftmobile-securitynetwork-securityphishingransomware-and-malwareremote-code-executionstate-sponsored-threatssupply-chain-securityvulnerability-managementweb-application-securityzero-day
What happened
The document is a cybersecurity news feed covering active exploitation, critical vulnerabilities, malware campaigns, supply-chain compromises, phishing, cloud and AI security issues, and state-sponsored or financially motivated threat activity. Highlights include CVE-2026-48449 in Adobe Campaign Classic, CVE-2026-20316 in Cisco Secure Firewall Management Center, CVE-2026-66066 in Ruby on Rails Active Storage, and CVE-2026-59726 in Ruflo. Reported impacts range from unauthenticated remote code execution and arbitrary file disclosure to credential theft, session hijacking, cryptocurrency theft,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- a83531215d32c169a928ea0b7b38f3441fd9b4e393bb12d49763b4e8b900c4b6
- Enrichment time
- 2026-08-02T01:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.