Yes, this seems more and more likely.

fd6349ea2bca4d2b...

npub1l435n63tefxjk65xjnrn6hf0x4w97e2ezp3slkfrknzv8mhd7qqszy5rr8

hex

7cfd36d537fddfb331cf34527c71ee46410b8c631e7b9dced907a12783961f44

nevent

nevent1qqs8elfk65mlmhanx88ng5nuw8hyvsgt3333u7uaemvs0gf8swtp73qprpmhxue69uhhyetvv9ujuem4d36kwatvw5hx6mm9qgs06c6fag4u5nftd2rff3eat5hn2hzlv4v3qcc0my3mf3xramklqqg2awsqg

Kind-1 (TextNote)

2026-08-05T10:54:50Z

↳ Reply to Dr. The Daniel 🖖 (npub1aeh2zw4elewy5682lxc6xnlqzjnxksq303gwu2npfaxd49vmde6qcq4nwx)

ColdCard was an inside job.

Yes, this seems more and more likely. At least they knew of the vulnerability and chose to not do anything about it. Maybe they deliberately introduced it but were too chicken to exploit it.

Raw JSON

{
  "kind": 1,
  "id": "7cfd36d537fddfb331cf34527c71ee46410b8c631e7b9dced907a12783961f44",
  "pubkey": "fd6349ea2bca4d2b6a8694c73d5d2f355c5f655910630fd923b4c4c3eeedf001",
  "created_at": 1785927290,
  "tags": [
    [
      "e",
      "97ed1f3cb0c2bd3489f276c5a251f5f020b99835f50dba893dc261afc6cd9158",
      "wss://relay.azzamo.net/",
      "root",
      "ee6ea13ab9fe5c4a68eaf9b1a34fe014a66b40117c50ee2a614f4cda959b6e74"
    ],
    [
      "p",
      "ee6ea13ab9fe5c4a68eaf9b1a34fe014a66b40117c50ee2a614f4cda959b6e74",
      "wss://filter.nostr.wine/"
    ],
    [
      "client",
      "Amethyst"
    ]
  ],
  "content": "Yes, this seems more and more likely.\nAt least they knew of the vulnerability and chose to not do anything about it. Maybe they deliberately introduced it but were too chicken to exploit it.",
  "sig": "81ab4018f698d41dd36ede4e23138b34da5846f5afc9e12297c50ef5a4457e02def0c77cb56450e9d046a661edfbd21143b6c1403a13399d1d87cd8aadf9758b"
}