Coinkite has issued a security advisory for Coldcard Mk3 devices running firmware versions 4.0.1 through 5.0.3. A potential flaw in the random number generator of these versions may have compromised the randomness of generated seeds, making them potentially reproducible. The Mk4, Q, and Mk5 models are not affected by this issue. The company recommends affected users either add a BIP-39 passphrase to their existing seed or migrate entirely to a new unaffected device. The warning remains prominently displayed on the firmware download page.
Source: Read the original article

