Hardware wallet manufacturer COLDCARD confirmed its official X account posted a phishing link before the tweet was deleted. The company stated the account has utilized offline two-factor authentication and strictly restricted access since 2017, with no login, session, or access records found during an internal review.
COLDCARD suspects the breach resulted from platform-level compromise or unauthorized administrator access rather than credential theft. The team has contacted X to demand an immediate investigation and log preservation while reviewing all account permissions, with a verification update expected soon.
COLDCARD X Account Compromised in Phishing Attack Despite Offline 2FA
Disclaimer: The content provided on Phemex News is for informational purposes only. We do not guarantee the quality, accuracy, or completeness of the information sourced from third-party articles. The content on this page does not constitute financial or investment advice. We strongly encourage you to conduct you own research and consult with a qualified financial advisor before making any investment decisions.
