Coldcard Investigates Phishing Post on Official X Account
Coldcard said it deleted a phishing post from its official X account on October 11 and warned users not to open the linked website as it investigates how the message was published. The post falsely presented itself as an urgent security alert about wallet firmware and urged users to move their funds through a linked site. Coldcard said the link was malicious and told customers not to visit or interact with it. The company identified coldcard.com as its only official website and said it would share further verified updates. Coldcard said its initial review found no unauthorized login, session or access record corresponding to the post. It also said the account has used offline two-factor authentication and restricted access since 2017. The company contacted X and requested an investigation into how the message appeared. Coldcard has raised the possibility of platform-level or administrative access, but that explanation has not been established. The available information does not identify who published the post or how it reached the account.