Even if you had a quorum of Coldcards in your multisig (meaning the hackers COULD have stolen from your multisig) they still didn't do it successfully due to the effort involved in guessing the right combination of keys making up one wallet.
Multisig = security & resilience++
one thing people aren't discussing enough in the wake of coldcard: not one satoshi is documented as being stolen from a multisig
the future of self-custody is multisig, and i urge non-technical users who desire self-custody to look into collaborative multisig providers