CVE Tools

Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets

The Hacker NewsBy The Hacker News

Reported exploitedCryptocurrency Wallets

Our summary

A critical vulnerability dubbed Ill Bloom has been actively exploited by attackers to steal over $3.1 million from cryptocurrency wallets. The flaw lies in how certain wallet applications generated recovery phrases—key components for accessing funds—with insufficient randomness, allowing malicious actors to predict and access them. Security firm Coinspect reported a coordinated theft on May 27, draining 431 wallets, with additional losses totaling more than $5 million since then. Older or less-known mobile wallets are particularly at risk. Coinspect advises users to use the free tool at illbloom.org to check if their wallet is affected and to move funds immediately if compromised. This issue mirrors past flaws such as CVE-2023-39910 and CVE-2023-31290, where predictable random number generators led to similar attacks.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store