CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2308

As cited

Copy frozen at (site build).

vulnerabilities

Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets

Security firm Coinspect disclosed a vulnerability called Ill Bloom affecting cryptocurrency wallet software that generates recovery phrases with weak randomness, allowing attackers to derive wallet credentials and steal funds. Attackers have already exploited the flaw in at least one coordinated attack that drained $3.1 million from affected wallets.

Why it matters: Cryptocurrency users and wallet providers need to immediately audit recovery phrase generation in their software and migrate funds from affected wallets to those with cryptographically secure randomness implementation.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary