Crypto users lost at least $5.69 million in traced thefts after attackers reconstructed predictable wallet recovery phrases. Coinspect identified the flaw in RRWallet, Bexo Wallet, NanChat, Bitcoin Libre, and Milo. The affected wallet list may not be exhaustive. Exposure depends on the software version that generated the phrase rather than the wallet brand alone. Coinspect traced about $3.14 million drained on May 27. Attackers drained another $2.55 million between May 30 and July 13. A third attack wave drained around $40,000 between July 20 and 21 from wallets using the Chinese-mnemonic subset. Coinspect's analysis covered more than 2,000 seeds. The activity involved Bitcoin, Ethereum, Tron, Rootstock, and Polygon. The $5.69 million figure is a lower bound on total losses. The wallets used a weak random-number generator from the CryptoJS library. The vulnerable implementation was introduced in June 2014. The weakness reduced search spaces expected to contain 2^128 or 2^256 possibilities to roughly 2^39 and 2^47. Attackers could enumerate the affected phrases, derive blockchain addresses, and check those addresses for funds. An older CryptoJS dependency alone does not establish exposure. The vulnerable function also had to generate the wallet secret. Updating an app cannot repair a recovery phrase created with insufficient randomness. Importing the same phrase into another software or hardware wallet does not remove the vulnerability. Bexo fixed the generation path in version 20.1.0. NanChat fixed it in version 1.3.0. Bitcoin Libre fixed it in version 4. RRWallet and Milo have been discontinued. NanChat advised users who created wallets before version 1.3.0 to treat them as compromised and migrate to a newly generated phrase. Coinspect released Unlukey to check public blockchain addresses against known exposed datasets without submitting private information. A matching address indicates potential exposure. A negative result only means the address was not found in the published data. Users with confirmed affected wallets should generate a new recovery phrase securely and move the funds it controls.
Crypto Users Lose at Least $5.69M via Predictable Wallet Seeds
NS3Share
Crypto users lost at least $5.69M via predictable wallet seeds, impacting liquidity and crypto markets. Coinspect found the flaw in wallets like RRWallet, Bexo, and Bitcoin Libre, due to weak random-number generators. $3.14M was drained on May 27, and CFT regulations may now face new scrutiny. Fixes were pushed for some wallets, others were shut down. Unlukey now helps track exposed addresses.
Source:Show original
Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information.
Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.



