logo

Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets

ID: c911961d-f410-58ba-82ab-af640b837be8

STIX ID: report--c911961d-f410-58ba-82ab-af640b837be8

Feed Name: CosmicBytez Labs

Threat Score
75/100

Date Published: 2026-07-12

Date Updated: 2026-07-13

...
...

**Executive Summary:** Coinspect disclosed the “Ill Bloom” vulnerability in cryptocurrency wallet seed generation caused by weak PRNGs, which reduces entropy and allows offline enumeration of seed phrases; attackers have actively exploited this flaw to steal over $5M from wallets (BTC/ETH/SOL) created primarily between 2018–2024 in mobile and web-based clients, while hardware wallets with secure elements are not affected. Immediate mitigation includes creating new wallets with reputable or hardware solutions and sweeping funds from potentially affected addresses.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.