CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps
ID: cd28f1cf-8ad2-507e-b6f6-0521ff4fc20b
STIX ID: report--cd28f1cf-8ad2-507e-b6f6-0521ff4fc20b
Feed Name: The Hacker News
Date Published: 2026-08-06
Date Updated: 2026-08-06
Author: [email protected] (The Hacker News)
Coinspect discovered that CryptoJS.lib.WordArray.random() produced far weaker entropy (reducing 128-/256-bit entropy to roughly 2^39–2^47) when used to generate BIP39 recovery phrases, enabling brute-force enumeration and account drains; on-chain analysis attributes at least $5.69M stolen in two waves across Bitcoin, Ethereum, Tron, Rootstock, and Polygon, with five confirmed affected wallets (RRWallet, Bexo, NanChat, Bitcoin Libre, Milo) and varying remediation statuses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
