RRWallet Hack

Reported loss $2.0M
Bitcoin
Weak Key Generation

What happened

On August 6, 2026, public research identified discontinued RRWallet as one of several wallet apps affected by weak recovery-phrase generation in CryptoJS, which made private keys predictable and led to theft.

Technical root cause

RRWallet used CryptoJS.lib.WordArray.random() as an entropy source for recovery-phrase generation; Coinspect identified that function as a weak random-number generator that made affected wallet keys predictable.

Protocol details

Classification Key Compromise
Protocol Type Wallet
Implementation language C++

Build your security review skills

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.