Rivest and Shamir presented two simple micropayment schemes, ”PayWord” and ”MicroMint,” for making small purchases over the Internet. Recently, Adachi et al. have pointed out that the PayWord scheme has two security problems, and proposed a new micropayment scheme to overcome these problems. Nevertheless, we show that their protocol is still vulnerable to impersonation and replay attacks.