Tagged: exploit

Major DeFi Vulnerability Exposed: $26.44 Million Stolen from Truebit Protocol

In a significant blow to the nascent decentralized computing space, the Truebit Protocol fell victim to a sophisticated smart contract exploit on January 8, 2026. Attackers drained approximately 8,535 ETH, valued at around $26.44 million, from the protocol’s reserves. The incident, analyzed by the SlowMist… Read More

Betterment Discloses Social Engineering Attack Behind Recent Data Breach and Fraudulent Messages

On January 12, 2026, investing and savings platform Betterment revealed that a sophisticated social engineering attack was responsible for a recent security incident. This breach allowed an unauthorized individual to access certain customer personal information and send fraudulent messages promoting a fake cryptocurrency-related offer to… Read More

Regtech SlowMist Releases MistTrack Analysis on Stolen Crypto Funds

In the final quarter of 2025, Regtech and cybersecurity focused firm SlowMist released its MistTrack analysis on stolen funds, shedding light on persistent threats in the blockchain ecosystem. Drawing from 300 user-submitted reports—210 from domestic sources and 90 from international ones—the report underscores the evolving… Read More

Decline in Crypto Exploit Losses Marks Slight Positive End to 2025 : Research

The cryptocurrency sector experienced a significant respite in December 2025, with financial damages from hacks and exploits dropping more than 60% to approximately $76 million, according to a report from blockchain security firm PeckShield released on January 1, 2026. This figure represents a substantial reduction… Read More

Ongoing Crypto Wallet Drains Reportedly Hit EVM Chains as Major Security Concerns Persist

Blockchain investigator ZachXBT has recently raised alarms about a persistent exploit targeting numerous cryptocurrency wallets on the Ethereum Virtual Machine (EVM)-compatible networks. The attack, which continues to unfold, reportedly involves the unauthorized transfer of funds from hundreds of affected addresses / wallets, primarily in modest… Read More

Lingering Effects of Flow Blockchain Exploit Disrupt NFT Lending Market

The aftermath of the damaging December 27, 2025, security breach on the Flow blockchain continues to ripple through its volatile ecosystem, particularly affecting platforms that offer loans backed by non-fungible tokens (NFTs). While the Flow Foundation has emphasized that no direct user funds were compromised… Read More

Dormant Crypto Wallet Tied to Major DeFi Exploits Resurfaces, Liquidates Over $2 Million in Assets

An Ethereum (ETH) address reportedly connected to the perpetrators of the 2021 Indexed Finance exploit and the 2023 KyberSwap attack has sprung back to life after roughly a year of inactivity, reportedly dumping millions in cryptocurrency holdings. On-chain monitoring firm Lookonchain has now reported that… Read More

Security Breach Impacts Flow Blockchain : Investigation Underway Amid Crypto Token Plunge

In yet another concerning development for the web3 and cryptocurrency sector, the Flow Foundation recently revealed this past Saturday that it is probing a suspected security breach impacting its primary Layer 1 blockchain. This latest disclosure has led various South Korean cryptocurrency platforms to effectively… Read More

Trust Wallet Browser Extension Security Breach: Over $6 Million Drained from Users

On December 25, 2025, the cryptocurrency space was alerted to a major security issue affecting Trust Wallet‘s Chrome browser extension. On-chain investigator ZachXBT first raised the alarm via Telegram, highlighting numerous reports of unauthorized fund withdrawals from users’ wallets in a short timeframe. The wallet‘s… Read More

DeFi Breach : AMM Protocol Balancer Exploited via Smart Contract Vulnerability

Balancer—an automated market maker (AMM) protocol claiming over $750 million in total value locked (TVL)—suffered a security breach on November 3. Blockchain analytics firms like PeckShield and Lookonchain reported outflows exceeding $116 million across multiple chains, including Ethereum, Arbitrum, Base, Optimism, Polygon, and Sonic. The… Read More

Ledger CTO Warns Users to Halt Onchain Transactions Due to Potential Cyberattacks

On Monday, September 8, 2025, at 11:37 PM EDT, the cryptocurrency world was jolted by a stark warning from Charles Guillemet, Chief Technology Officer of Ledger, who urged certain users to halt onchain transactions due to a potentially devastating cyberattack. Guillemet’s announcement on X revealed… Read More

Term Finance Reportedly Recovers $1M After Oracle Error Triggers $1.6M Loss in DeFi Market

In a recent incident impacting the web3 and decentralized finance (DeFi) space, Term Finance, an Ethereum-based platform offering fixed-rate lending, reportedly recovered $1 million of the $1.6 million lost due to a misconfigured oracle in its Treehouse (tETH) market. The error is said to have… Read More

Solana based DeFi Protocol Loopscale Hit with Security Breach Leading to Nearly $6M Loss

Lost in Space Robot

Loopscale, a so-called decentralized finance (DeFi) protocol operating on the Solana blockchain, fell victim to a significant security breach, resulting in a loss of approximately $5.8 million. This amount represents 12% of the platform’s total value locked (TVL), which stood at around $40 million prior… Read More

Massive Ledger Security Event Impacted Numerous Crypto Apps, Industry Professional Provides Guidance for Securing Assets in Self-Custody

Jameson Lopp, co-founder and CTO at Casa, has shared key insights after the widely reported Ledger hack / security breach that appears to be impacting a large number of DeFi platforms and dApps, with some unconfirmed reports indicating major losses of crypto funds. Lopp, who… Read More

SlowMist Analysis of Crypto Address Spoofing Attacks Examines Web3 Platform’s Security Vulnerabilities in Smart Contracts

On December 5, 2023, thirdweb, a Web3 foundational development platform, reported security vulnerabilities in its pre-built smart contracts. As noted in a blog post by SlowMist, this issue affects all tokens “deployed using these pre-built smart contracts, including ERC20, ERC721, and ERC1155 tokens.” Based on… Read More

Curve Finance Vyper Code Vulnerability Leads to Major Hack Impacting Liquidity Pools: Chainalysis Report

On July 30, 2023, several liquidity pools on Curve Finance were exploited, resulting in approximately $70 million in losses and triggering panic within the DeFi ecosystem, the team at Chainalysis noted. In a blog post, Chainalysis also mentioned that these hacks occurred due to “a… Read More

Multichain Halts Operations as CEO Zhaojun’s Sister Now Detained by Chinese Authorities, Might Be Holding $220M of Funds

On May 21, 2023, Multichain CEO Zhaojun was taken away by the Chinese police from his home and has been out of contact with the global Multichain team ever since. As noted via social media, the team claims they contacted the MPC node operators and… Read More

Beanstalk Aims to Recapitalize Stablecoin Project with “Barn Raise” Offering to Community

  It was reported earlier this month that crypto startup Beanstalk was the target of an exploit that saw a theft of up to $180 million in value. Around the time of the Attack, the Bean team stated “We’re engaging all efforts to try to… Read More

CertiK Reports that Qubit Bridge Collapse was Exploited to the Tune of $80M

At 9:34PM UTC on January 27, 2022, a bad actor started their exploit of Qubit Finance’s Ethereum (ETH) to Binance Smart Chain (BSC) bridge. As noted in an update from CertiK, this particular exploit “ended up netting them 77,162 qXETH ($185 million), which they then… Read More

Hedera Network Not Affected by Critical Zero-Day Exploit in log4j2 Library, Developers Claim

On Thursday, December 9, 2021, a “critical” zero-day exploit was reported in the widely used log4j2 library. The exploit “did not affect the Hedera network,” the platform’s developers claim while noting that “out of an abundance of caution, the Hedera team addressed the issue on… Read More

Send this to a friend