Tagged: exploit

On-Chain Researchers Share Insights after Crypto.com linked Cronos Network and Tectonic Security Incident

On August 30, Cronos stopped producing blocks after Tectonic, the network’s main lending market, was emptied through a price-and-borrow sequence rather than a novel contract bug. On-chain researcher Weilin Li first estimated about $66 million in damage, then raised the figure to roughly $75 million… Read More

L1 Blockchain Fogo Pauses Mainnet After 400 Million Tokens Leave Foundation Wallets

Fogo, a Layer 1 blockchain built around the Solana Virtual Machine, temporarily stopped mainnet activity after a security incident involving the project’s foundation. An unknown party gained access to foundation-controlled holdings and moved 400 million FOGO tokens to an external address. The transfer represents about… Read More

Cronos Blockchain Halts After Tectonic Exploit Leaves Most Funds Stranded On-Chain

The Cronos blockchain, the layer-1 network closely associated with Crypto.com, stopped producing blocks on Sunday, August 30, 2026, after an exploit hit Tectonic, the chain’s dominant decentralized lending protocol. Validators coordinated a full halt within minutes of detecting the incident, freezing transfers, bridges, and smart… Read More

DeFi Exploit : Moonwell Freezes Base Borrowing After $8.7M MAMO Price-Manipulation Incident

Moonwell, a lending protocol on Base, said on August 27, 2026 that it was looking into a problem in its MAMO Core Market and had taken emergency steps to stop new loans. In its official statement, the team said borrow caps for every Core Market… Read More

Coldcard Issues Enhanced Firmware Update Amid Ongoing Bitcoin (BTC) Theft Fallout

Coinkite, the Canadian firm behind the Coldcard Bitcoin hardware wallet, has rolled out a significant firmware upgrade in the wake of a major security incident that saw substantial amounts of Bitcoin drained from affected devices. The company is urging owners to act promptly, highlighting that… Read More

Ethereum based DeFi Lending Protocol Term Finance Suffers Setback as Governance Exploit Drains Millions from Vaults

The Ethereum-based fixed-rate lending platform Term Finance has suffered substantial losses after an attacker manipulated its governance system. Security researchers estimate the damage at around $8.5 million, with the majority of assets drained from the protocol’s specialized vault products on August 23, 2026. According to… Read More

Bitcoin Restaking Platform BounceBit to Wind Down L1 Blockchain Following Exploit

BounceBit, a Bitcoin restaking and yield platform, has announced the permanent closure of its independent Layer 1 blockchain. The decision follows a security incident in which an attacker exploited a protocol-level authorization vulnerability, transferring roughly 286.5 million BB tokens—valued at around $3 million at the… Read More

Maya Protocol Halts Operations After Multi-Bug Exploit Drains CACAO Tokens and Cross-Chain Assets

Maya Protocol, a decentralized cross-chain liquidity network that facilitates native swaps of assets such as Bitcoin and Ethereum without centralized intermediaries or wrapped tokens, experienced a major security breach in mid-August 2026. An attacker combined multiple software vulnerabilities to manipulate the protocol’s internal accounting, withdraw… Read More

Harmony Protocol Plans Network Rollback After Token Forgery Exploit, Raising Blockchain Immutability and Lack of Decentralization Concerns

Harmony Protocol, a layer-1 blockchain known for its sharded architecture, has announced plans to reverse its network to a state preceding a significant security breach. The decision follows the discovery of an unauthorized minting event that created trillions of forged ONE tokens, the project’s native… Read More

Dutch Cyber Agency Reports Attackers Exploiting macOS Screen Sharing Vulnerability to Deploy Monero (XMR) Miners

Hackers have been capitalizing on a critical flaw in Apple’s built-in remote desktop tool to seize control of internet-facing Mac computers and turn them into cryptocurrency mining machines. The Netherlands’ National Cyber Security Centre has confirmed active abuse of the issue, with attackers installing software… Read More

Harmony Devs Confirm Major Exploit Involving Unauthorized Creation of ONE Crypto Tokens

Developers behind the Harmony blockchain protocol have officially acknowledged a significant security breach that allowed the unauthorized generation of a large volume of additional ONE tokens, the network’s native digital asset. The confirmation comes after on-chain observers first highlighted unusual activity involving the sudden appearance… Read More

BTCPay Server Community Pledges Recovery Reward of Up to 3 Bitcoin (BTC) After Critical Vulnerability Was Exploited

Following a significant security breach affecting the open-source Bitcoin payment platform, members of the BTCPay Server community have stepped forward with a substantial incentive aimed at reclaiming lost assets. Supporters of the project have pledged a recovery bounty structured as 10 percent of any funds… Read More

Coinsbuy Crypto Wallets Hit by Cross-Chain Drain on Ethereum and TRON, Losses Near $8 Million

A significant security incident has struck Coinsbuy, a B2B cryptocurrency payment processing platform serving enterprises, merchants, and exchanges. On-chain investigators reported that wallets linked to the service were drained of approximately $7.9 million in assets spanning the Ethereum and TRON networks. #PeckShieldAlert Specter has reported… Read More

Microsoft Identifies Malware Threat Using BNB Chain Smart Contracts to Hide Attack Commands

Microsoft Threat Intelligence has identified a widespread malware campaign that stores and retrieves attack instructions via smart contracts on the BNB Chain. The operation affects thousands of Windows systems daily, spanning both corporate networks and individual users. Researchers describe the approach as EtherHiding, in which… Read More

Ethereum Cross-Chain Bridge of Verus Protocol Exploited, $7.44 Million Drained via Notarization Mismatch

Blockchain security firm CertiK has noted that on July 23, 2026, an attacker successfully targeted the Ethereum cross-chain bridge of the Verus Protocol, extracting roughly $7.44 million in assets that included ETH, tBTC, various stablecoins, and MKR. The exploit hinged on a fundamental difference in… Read More

DeFI Exploits : Crypto Hacker Spends $4M to Drain $20M from BonkDAO’s Treasury, No Smart Contract Failed

Immunefi indicated that a recent incident involving BonkDAO highlights a troubling shift in how digital assets are being compromised. An individual invested approximately $4 million to acquire sufficient voting power, enabling the passage of a malicious governance proposal during a period of limited participant engagement…. Read More

Triple-A Crypto Hot Wallet Losses Surge as New Deposits Continue to be Drained

On-chain investigator Specter has reported that losses tied to compromised hot wallets associated with Singapore payments firm Triple-A have risen further, reaching an estimated $11.8 million. This marks an increase from the more than $9.3 million initially identified late Friday. Specter first publicly highlighted the… Read More

AFX Trade Suffers Bridge Exploit on Arbitrum, Draining Over $24 Million in Stablecoin USDC 

In a recent setback for DeFi ecosystem participants active on Arbitrum, the perpetuals trading platform AFX Trade experienced a substantial security breach targeting one of its proprietary bridges. Blockchain security firm Blockaid first identified the incident around 21:30 UTC on July 22, 2026, reporting that… Read More

South Korean Financial Regulator Advances Sanction Proceedings Against Dunamu, Upbit’s Parent Company, Months After Major Security Incident

South Korea’s Financial Supervisory Service (FSS) has formally launched the sanction process against Dunamu, the operator of Upbit, the nation’s largest cryptocurrency exchange by trading volume. The regulator recently delivered an inspection report to the company regarding last year’s significant hacking event, marking the first… Read More

Zilliqa Blockchain Dev Team Alerts Ecosystem to Security Breach at Exchange Partner’s Offline, Cold Storage Wallet

On July 20, 2026, the Zilliqa blockchain team disclosed a notable security event affecting one of its centralized exchange collaborators. Tokens of the project’s native cryptocurrency, ZIL, were taken from an offline cold wallet managed by the partner. The project has launched a thorough probe… Read More

Send this to a friend