GetChain News
中简 中繁 EN
GetChain News
Toggle sidebar

Security/Hacker

News linked to this event type.

Drift hacker transferred 23,000 ETH into Tornado Cash, worth approximately $44.4 million

According to on-chain analyst PeckShield (@PeckShieldAlert), the address labeled "Drift Exploiter" has deposited 23,095.1 ETH (approximately $44.4 million) into Tornado Cash for mixing, and additionally transferred 0.85 ETH to Bybit.

Robinhood CEO's X Account Hacked, Fake Meme Coin Information Deleted

According to The Block, Robinhood CEO Vlad Tenev's X account was hacked at approximately 17:24 UTC on July 23. Hackers posted claiming to launch "Vladhood ($VLAD)" as the "official mascot of Robinhood Chain," and attached a contract address. The Robinhood Chain blockchain explorer has labeled the token as a "potential scam," and the token has generated approximately 1,868 transactions since deployment. Robinhood officially confirmed later that the account was compromised, the relevant posts have been deleted, and the company is working with the X platform to restore account access.

Robinhood CEO Vlad Tenev's X account was hacked

Odaily Planet Daily reported that Onchain Lens stated on the X platform that Robinhood CEO Vlad Tenev's X account was hacked.

Specter: Malicious EIP-7702 Signature Attack Results in $2.96M Loss for PancakeSwap LP

on-chain security analyst Specter has detected that a long-dormant PancakeSwap liquidity provider (LP) suffered a loss of approximately $2.96 million after signing a malicious EIP-7702 authorization. It is reported that the attacker removed approximately $1.48 million in BSC-USD and $1.48 million in BUSD liquidity provided by the victim, subsequently swapping the BUSD for ETH. Currently, the attacker has deposited approximately $1.46 million into Tornado Cash, while the remaining $1.48 million in USDT remains in the attacker's address.

CZ: Regrets BitMEX Didn't Survive the "War on Crypto"

CZ expressed regret over BitMEX's closure announcement, recalling that BitMEX pioneered the 100x leveraged perpetual contract in the crypto market in 2014, driving industry development.CZ noted that BitMEX only supported BTC deposits and single-chain operations at the time, and adopted a once-daily, multi-signature wallet batch withdrawal process. These seemingly inconvenient designs, he said, actually helped the platform avoid hacker attacks over the long term.He also mentioned that BitMEX's four co-founders admitted to violating the Bank Secrecy Act (BSA) one month before their trial, each being fined $10 million and sentenced to home detention, with no prison time. However, CZ believes that BitMEX's business ultimately couldn't withstand the "War on Crypto" during the Biden administration.In conclusion, CZ stated that BitMEX is currently winding down in an orderly fashion, users can still withdraw assets, and he paid tribute to co-founder Arthur Hayes.

Taiko: Attack Resulted from Off-Chain Signature Key Leak and Verification Process Gap

Odaily News: Ethereum Layer 2 network Taiko released a post-mortem of the June 21 security incident, stating that the attack resulted from an off-chain signature key leak and a verification process gap. The attacker exploited these to forge proofs and bypass the Prover whitelist, rather than breaking ZK cryptography or smart contracts. The attacker stole approximately $1.75 million from cross-chain bridges and Vaults, but over $11 million in assets were protected, and no user funds were lost. Taiko has fixed the vulnerability, restored the pre-attack state, and resumed operation on July 2; an OpenZeppelin audit confirmed the fixes with no high, medium, or low-risk vulnerabilities identified. The official statement also indicated that the Unzen upgrade, scheduled for August 6, will require ZK proofs for every block to further enhance network security.

2026 Q2 Web3 Security Incidents: $764 Million Stolen, 88.3% from Compromised Keys and Infrastructure

According to the quarterly Security and Compliance Report by Hacken, 67 security incidents in the Web3 space resulted in losses of $763.9 million in Q2 2026, making it the most severe quarter since Q2 2025. Compromised keys and infrastructure accounted for 88.3% of the stolen funds, approximately $674.5 million. Smart contract vulnerabilities remained the most common type of attack, linked to 44 out of the 67 incidents, but corresponding losses represented only about 11% of the total. Approximately 75.5% of the losses stemmed from two incidents attributed to North Korean threat actors, and 14 audited protocols were breached during the quarter. Leo Fan, founder of Cysic, stated that an audit is a point-in-time assessment of a specific codebase and does not automatically cover signature devices, cloud infrastructure, operational permissions, subsequent upgrades, third-party dependencies, or old contracts that remain callable. Samuel Videau, CTO of Genius, pointed out that nearly 90% of losses came from compromised keys, signers, and infrastructure. Multiple security leaders noted that Web3 security requires layered defenses including real-time monitoring, key management, multi-party authorization, and bug bounty programs. Leo Fan expects that operational access control attacks will continue to dominate losses in the second half of 2026, including social engineering, credential theft, compromised signers, cloud or CI/CD intrusions, and attacks on off-chain validator infrastructure.

Drift Protocol $285M Attacker Moves Funds via Tornado Cash After 3-Month Dormancy

that, according to Onchain Lens monitoring, after a $285 million attack on Drift Protocol on Solana in April, the attacker has begun moving funds through Tornado Cash following a 3-month dormant period. The attacker is rapidly depositing ETH into the Tornado Cash Router in batches of 100 ETH, with multiple transactions occurring per minute.

Today, the crypto industry has experienced 3 security incidents, with cumulative losses of approximately $35.55 million.

According to Lookonchain statistics, 3 security incidents have occurred in the crypto industry today, with cumulative losses of approximately $35.55 million. Among them, AFX Trade was attacked with losses of approximately $24.15 million, Verus's Ethereum cross-chain bridge was attacked with losses of approximately $7.55 million, and B² Network was attacked with losses of approximately $3.86 million.

VerusCoin Ethereum Cross-Chain Bridge Attacked, Approximately $7.53 Million Transferred Out

According to CertiK Alert monitoring, a security incident occurred on VerusCoin's Ethereum cross-chain bridge, with approximately $7.53 million in assets transferred out. Preliminary analysis indicates that this issue may be related to the cross-chain bridge failing to sufficiently verify whether the Verus chain-side input supports the paid amount, similar to an incident that occurred in May this year.

U.S. Treasury Secretary: If Chinese Companies Engage in Refinement Attacks to Steal Intellectual Property, Sanctions and Entity List Designation Will Be Considered

Treasury Secretary Scott Bessent posted on the X platform, expressing support for open-source AI and the innovation it brings, but emphasized that open-source is not an excuse for arbitrarily infringing upon U.S. intellectual property rights. If Chinese companies conduct covert, industrial-scale refinement attacks that cross the line into intellectual property theft, consideration will be given to imposing sanctions and placing them on the entity list.

B² Network suspected of being exploited, attacker transfers 8.591 million B2

: According to on-chain detective Specter’s monitoring, B² Network may have suffered a vulnerability exploit on BNB Chain. The attacker transferred 8.591 million B2, worth $3.86 million, and exchanged them for 5,409 WBNB, worth $3.11 million. The funds were then bridged to Ethereum, and are currently being transferred to Zcash via NEAR Intents. The addresses used for the theft are 0xEc443f7D79835B464FBEAC798d3f92B62d6Ff433 and 0xf977427Ec8e583C55D413061FC205BCD57e8Bf6D.

B² Network Suffers Hacker Attack, Losses Approximately $3.86 Million

According to on-chain analyst Specter, B² Network on BNB Chain suffered a hack, resulting in a loss of approximately 8.591 million B2 tokens (approximately $3.86 million). The attacker swapped them for 5409 WBNB (approximately $3.11 million) and bridged to Ethereum, and is currently transferring the funds to Zcash via NEAR Intents.

Arbitrum ecosystem protocol AFX cross-chain bridge attacked, approximately 24.15 million USDC lost

据 Blockaid 监测,Arbitrum 生态协议 AFX 于北京时间 7月 23日 5:30 遭攻击。此次攻击针对 AFX 运营的跨链桥,迄今已导致协议约 2415 万枚 USDC 被转移。Blockaid 称,正与 Arbitrum 团队协作响应事件,并协助相关协议控制被盗资金风险。

CertiK:2026 年上半年针对数字资产持有者的扳手攻击共记录 52 起,同比增长 33%

据彭博社报道,区块链安全公司 CertiK 最新报告显示,2026 年上半年全球针对数字资产持有者的暴力"扳手攻击"(即以人身威胁强迫受害者交出加密货币)事件共记录 52 起,同比增长 33%。其中法国以 33 起攻击案例独占近三分之二,成为全球最严重的受害国。报告指出,加密犯罪分子的攻击目标正从数字钱包转向现实中的持币个人,暴力手段日趋普遍。

CertiK Report: Wrench Attacks Surge Nearly 12x in Losses, “Operational Security” Becomes New Core of Prevention

Odaily Odaily News, July 22nd - Web3 security firm CertiK released its "H1 2026 Wrench Attack Report." The report indicates that a total of 52 publicly verified wrench attacks were recorded globally in the first half of 2026, a year-over-year increase of 33.3%; related losses amounted to approximately $124 million, an increase of about 11.8 times compared to the same period last year.The report notes that attackers are shifting from exploiting technical vulnerabilities to targeting asset holders and their real-world social networks. Home invasion incidents increased from 1 case in H1 2025 to 20 cases, accounting for 41% of the total incidents in the period. Europe has become a high-incidence area for attacks, with 33 cases occurring in France alone, representing 63.5% of the global total.CertiK stated that as real-world risks become a significant challenge for digital asset security, enterprises and high-net-worth individuals need to establish more comprehensive protection systems. CertiK has launched operational security services to help identify exposure risks related to identity, family, residence, and travel routes. Simultaneously, through the CertiK Security Workspace, it correlates off-chain intelligence, on-chain transactions, and AML risk signals to support institutions in tracking and analyzing cybercrime activities. Furthermore, CertiK is strengthening cooperation with international law enforcement agencies such as Interpol and Europol, providing technical support for cross-border attack investigations and security policy research.

Wanchain cross-chain bridge vulnerability leads to 290 million NIGHT tokens withdrawn; NIGHT recovers nearly 19% in 24 hours

Wanchain’s cross-chain bridge suffered a vulnerability attack on Monday, resulting in the withdrawal of 290 million NIGHT tokens. The price of NIGHT briefly dropped approximately 43% to an all-time low, before partially recovering nearly 19% within 24 hours. Charles Hoskinson stated that the issue originated from an outdated cross-chain bridge architecture built by a third party, and that AI-driven vulnerability discovery is accelerating the exposure of vulnerabilities across all software, not limited to the crypto space. He believes that zero-knowledge systems such as Midnight are long-term solutions, which can replace trust in cross-chain bridge operators and multi-signature mechanisms with cryptographic proofs.

Native transactions have been suspended; a legacy vulnerability from 2019 exists in the Zilliqa Ledger application

Zilliqa has stated there is a critical vulnerability in its Ledger application that has existed since 2019, causing private keys used for native ZIL transactions to be susceptible to recovery attacks. At present, native transactions have been suspended, and relevant parties are working on a coordinated fix. EVM transactions are not affected.

Cardano wallet SecondFi announces shutdown after hack attack

According to CoinDesk, the Cardano wallet SecondFi was attacked due to a vulnerability in its transaction signing software. A total of 16.1 million ADA (approximately $2.4 million) across 374 wallets was stolen, and the platform has announced permanent closure. The vulnerability allowed attackers to derive private keys from transaction data visible on-chain. The Cardano network itself was not affected, nor were hardware wallet users. An investigation by Groom Lake, a blockchain intelligence company hired by EMURGO, revealed that the primary attackers were sophisticated and well-funded. Some indications point to North Korea's Lazarus Group, but this has not yet been officially confirmed. SecondFi plans to release a wallet export tool in early August and launch a zero-knowledge recovery portal later in the month. EMURGO has established an asset recovery wallet, with the specific distribution time to be determined.

GoPlus and Salus Officially Join TermiX Agent.family, Launching On-Chain Security Audit Provider Agent Services

: BNB Chain Agent commercial clearing layer TermiX announced that Web3 security infrastructure GoPlus and smart contract security auditing firm Salus have officially become Provider Agents on the Agent.family platform. They have launched two production-grade security audit services, promoting the autonomous invocation and settlement of "security capability as a service" for AI Agents in on-chain commercial scenarios.GoPlus has packaged its verified token contract deep scanning capability as a standard Provider Agent service. DeepScan conducts comprehensive security checks on token contracts, identifying risk patterns such as Rug Pulls, honeypot scams, contract permission abuse, and trading restrictions, and generates structured audit reports.Salus has launched smart contract auditing and penetration testing services, encompassing formal verification, fuzz testing, machine learning-based vulnerability detection, and manual expert auditing. It covers high-risk vulnerability categories such as reentrancy attacks, access control issues, integer overflows, and DoS attacks. Salus, a seed-stage investment from Binance Labs, is a core security partner within the BNB Chain ecosystem.