GetChain News
中简 中繁 EN
GetChain News
Toggle sidebar

Security/Hacker

News linked to this event type.

Approximately 4,000 BTC transferred in a single transaction linked to Liquid Network, with an on-chain message calling it a "white hat" operation

Odaily News: According to Bitcoin News monitoring, out of 4,200 BTC associated with a peg-out transaction on the Liquid Network, approximately 4,000 BTC appear to have been moved simultaneously. A subsequent transaction included an OP_RETURN message stating: "We are white hats, please contact us on-chain." It remains unclear what the nature of this transaction is, and whether the funds were moved through an exploit.

Bitcoin fork asset BTCB2 once hit $1,799, with a fully diluted valuation of $20.9 billion calculated at a price of $1,000

Odaily News: Bitcoin fork asset BTCB2 hit an all-time high of $1,799 on September 5. Over the past 4 hours, its price has fluctuated between 750 and 1,000 USDC; the Neoxa USDC market recorded a 24-hour trading volume of approximately $1 million.BTCB2 originated from a chain split that occurred on August 8, 2026, at block height 961,632. The network subsequently changed its proof-of-work algorithm to Blake2 and reduced block size, and it can now be mined using Blake2-compatible ASIC miners.Neoxa Exchange and Nonkyc.io have listed BTCB2, with the former offering BTC, USDC, and USDT trading pairs, and the latter offering a USDT trading pair. Both platforms have limited liquidity, and CoinMarketCap and CoinGecko have not yet listed the asset.Based on a BTCB2 price of $1,000, its fully diluted valuation stands at approximately $20.9 billion. Since UTXOs need to be split from Bitcoin first, transactions may otherwise be vulnerable to replay attacks; the network's hash rate has risen by 30.41% over the past 7 days, reaching approximately 5.1 PH/s. (Bitcoin.com News)

Balancer V1 attack suspected to be ongoing, attacker has reportedly profited $250,000 so far

Odaily News According to on-chain detective Specter's monitoring, Balancer appears to have suffered a V1 attack. An attacker is continuously transferring funds and has profited $250,000 so far. The relevant address is 0x112...E0aE.

Jesse Pollak: X Account Hacked, Fraudulent Posts Removed and Control Restored

Odaily News, Base co-founder Jesse Pollak issued a statement on the X platform clarifying that his account was compromised. The attacker published a fraudulent token ticker through a third-party application connected to the account. Jesse stated that the related posts have been deleted, all third-party app connections have been removed, and full control of the account has been restored. He reminded users to stay vigilant.According to screenshots of the deleted posts, the attacker, after gaining control of Jesse Pollak's account, launched a token named BASEMEME, describing it as the "first Meme coin with real utility," while attaching a trading link to o1.exchange and the contract address. The Meme coin's market cap currently stands at $257,000.

Shivon Zilis' account suspected of being hacked, trader buys SLINK and loses approximately $250,000

Neuralink executive Shivon Zilis's X account was reportedly hacked, leading to the publication of two posts promoting the SLINK token. A trader subsequently bought approximately $250,000 worth of SLINK, nearly losing the entire investment as the token's price rapidly crashed to near zero.

G7 urges immediate migration to post-quantum cryptography; Bitcoin, Ethereum, and Solana developers have tested defense solutions

: The G7 cybersecurity working group stated in its latest report that quantum computing poses both a security threat and an economic threat to public and private institutions, and related organizations should immediately begin migrating to post-quantum cryptography (PQC).The working group noted that the migration process could take several years, as attackers can already collect and store encrypted data today and decrypt it once sufficiently powerful quantum computers emerge. Quantum computing could also break digital signatures, leading to identity theft and exposing companies and their supply chains.The report did not mention cryptocurrencies, but similar public-key cryptography is used for blockchain wallets and transaction authorization. Current quantum computers are not yet capable of breaking Bitcoin's cryptography, but developers are considering post-quantum solutions such as BIP-360.Ethereum researchers plan to replace multiple cryptographic components used by accounts, validators, and applications. The Solana Foundation has tested post-quantum signatures on its testnet and launched an optional hash-based vault. The G7 working group also urged governments to support related research, public-private cooperation, and national PQC strategies. (Decrypt)

Balancer sends on-chain message to V1 exploit hacker, demanding return of funds.

Balancer (@Balancer) officially announced that the Balancer team sent an on-chain message to known addresses involved in the Balancer V1 vulnerability incident on September 4. Following industry best practices, the message provides a contact channel for the hackers and requests the return of the stolen funds. The team stated that affected users are waiting for further updates, the investigation is ongoing, and related progress will continue to be disclosed.

At least 1,789 BTC stolen; Coldcard hacker begins swapping for ETH via THORChain, with approximately 10% of stolen BTC moved

Odaily News – According to Bitcoin News monitoring, hackers linked to the third wave of Coldcard wallet thefts have begun moving stolen funds for the first time, converting Bitcoin into ETH via THORChain. Galaxy Research's Alex Thorn stated that approximately 10% of the stolen BTC has been moved, while the remaining 90% remains untouched. The attacker reportedly encountered difficulties during the fund conversion, with multiple THORChain transactions being returned and retried. Researchers have traced the related swap activity to a new Ethereum address, which Alex Thorn noted has been shared with relevant authorities and cryptocurrency companies. Galaxy Research indicated that the broader Coldcard exploit has resulted in losses of at least 1,789 BTC across 8,865 addresses, valued at approximately $115 million based on prices at the time of the theft.

Term Labs hacker deposits 960 ETH cumulatively into Tornado Cash, latest deposit 400 ETH

Odaily News: Term Labs hacker deposited 400 ETH into Tornado Cash, bringing the cumulative total to 960 ETH.

SlowMist: iOS Safari DarkSword Attack Can Steal Wallet Inputs, Zero-Click Trigger with Six-Vulnerability Chain

Odaily News, According to a disclosure by the SlowMist security team, they have detected an attack campaign disguised as a free VPS service, specifically targeting iPhone Safari browsers running iOS versions 18.4 to 18.6.2. The attackers exploited a chain of six vulnerabilities codenamed DarkSword to form a complete attack sequence, covering WebKit remote code execution, sandbox escape, and kernel read/write operations. This allows them to access app container files and keychain data without user awareness, and record keyboard inputs while wallets such as imToken, TokenPocket, or TronLink are in the foreground.The SlowMist team stated that all six aforementioned vulnerabilities have been patched by Apple, and the current attack constitutes reuse of an n-day vulnerability chain. Merely visiting a malicious page does not directly prove that mnemonic phrases or private keys have been stolen, and device forensics is still required for confirmation. iOS/iPadOS users are advised to upgrade their systems to version 18.7.3 or 26.3 and above as soon as possible.

ZKsync Announces EraVM Security Upgrade, Phasing Out Legacy Execution Environment Over the Next 6 Months

According to the official ZKsync X account (@zksync), ZKsync has announced a security upgrade for its EraVM chain. Core measures include introducing an instant upgrade framework, extending the proving delay from 3 hours to 24 hours, and deploying a second prover, EraBender, to defend against AI-driven vulnerability attacks. Over the next six months, all Boojum/EraVM chains will gradually phase out the legacy execution environment, with each chain formulating and publishing its own transition schedule. Users who hold funds directly in EOAs do not need to take any action at this time. Users who hold funds through smart contracts such as multisigs, smart accounts, DEXs, and lending protocols must take action as required once the transition plans for their respective chains are finalized. The ZKsync Atlas chain remains unaffected by this upgrade.

OpenAI will provide $1 billion in cybersecurity subsidies

According to CoinDesk, OpenAI said it will provide subsidized access to the $1 billion Daybreak cybersecurity model over the next six months, along with training and technical support, to help organizations defend against AI-driven cyberattacks, including potential zero-day exploits. Daybreak is divided into two tiers, Blue and Red, tailored for routine defense and more sensitive cybersecurity tasks, respectively, with about 2,000 organizations already using it.

Notional Finance custody contract suspected hack, ~$1.7M in assets lost

According to PeckShieldAlert citing Specter's monitoring, Notional Finance's custody contract may have been exploited, resulting in approximately $1.7 million in DAI and USDC losses. The attacker has converted the stolen funds into 689.2 ETH and deposited them into Tornado Cash.

TectonicFi attacker address deposited 2,658.9 ETH into Tornado Cash.

PeckShieldAlert monitoring shows that an address flagged as the TectonicFi attacker has deposited 2,658.9 ETH into Tornado Cash, valued at approximately $6.65 million.

Vance Says Iran Conflict Is Not War, Urges Fed to Cut Rates

US Vice President Vance stated that the conflict with Iran is not a war, emphasizing that Iran must stop attacking merchant ships before negotiations can begin. He also publicly called for the Federal Reserve to cut interest rates, noting that the White House is pushing for lower rates.

Vance says he will not talk to Iran until it stops attacking merchant ships.

U.S. Vice President Vance stated that shipping in the Strait of Hormuz has returned to pre-conflict levels, but the U.S. will not engage in dialogue with Iran unless it stops attacking merchant vessels. No major combat operations are currently underway.

Argentine Prosecutor's Office Conducts Specialized Training on Crypto Asset Tracking and Confiscation

According to CriptoNoticias, Argentina's Public Prosecutor's Office (MPF) conducted a specialized training course titled "Virtual Assets: Financial Analysis, Tracking, Detection and Confiscation" via Zoom on August 19 and September 2, 2026, for internal staff, officials, and judges. Led by anti-money laundering specialist Carmen Chena, the curriculum covered digital wallet asset analysis, domestic and international legal frameworks, the cryptocurrency ecosystem, and practical case studies on preservation measures. Previously, Argentina's judiciary had already accumulated extensive experience in cryptocurrency-related cases, including the freezing of 3 million USDT in December 2024 and the 2022 ruling ordering Binance to return stolen BTC.

AI security company HiddenLayer closes $100 million Series B round, with Microsoft, Morgan Stanley, and others participating.

As reported by Securityweek, AI security company HiddenLayer has announced the completion of a $100 million Series B funding round. This round was led by Delta-v Capital, with participation from Booz Allen Ventures, Microsoft’s M12, Morgan Stanley, and Ten Eleven Ventures. To date, the company’s cumulative funding has exceeded $155 million. HiddenLayer specializes in full-lifecycle security for Generative AI, Predictive AI, and AI Agents. Its enterprise platform features capabilities including AI asset discovery, AI supply chain security, attack simulation, and runtime protection. The newly raised capital will be primarily directed toward expanding AI Agent runtime security capabilities, particularly for AI coding agents.

WEEX Hackathon Season 2 Opens Early Registration: First 2,000 Registrants Share 100,000 USDT Early Bird Prize Pool

Odaily News, September 3 — WEEX Exchange announced that the WEEX Hackathon Season 2, themed "AI Wars II: The Algorithm Era," is now officially live. Global AI developers, quantitative traders, Web3 builders, teams, and individuals are invited to join Team AI or Team Human to compete in five rounds of live market trading battles, vying for rankings and rewards based on PnL% performance. The total prize pool stands at 600,000 USDT, with multi-tiered incentives designed to accommodate different participation methods.The early registration phase runs from September 3 to 6, during which the first 2,000 registrants can share in the 100,000 USDT Early Bird prize pool. Additionally, users who register early can complete event tasks ahead of time to accumulate activity points for the upcoming competition.

LayerZero introduces the anti-MEV automated market maker mechanism OTTER

The LayerZero research team, in collaboration with Oblivious Labs and researchers from Carnegie Mellon University, has published a paper introducing OTTER, a novel automated market maker mechanism designed to enhance resilience against maximum extractable value (MEV). OTTER employs a batch clearing mechanism modeled after Vickrey-Clarke-Groves (VCG) auctions, making truthful reporting of valuations and budgets a dominant strategy for traders, while diminishing block builders' ability to profit from transaction ordering, sandwich attacks, or injecting false bids.