News linked to this event type.
on-chain detective ZachXBT disclosed in a personal channel post that a whale suspectedly suffered an asset theft a few hours ago, with approximately 180,900 SOL (worth about $14.2 million) being abnormally transferred. ZachXBT stated that he collaborated with another on-chain security analyst, Specter, to analyze the related transactions, identifying unusual unstaking activities and fund transfers from the Solana network across to Ethereum. It is reported that the address belongs to one of Solana's early participants and is associated with the Genesis block allocation. This unusual operation involves a large amount of SOL assets. The specific attack method, destination of the funds, and whether it was due to a private key leak have not yet been confirmed.
Regarding the previous incident where Gate user assets were stolen, on-chain detective ZachXBT stated that the relevant funds have been transferred to an address associated with the crypto escrow platform Xinbi (0xff9c...35fb8), and tracking the flow of funds can no longer help the victims.
According to The Block, Ledger's security research team Donjon disclosed a security vulnerability in Tangem hardware wallet cards. After obtaining the physical card, attackers can use laser fault injection equipment to bypass recovery state verification in the firmware and reset the password, thereby controlling the wallet and initiating transactions. The research states that this vulnerability affects all Tangem cards currently in circulation, and since the product does not support firmware updates, it cannot be fixed via patches.
according to CertiK's monitoring, CodexField's X account and website have been taken offline. Earlier, on-chain analyst Specter had warned that the project might be a scam and exit scam, and tracked abnormal cross-chain fund transfers totaling over 17.3 million USDT.
prosecutors from Wisconsin and New York have expressed dissatisfaction with stablecoin issuer Circle, as the company has repeatedly refused to cooperate with law enforcement agencies in recovering stolen funds.According to the report, multiple law enforcement agencies had requested Circle to help victims of fraud and hacking incidents recover their losses by burning and reissuing USDC. However, Circle declined these requests based on its own policy stance.Circle stated that modifying the blockchain ledger to reverse transactions would undermine the fundamental properties of the USDC stablecoin and could set a dangerous precedent for the entire crypto industry. This incident highlights the conflict between the immutability of blockchain and the need for law enforcement to recover assets. (Protos)
an Immunefi report shows that in the first half of 2026, crypto projects suffered cumulative losses of approximately $972 million from 207 hacker attacks. The number of attacks reached a record high, but total losses remained under $1 billion and were less than half the scale of losses in the first half of 2025. The report notes that DeFi attack losses have dropped by 74% from their peak of $2.62 billion in 2022, falling to approximately $680.3 million, with the median single-loss amount declining by 75% over the same period. Furthermore, the source of risk is shifting from purely smart contract vulnerabilities towards infrastructure failures, private key leaks, cross-chain configuration errors, and weaknesses in privileged access.
researchers from the Ethereum Foundation Protocol Security team said in a blog post on Thursday that they have deployed a series of AI agents to test the software relied upon by Ethereum, searching for vulnerabilities in encryption systems, protocol code, and smart contracts. The vulnerabilities discovered by the AI agents include a remotely triggerable panic issue in the libp2p gossipsub peer-to-peer layer used by Ethereum consensus clients. The issue has been fixed and disclosed on Github as CVE-2026-34219. Researchers stated that the AI agents are organized into specialized roles such as reconnaissance, search, patching, and verification, used to find potential attack paths, reproduce faults, and verify their applicability to production code. The Ethereum Foundation stated that AI has not replaced security researchers but has changed the way they work, enabling the team to cover far more scope than manual review. However, it requires researchers to exercise more careful judgment when evaluating a large number of seemingly credible conclusions. (Decrypt)
According to The Block, the Securities and Futures Commission of Hong Kong (SFC) issued a circular requiring licensed virtual asset trading platforms and internet brokers to stop using one-time passwords (OTP) for user login and device binding within 12 months, and instead adopt stronger authentication methods such as passkeys (Passkey) and device binding. This move stems from deception attacks accounting for up to 57% of Hong Kong cybersecurity incidents in 2025. The SFC also requires all institutions to establish monitoring systems for suspicious logins, transactions, and withdrawals, and promptly notify customers of unusual account activity; large brokers must implement the new authentication measures immediately. The SFC emphasized that if internal control deficiencies within an institution lead to customer losses, relevant parties will be held accountable.
Gate issued an announcement regarding the recent "user asset theft incident," sharing internal comprehensive verification results, analysis of the incident's cause, and progress on subsequent handling. Regarding the verification process and key facts, the announcement stated that after comprehensive verification, materials submitted by the applicant at the time, including account information, real-name information, transaction records, Alipay screen recordings, etc., matched the account completely. According to analysis by the technical team, Alipay screen recordings can only be made by the customer themselves or someone with access to the customer's Alipay account. Alipay possesses an extremely strict real-time risk control system; logging into Alipay on a different device will mandate multi-factor authentication. This indicates a situation involving serious leakage of customer information or device compromise. Regarding the Gate platform audit mechanism, the announcement stated that the Company's security unbinding audit mechanism strictly executes the four-fold verification process of "Multi-channel advance notification + System risk control preliminary screening + Manual multi-layer review + Time protection," and never has nor will it approve any security item change application based on a single material alone. Gate always takes information security and customer data protection as the Company's core management requirements. The issue of internal information leakage mentioned by some parties does not exist. Regarding fund recovery and subsequent handling, the announcement stated that Gate processed the matter with the highest priority immediately after the incident occurred, coordinating security, compliance, legal, business, and other teams to carry out on-chain analysis and asset tracking and freezing. It continues to coordinate with third-party institutions such as Tether to advance fund freezing. Subsequently, it will also actively cooperate with judicial authorities in investigations and data collection. Any substantive progress will be communicated immediately.
According to Fortune, DeFi asset management and risk analysis company Gauntlet completed a $125 million financing round, exclusively invested by Japanese financial group SBI Holdings. The financing was completed in June this year, and the specific valuation was not disclosed. This is Gauntlet's largest financing round since its establishment in 2018, far exceeding its $24 million Series B round in 2022 led by Ribbit Capital at a $1 billion valuation. Gauntlet was founded by former Wall Street quantitative trader Tarun Chitra. It initially focused on providing stress testing and vulnerability analysis services for DeFi protocols. Later, as the DAO governance model waned, it gradually transitioned to a "treasury curation" business—assessing yield strategy risks through quantitative analysis to help institutional investors manage digital asset allocation. Currently, its clients include asset management giant Apollo, Coinbase, and stablecoin issuer Circle.
According to official sources, TAC issued a statement regarding the significant price drop in the past 24 hours, stating that the protocol was not attacked, on-chain assets are secure, and the system is operating normally; the team and early investors did not participate in the sell-off, relevant tokens remain in the lock-up and vesting period, and there is no possibility of unlocking at this stage.
Odaily Odaily News According to Onchain Lens monitoring, on July 6, the Summer.fi attacker wallet (0x7BF...b3bdca) received 6.017 million DAI from the Summer.fi attack incident; subsequently, 1.35 million DAI have been transferred, swapped for ETH via Uniswap, and then sent to Tornado Cash through a second wallet (0x46e...eba7). The original wallet still holds approximately 4.67 million DAI, while the second wallet still holds 50 ETH.
According to PPP Prediction Market Tool monitoring, the probability of "WTI crude oil rising to $80 by July 2026" on Polymarket has reached 47%, up 28% in 24 hours.Trump stated today that he may launch a large-scale attack on Iran. As the 60-day ceasefire agreement between the US and Iran becomes precarious, oil tanker traffic through the Strait of Hormuz has "basically come to a standstill." Kpler senior oil analyst Navin Das stated that since the US and Iran reached a 60-day ceasefire agreement on June 17, the average daily number of tankers passing through has been approximately 32. This figure is nearly three times the average daily traffic between the outbreak of the conflict (February) and the signing of the agreement on June 17, though still far below pre-war levels.Join the PPP Signal Push Community to stay ahead and seize the opportunity.
: In response to the online rumor of "Gate being hacked for 1.7 million", the platform's founder and CEO, Dr. Han, posted a tweet saying: "The whole story is here. Some controversies become clear after you read it." Previously, the official Gate account had already released a full disclosure and review of the incident.
Gate 华语官方 X 账号发文披露,针对网传"Gate 被盗 170 万美元"事件,Gate 官方对完整操作时间线进行了还原。7月 4 日至 6 日期间,涉事账户通过活体人脸验证、历史交易记录核验等多重身份验证,完成了手机解绑、谷歌验证码重置、登录密码及资金密码修改等操作;7月 7 日,该账户在一台历史老设备上通过旧 Passkey 登录,随后经全面身份验证完成 5 笔提现,共涉及约 49.96 ETH、746,475 枚 HSK 及 1,565,982 枚 USDT;7月 8 日,用户方才向客服反馈资产被盗。Gate 强调,所有操作轨迹均来源于平台后台完整留存数据,可溯源核验,目前全站用户资产及账户安全。
Gate has responded on platform X to alleged user asset theft, stating: "The incident shows that the customer initiated withdrawal operations between 15:00-16:00 (UTC+8) on July 7, and reported the fund loss to online customer service at 17:00 (UTC+8) on July 8. Gate immediately activated its verification mechanism. The matter is currently under urgent investigation. Initial assessment indicates an isolated case with no system security vulnerabilities, and the website is operating normally."According to preliminary checks, the possibility of user information leakage cannot be ruled out in this incident, and the specific circumstances are still under investigation. Gate will disclose details of the event as soon as the investigation is concluded.Additionally, during the dissemination of related information, unverified content has been widely shared. We urge netizens to maintain their ability to discern credible sources.Finally, we remind all users to log in through official channels and enable two-factor authentication to ensure fund security. Protecting user asset security has always been Gate's top priority."
According to The Block, BNB Chain is building a new Layer 1 blockchain designed specifically for agent trading, targeting transaction pre-confirmation in under 50 milliseconds, and suppressing MEV behaviors such as sandwich attacks by eliminating the public mempool (adopting the TxStream mechanism). The new chain will also reserve block space for oracles, liquidations, and cross-chain bridges via PriorityLane, with a designed throughput target exceeding 100,000 TPS, and supporting sub-second block finality. This chain will become the fourth chain in the BNB Chain ecosystem, connected to BNB Smart Chain via a native bridge, with BSC serving as the settlement hub. The testnet is planned to launch at the end of 2026, and the mainnet is expected to deploy in early 2027.
BNB Chain is developing a new Layer 1 blockchain designed for Agentic Trading, releasing the first detailed architectural information after months of research and development. According to BNB Chain's disclosed technical roadmap for the second half of 2026, the new chain will run in parallel with the existing BNB Chain ecosystem, targeting transaction preconfirmation times of less than 50 milliseconds. The goal is to deliver an execution experience close to that of centralized exchanges (CEX) while retaining the advantages of on-chain self-custody and transparency.In terms of technical architecture, the new chain will remove the traditional public mempool and introduce a transaction transmission mechanism called "TxStream," which directly sends transactions to block producers to reduce latency and minimize MEV extraction behaviors such as sandwich attacks. (The Block)
Secret Network 团队提议将隐私区块链从 Cosmos 迁移至 Arbitrum,称 AI 使旧代码更易被攻击的安全风险及生态流动性下降是主要考量。
According to official sources, Summer.fi released a post-mortem stating that on July 6, the attacker manipulated the share prices of two Lazy Summer USDC vaults by injecting overvalued Silo tokens into an offline Ark still included in the NAV, and extracted approximately $6.04 million in a single atomic transaction.