GetChain News
中简 中繁 EN
GetChain News
Toggle sidebar

Security/Hacker

News linked to both this project and an event.

Project Eleven Launches Bitcoin Wallet Ownership Proof Solution for Post-Q-Day Era

security firm Project Eleven has introduced a post-quantum proof technology designed to help users prove ownership of their Bitcoin wallets after quantum computers become capable of deriving private keys and generating valid signatures. Project Eleven CEO Alex Pruden stated that the technology utilizes the wallet's key derivation path, enabling users to prove control without disclosing the parent key, thus distinguishing legitimate owners from attackers. The solution was developed in collaboration with Jim Posen, a primary maintainer of the open-source Binius zero-knowledge proof system, and is based on the "signature lifting" technique proposed by Alon Sattath and Robert Wyborski. Project Eleven noted that the prototype has not yet been audited and requires blockchain protocol support before it can be deployed. It is primarily aimed at users who miss the window to migrate to quantum-resistant addresses in the future.

São Paulo State Court Orders Coinbase to Refund Nearly $100,000 to User Affected by Self-Custody Wallet Theft

Odaily reports: A court in the state of São Paulo, Brazil, has ordered Coinbase to refund nearly $100,000 to a user who claimed funds deposited in their Coinbase Wallet disappeared in an unauthorized transaction. Coinbase argued that the private keys to the wallet were entirely under the user's control. However, it failed to prove that the transaction was initiated by the wallet holder or that adequate security measures were in place to prevent the incident. The court ruled based on relevant provisions of the Consumer Protection Code and ordered Coinbase to return the full amount plus statutory interest. (Bitcoin.com News).

David Bailey: "BIP-110 Failure" Strengthens Bitcoin Resilience, Consensus Mechanism Undergoes Stress Test

David Bailey, Chairman and CEO of Nasdaq-listed Bitcoin treasury company Nakamoto, stated that the failure of the so-called long-standing "BIP-110" controversy constitutes an "extremely bullish" outcome for Bitcoin, and believes this further validates the network's attack resistance and anti-splitting capabilities.

hinkal will fully compensate user funds, confirming approximately 797,000 USDC was extracted by an attacker and swapped for 454 ETH

decentralized privacy protocol hinkal has released an update on a security incident, confirming that an attacker extracted approximately 797,000 USDC from its Ethereum contract through a series of transactions and exchanged it for about 454 ETH. Of this, roughly 410 ETH was subsequently transferred to Tornado Cash, while the remaining approximately 44.67 ETH was bridged to the Bitcoin network via THORChain. hinkal is currently collaborating with an external security team to trace the flow of funds.hinkal stated that the impact of this security incident is limited to the relevant fund pools on the Ethereum chain, and contracts on other chains remain unaffected. However, all contracts have been temporarily suspended for fixes and security verification. All affected users will be fully compensated at a 1:1 ratio, with specific compensation procedures and timelines to be announced in a subsequent update.

OKX Star: Will Donate No Less Than 1 BTC to the First "One-Person Company" Achieving an Annual Income of $1 Million on OKX.AI

: OKX founder and CEO Star stated in a post on X that the first "one-person company" (OPC) to achieve an annual revenue of $1 million on OKX.AI will receive a personal donation of no less than 1 BTC. Star noted that every major technological revolution gives rise to a new generation of entrepreneurs and believes that the AI era will create millions of "one-person companies."It is reported that the OKX.AI Genesis Hackathon has been launched, allowing developers to build Agent Service Providers (ASP) on the OKX.AI platform. The event features a total prize pool of $100,000, aimed at encouraging AI Agent projects with real demand scenarios and practical use value, driving the implementation of the Agent economy.

Fidelity refutes claims that Bitcoin’s security declines post-halving, stating miners’ revenue increases as Bitcoin price rises.

According to Cointelegraph, Fidelity Digital Assets has rebutted concerns in a new research report that Bitcoin’s long-term security will deteriorate as mining rewards decline, asserting that the network’s economic incentives remain sufficient to secure the blockchain over the long term. Authored by Fidelity research analyst Daniel Gray, the report reiterates that Bitcoin’s security depends not only on block rewards but also on transaction fees and market-driven economic incentives, which will continue to motivate miners to protect the network—and render sustained attacks prohibitively costly. The report challenges a longstanding critique that Bitcoin’s security is weakened every four years by the halving event, which reduces new coin issuance. It notes that since April 20, 2024, Bitcoin miners have received a subsidy of 3.125 BTC per block—down from 6.25 BTC in the previous halving cycle—but this reduction in issuance has not translated into diminished miner incentives, as Bitcoin’s price appreciation has more than offset the decline in block rewards. Gray points out that average daily miner revenue has surged from approximately $26,300 during Bitcoin’s first halving cycle to over $40.2 million today. The report also notes that although Fidelity views the long-term incentive structure as sound, many publicly listed mining companies are currently facing financial pressure, with some diversifying into artificial intelligence and high-performance computing. VanEck recently

Standard Chartered Bank: Aave is expected to rise to $3,500 by 2030, an increase of approximately 50x from its current price.

According to CoinDesk, Geoff Kendrick, Head of Digital Asset Research at Standard Chartered Bank, released a report initiating coverage of the decentralized lending protocol Aave, with a target price of $3,500 by end-2030—approximately 50 times its current price of around $70—and expects Aave to outperform both Bitcoin and Ethereum. Kendrick stated that Aave has recovered from the April 2026 KelpDAO rsETH bridge vulnerability incident, during which attackers used approximately $290 million worth of stolen tokens as collateral to borrow real assets on Aave, exposing the protocol to up to $230 million in potential losses. Assets have now begun flowing back onto the platform, and Aave’s dominant position in on-chain lending remains solid. Looking ahead, Standard Chartered forecasts that the value of tokenized assets actively used in DeFi applications will grow 37-fold by 2030. Aave—whose revenue model is directly tied to lending activity—is poised to benefit directly. Additionally, Aave’s Horizon initiative (enabling tokenized real-world asset lending in permissioned environments) and the potential relaunch of its token buyback program are viewed as key catalysts.

Opinion: Trump Signs Quantum Security Executive Order, Potentially Boosting Bitcoin Post-Quantum Security R&D

US President Trump signed two executive orders on Monday aimed at accelerating the nation's quantum computing capabilities and advancing the migration of government systems to post-quantum cryptography. While the orders do not directly mention Bitcoin, industry insiders believe this could benefit blockchain post-quantum security research and development.The two executive orders focus on defending against advanced cryptographic attacks and driving the frontier of quantum innovation. This includes a clear timeline: advancing quantum sensor construction by September 2028, and requiring federal high-value assets and high-impact systems to complete their post-quantum cryptography migration by the end of 2031.Alex Pruden, CEO of Project Eleven, stated that this means the US government will allocate funds and time to achieve post-quantum security goals. It may also extend these requirements to the entire federal contractor system, not just government agencies, thereby accelerating the practical application of post-quantum cryptographic technology.This policy comes amid growing attention within the blockchain industry to quantum threats. The Ethereum Foundation, Solana Foundation, and others have already begun advancing post-quantum security R&D, while the Bitcoin community is also discussing potential risks. Some Bitcoin held in publicly exposed addresses is considered vulnerable to private key derivation attacks once sufficiently powerful quantum computers emerge.Pruden noted that this executive order sets a clear deadline of 2031 for the adoption of post-quantum cryptography, which is more enforceable than the previous US government guidance which only proposed phasing out traditional cryptographic systems by 2035. For Bitcoin and the broader crypto industry, government-level investment in post-quantum security could accelerate the maturation of related tools, standards, and migration pathways.

CZ Revisits Bitcoin’s Response to the Quantum Computing Threat: The Community May Face Three Options

CZ shared the interview video on X, discussing the potential impact of quantum computing on Bitcoin’s cryptographic system—including threats to Satoshi Nakamoto’s Bitcoin holdings. If future quantum attacks break the legacy cryptographic system, the community may face three possible options.

Specter:THORChain shutdown over a month raises questions, with almost no transactions on the entire chain

on-chain security researcher Specter posted on X, stating that THORChain has not resumed normal operations for over a month after suspending all transactions due to a security vulnerability incident. The protocol previously did not choose to suspend transactions during other security incidents or suspicious fund flows; it even continued operating simple ETH-BTC paths. However, after becoming the affected party this time, it completely halted cross-chain transactions, sparking community discussion about the consistency of its risk management. Currently, THORChain on-chain trading remains completely stagnant, with almost no transactions on the entire chain. The recovery timeline remains unclear, and Specter reminds community users to "stay alert."

ZachXBT: Indian fraud gang suspected of conducting social engineering attacks to steal crypto and "self-reporting to police" to trace frozen funds

Odaily Planet Daily reports that "on-chain detective" ZachXBT released a case analysis stating that in a crypto asset case involving an Indian fraud gang, the individuals involved reported themselves to law enforcement after their assets were frozen, drawing attention.The incident began when a user sought help from ZachXBT, claiming that approximately 5.73 BTC (about $475,000) was frozen on Changelly in March 2025. Subsequent on-chain analysis revealed that these funds could be traced back to multiple social engineering attacks targeting US users and Bitcoin ATM-related thefts, with cumulative losses exceeding $1 million and involving several elderly victims.Investigations showed that the individual provided multiple different explanations for the source of the funds, including "loans," "transfers from the boss," and "investments from 2014–2015," with clear contradictions in the chain of evidence.More notably, the user filed a police report in India in December 2025 attempting to recover the frozen funds (case number 3207-P/2025). Subsequent on-chain forensics and email data analysis indicated that the individual may have acted as a money "mule," with some bank documents inconsistent with their identity information.ZachXBT stated that such cases demonstrate that social engineering attacks and cross-border fund transfers continue to occur, reminding users to avoid interacting with funds from suspicious sources to prevent triggering compliance freezes or legal risks.

The UXLINK attacker has swapped approximately 14.6 million DAI for 8,298.6 ETH.

According to on-chain analyst PeckShield (@PeckShieldAlert), the address labeled as the UXLINK attacker has swapped approximately 14.6 million DAI for 8,298.6 ETH. Subsequently, this address deposited 8,340 ETH into Tornado Cash and bridged 2.64 ETH (approximately $4,630) from Ethereum to a Bitcoin address.

Coinbase Advisory Board Warns of Bitcoin’s Quantum Risk: No Consensus Yet Within the Community—Quantum-Resistant Migration Preparations Should Begin Immediately

A cryptography expert advisory committee led by Coinbase released a report stating that Bitcoin should immediately begin preparing for potential quantum computing attacks. However, the committee did not take a clear stance on whether to freeze the millions of bitcoins potentially vulnerable to quantum-computing theft in the future. The committee includes several leading experts, such as Justin Drake, a researcher at the Ethereum Foundation. They argue that the current debate is not about *how* to introduce quantum-resistant signature schemes, but rather *how to handle* bitcoins held in long-dormant addresses that fail to migrate. One camp advocates setting a final deadline after which Bitcoin’s existing ECDSA and Schnorr signature schemes would no longer be supported, and unmigrated funds would be frozen—thereby preventing future quantum attackers from seizing large amounts of BTC and destabilizing markets. The other camp contends that freezing funds would effectively amount to asset confiscation, violating Bitcoin’s core principles of immutability and full user control over assets—and could set a precedent for future regulatory-driven freezes. The Coinbase advisory committee notes that these approaches are not mutually exclusive and could be combined. Yet it declines to state a position on whether “legacy BTC” should be frozen, asserting that the ultimate decision rests with Bitcoin’s community governance. It emphasizes two key points: first, technical development of quantum-resistant signature migration must begin immediately—not wait for governance debates to conclude; second, users must receive clear, timely risk communication to prevent prolonged uncertainty from harming the Bitcoin ecosystem.

11 national law enforcement agencies shut down AudiA6 crypto money laundering network

law enforcement agencies from 11 countries have jointly shut down the money laundering network AudiA6, which processed over 336 million euros in illicit funds between 2022 and 2025. On June 10, law enforcement arrested two administrators of Russian and Ukrainian nationality in Georgia, seized 25 domain names, over 30 servers, and 80 vehicles, and froze approximately 778,000 euros in cryptocurrency. Operating as a "mixer-as-a-service," AudiA6 provided services to cybercriminals involved in ransomware attacks, helping them cash out crypto assets and conceal the flow of funds, charging commissions of 3% to 10% and claiming to complete the "cleaning" process within about an hour.Since 2021, the AudiA6 wallet has received approximately 10,333 BTC, valued at around $389 million at the time of the transactions. The investigation also revealed that the money laundering network used thousands of fake accounts created with stolen or purchased identities, involving over 6,000 KYC records; many of these accounts were linked to Russian-speaking intermediaries and were used to transfer criminal proceeds through cryptocurrency exchanges. The clearnet and darknet domains of AudiA6 and Dark2Web have been replaced with seizure banners. (Cointelegraph)

Bitcoin Core 31.0’s new features contain a privacy vulnerability that may leak the IP address of the transaction initiator under specific network conditions.

The Bitcoin Core Project released a security advisory confirming a privacy vulnerability in the -privatebroadcast feature introduced in version 31.0.

Arthur Hayes: Rising Oil Prices, AI-Related IPOs, and Trump's Anti-AI Rhetoric Could Pop the AI Bubble and Drag Down the Crypto Market

Odaily News, June 9th — BitMEX co-founder Arthur Hayes stated in his latest article "Reality Test" that if oil prices continue to rise due to the US-Iran conflict, it could trigger a collapse of the AI stock bubble and drag the entire crypto market down.Hayes said that if traffic restrictions in the Strait of Hormuz persist deep into the second quarter, spot prices for hydrocarbons and other key commodities could rise in the third quarter. If oil prices continue to climb and inflationary pressures impact the US midterm elections, Trump might pivot to a tough stance targeting data center construction, AI regulation, and taxation. Hayes believes the market could anticipate Trump limiting AI capital expenditure and taxing AI companies, thereby triggering the burst of the AI stock bubble.Hayes also noted that since November 2022, the scale of AI-related debt issuance has been approximately $1.5 trillion, and US M2 has increased by roughly the same amount during the same period. He believes the three factors that could pop the AI bubble include rising energy costs, the market's inability to absorb three major AI-related IPOs — namely SpaceX, Anthropic, and OpenAI — and Trump's shift to opposing AI. In terms of portfolio, Hayes stated that Maelstrom's stock portfolio holds significant positions in US-listed energy producers; he has sold AI-related stocks and offloaded non-core crypto assets, having dumped HYPE, NEAR, and WLD last week, as well as selling ZEC due to the Orchard Pool vulnerability. He still holds Bitcoin and ETH and will execute tactical short trades via derivatives.

Bitcoin Carjacking Accomplice Pleads Guilty, Faces Up to 20 Years in Prison

the US Department of Justice stated Saif Faiq has pleaded guilty to conspiracy charges in a Bitcoin-related kidnapping and extortion case, facing a maximum of 20 years in prison, with sentencing scheduled for August 28.The case occurred in 2024. Faiq and his brother Adam Iza were accused of plotting to kidnap the parents of a crypto millionaire, recruiting six men from Florida to carry out the operation in Connecticut. The suspects carjacked the victims' Lamborghini Urus in broad daylight, assaulting them and briefly holding them captive.The victims were Sushil and Radhika Chetal, whose son Veer Chetal was previously involved in a social engineering fraud case, stealing approximately 4,100 Bitcoins, and has already pleaded guilty to the theft. Faiq and his brother have both acknowledged conspiring to interfere with commercial activities through robbery.

New York Judge Pauses Ownership Lawsuit Over 39,000 Dormant Bitcoin Wallets, Hearing Set for July 14

New York Supreme Court Judge Kathy J. King has signed an order to pause proceedings in a lawsuit seeking ownership claims over 39,069 dormant bitcoin wallets, and has scheduled a hearing for July 14 regarding a key amicus curiae brief.The plaintiffs in the case are an anonymous individual referred to as "Noah Doe" and two shell companies, who are seeking to claim ownership of these wallets under the New York State Abandoned Property Law. Attorney Ian R. Cohen submitted an amicus curiae brief opposing the plaintiffs' claims. He argues that the Abandoned Property Law is intended for tangible items, whereas blockchain addresses are always visible to the world; if the original owner was unable to withdraw assets due to a security breach, this constitutes a passive loss of access rather than a voluntary abandonment. (The Block)

ZEC Treasury Company Cypherpunk Responds to Price Volatility: All Software Has Vulnerabilities, Zcash Will Demonstrate Security Capabilities

Odaily, Cypherpunk, the company managing the ZEC treasury, stated that all software has vulnerabilities. Historically, Bitcoin once "over-minted" 184 billion BTC due to a bug. However, this does not mean abandoning blockchain technology; rather, security should be enhanced through formal verification and provable correctness.Cypherpunk emphasized that with the development of AI technology, vulnerability detection will become faster and broader, but the key lies in who can discover issues before malicious actors. Zcash will demonstrate this capability through an upcoming update.

ZEC Treasury Company Cypherpunk Responds to Market Volatility: All Software Contains Vulnerabilities; Formal Verification Will Enhance Security

Cypherpunk, the ZEC treasury company, responded on X to the market volatility of the ZEC token, stating that all software contains vulnerabilities and citing the historical Bitcoin incident in which a bug led to the accidental minting of 184 billion BTC. However, this does not mean blockchain technology should be abandoned; instead, security should be enhanced through formal verification and provable correctness.