Archive — every story

310 articles · page 4 of 11

Incident Analysis

'Patch Every Node': Inside the On-Chain Negotiation Over Liquid's $320 Million

The actors who withdrew ~4,000 BTC from the Liquid Federation wallet have told Blockstream, via Bitcoin transactions, to fix the Elements bug and update every node before funds are returned — and reportedly sent encrypted technical details. Nothing about their identity or intentions is confirmed.

Sep 7, 2026·3 min read
Incident Analysis

Rocket Pauses All Activity After $287K Extracted From Dormant Perpetual Market

A self-trading scheme on an illiquid, dormant perpetual market generated fake profits on one account, bankrupted a burner account, and withdrew $287K — with the loss socialized across the platform. Deposits, withdrawals, and trading are paused while the team coordinates tracing and freezes.

Sep 7, 2026·2 min read
Incident Analysis

Analysis: H1 2026's $1.3 Billion in Crypto Hacks Was a Key Problem, Not a Code Problem

CertiK, TRM Labs, and Forbes converge on roughly $1.3 billion in hack losses through the first half of 2026, with compromised private keys overtaking smart-contract bugs as the leading attack vector for the first time on record. The year's biggest thefts — Drift's $285M and KelpDAO's $290M — passed their audits before losing everything to a single compromised key.

Sep 6, 2026·5 min read
Security Digest

Security Digest: Kelp Exploiter Reportedly Moves $175M in ETH, Binance Warns on SMS Phishing, Trezor Total Nears 81,000

The day's smaller security stories in brief: on-chain tracking reportedly shows the Kelp DAO exploiter moving $175 million in ETH after Arbitrum's freeze, Binance warns of a surge in text-message phishing, the Trezor breach settles at roughly 80,700 exposed customers with no overlap accounting, Notional Finance's root cause is confirmed as an integer overflow, and the Tectonic attacker bridges stolen ETH to Tornado Cash.

Sep 6, 2026·3 min read
Incident Analysis

Full Sail to Wind Down After Switchboard Oracle Incident Drained Its Vaults

The Sui lending protocol is shutting down after an attacker removed about $91,000 from three vaults during a suspected compromise of Switchboard's Move-based oracle infrastructure — an incident that also halted four networks and impaired Virtue's VUSD stablecoin.

Sep 5, 2026·2 min read
Security

Thai Businessmen Sue Tether Over $42M USDT Freeze in Alleged Pig-Butchering Case

A New York lawsuit claims Tether froze $42.4 million in USDT on an informal Homeland Security request months before any warrant existed, in a $61 million alleged pig-butchering seizure. The plaintiffs deny any involvement — and the case tests how much freeze power a stablecoin issuer really has.

Sep 5, 2026·2 min read
Security

Trezor Breach Widens Again: 67,000 More US Customers Exposed via ShipMonk

Trezor says a shipping-provider breach it disclosed in August affects another 67,000 US customers whose order records were kept despite written deletion assurances. The exposed data maps confirmed hardware-wallet owners to home addresses, setting up targeted phishing and physical-security risks.

Sep 5, 2026·2 min read
Security Digest

Security Digest: Coldcard Loot Crosses to Ethereum, Rain's Card Infrastructure Flaw, Sality Botnet Takedown

The day's smaller security stories in brief: Wave 3 Coldcard theft funds move through THORChain into Ethereum, Blockaid details how an outdated Rain card contract drained about $1.1 million across crypto neobanks, the DOJ and CrowdStrike isolate a long-running crypto-stealing botnet, and the FBI seizes $560,000 tied to an alleged Hamas fundraising operation.

Sep 4, 2026·3 min read
Incident Analysis

Mantra's $3.6M Cosmos EVM Exploit: Patched Upstream, Deployed One Day Late

Mantra's postmortem confirms an unsigned-integer underflow in Cosmos EVM's balance-accounting layer drained 720.9 million MANTRA from two protocol wallets. The fix had been merged upstream three months earlier — and shipped as a release one day before the attack.

Sep 1, 2026·3 min read
Hacks

Ostium Loses $23.75 Million in Oracle Exploit

An attacker used a trusted price forwarder to feed a fake $60,000 Bitcoin quote, draining the perpetuals exchange's vault in five minutes through trades that were never real.

Aug 31, 2026·3 min read