DeFi Incident Tracker
Methodology →Confirmed facts, reports under review and unresolved questions are kept separate. Records without verified sources are not presented as confirmed incidents.
Incident database
175 records match| Event | Date | Chain | Technique | Loss | Status | Confidence | |
|---|---|---|---|---|---|---|---|
| Aave founder says V3 unaffected after third-party adapterAave founder Stani Kulechov said Aave v3 was unaffected after an attacker exploited a third-party adapter to drain about $305,000 from two Safe multisig wallets. | 2026-10-02 | Not specified | Exploit | $305.0K | Confirmed | 80% | Open → |
| Aave founder says V3 unaffected after third-party adapterAave founder Stani Kulechov said Aave v3 was unaffected after an attacker exploited a third-party adapter to drain about $305,000 from two Safe multisig wallets. | 2026-10-02 | Not specified | Exploit | $305.0K | Confirmed | 80% | Open → |
| Morning Minute: NEAR IntentsHacks are never good, but a rapid response, user compensation and 1-hour bug fixing seems to top the spectrum of team reactions. | 2026-10-02 | Not specified | Security incident | $3.8M | Confirmed | 80% | Open → |
| Bitget hackBlockSec traced Bitget’s $387.5M theft into Bitcoin, THORChain and CoinJoin, while only about $840,000 has been publicly frozen. | 2026-10-02 | Bitcoin | Security incident | $387.0M | Under review | 55% | Open → |
| Aave founder says V3 unaffected after third-party adapterAave founder Stani Kulechov said Aave v3 was unaffected after an attacker exploited a third-party adapter to drain about $305,000 from two Safe multisig wallets. | 2026-10-02 | Not specified | Exploit | $305.0K | Confirmed | 80% | Open → |
| Exploit Targets Aave’s v3 Module, Leading to 114Aave's v3 Loop Safe Module faced a significant exploit, resulting in a theft of approximately 114 ETH. This incident highlights ongoing vulnerabilities in DeFi protocols. The post Exploit Targets Aave’s v3 Module, Leading to 114 ETH Loss appeared first on Coinfomania . | 2026-10-02 | Not specified | Smart-contract vulnerability | Unavailable | Under review | 55% | Open → |
| NEAR Intents says it’s identified the hacker, gives“We have identified you, sir,” NEAR Intents general manager Alex Shevchenko said on Friday after the protocol was hacked for $3.8 million. | 2026-10-02 | Not specified | Security incident | $3.8M | Confirmed | 80% | Open → |
| Bitget hackBlockSec traced Bitget’s $387.5M theft into Bitcoin, THORChain and CoinJoin, while only about $840,000 has been publicly frozen. | 2026-10-02 | Bitcoin | Security incident | $387.0M | Under review | 55% | Open → |
| NEAR Intents says it’s identified the hacker, gives“We have identified you, sir,” NEAR Intents general manager Alex Shevchenko said on Friday after the protocol was hacked for $3.8 million. | 2026-10-02 | Not specified | Security incident | $3.8M | Confirmed | 80% | Open → |
| Aave’s Loop Safe Module Targeted in Exploit, 114Aave’s v3 Loop Safe Module suffered an exploit resulting in the theft of 114 ETH. This incident highlights ongoing vulnerabilities in DeFi protocols. The post Aave’s Loop Safe Module Targeted in Exploit, 114 ETH Stolen appeared first on Coinfomania . | 2026-10-02 | Not specified | Smart-contract vulnerability | Unavailable | Under review | 55% | Open → |
| El Salvador gets $138M after IMF waives BitcoinIMF approved about $138M for El Salvador after waiving a Bitcoin accumulation breach and urged the government to reduce its crypto role. | 2026-10-02 | Bitcoin | Security incident | $138.0M | Under review | 55% | Open → |
| NEAR Intents says its identified the hacker, gives“We have identified you, sir,” NEAR Intents general manager Alex Shevchenko said on Friday after the protocol was hacked for $3.8 million. | 2026-10-02 | Not specified | Security incident | $3.8M | Confirmed | 80% | Open → |
| Aave v3 exploit drains up to $310K afterThe exploit highlights the critical need for rigorous security audits of third-party modules in DeFi, as vulnerabilities can lead to significant financial losses. The post Aave v3 exploit drains up to $310K after Safe module attack appeared first on Crypto Briefing . | 2026-10-02 | Not specified | Smart-contract vulnerability | $310.0K | Under review | 55% | Open → |
| Crypto hackers have taken $2.7 billion in 2026Crypto firms and users have lost nearly $2.7 billion to security incidents this year, with North Korea-linked thefts exceeding $1 billion. Blockchain security firm CertiK recorded 658 incidents through September, with about $420.4 million of stolen assets frozen or returned. That leaves adjusted losses of roughly $2.26 billion and an average loss of $4.1 million […] The post Crypto hackers have taken $2.7 billion in 2026 and the losses are alarmingly concentrated appeared first on CryptoSlate . | 2026-10-02 | Not specified | Security incident | $2.7B | Under review | 55% | Open → |
| Near IntentsNear Intents froze its cross-chain swaps after a bug let an attacker drain about $3.8 million. The company promised to repay every user. | 2026-10-01 | Not specified | Security incident | $3.8M | Confirmed | 80% | Open → |
| Malware de WordPress usa Ethereum para evitar queUna variante de malware para WordPress, llamada SC, usa cerca de 20 pasarelas públicas de Ethereum y mantiene copias de su carga en distintos componentes para dificultar su eliminación. Sucuri también advierte que puede robar tokens de sesión de administrador, desactivar herramientas de seguridad e insertar JavaScript capaz de capturar datos de pago. | 2026-10-01 | Ethereum | Malware | Unavailable | Under review | 55% | Open → |
| Malware de WordPress usa Ethereum para resistir suUna variante de malware para WordPress, llamada SC, usa cerca de 20 pasarelas públicas de Ethereum y mantiene copias de su carga en distintos componentes para dificultar su eliminación. Sucuri también advierte que puede robar tokens de sesión de administrador, desactivar herramientas de seguridad e insertar JavaScript capaz de capturar datos de pago. | 2026-10-01 | Ethereum | Malware | Unavailable | Under review | 55% | Open → |
| Near IntentsNear Intents froze its cross-chain swaps after a bug let an attacker drain about $3.8 million. The company promised to repay every user. | 2026-10-01 | Not specified | Security incident | $3.8M | Confirmed | 80% | Open → |
| Crypto hacks top $768M in September, worst monthThe $388 million Bitget breach and $320 million Liquid Network exploit accounted for most of September’s losses, though more than $270 million from the latter was later returned. | 2026-10-01 | Not specified | Exploit | $768.0M | Confirmed | 80% | Open → |
| CertiK Tallies $766.4 Million in September Exploit andBitget and Liquid Network dominate the month's losses, while recovered and frozen funds substantially reduce the remaining damage. | 2026-10-01 | Not specified | Phishing | $766.4M | Under review | 55% | Open → |
| Drift opens DFX recovery token claims for AprilThe DFX recovery token initiative highlights the challenges of compensating DeFi exploit victims and underscores the importance of robust security measures. The post Drift opens DFX recovery token claims for April exploit victims appeared first on Crypto Briefing . | 2026-10-01 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| CertiK Tallies $766.4 Million in September Exploit andBitget and Liquid Network dominate the month's losses, while recovered and frozen funds substantially reduce the remaining damage. | 2026-10-01 | Not specified | Phishing | $766.4M | Under review | 55% | Open → |
| Stablecoins can drain from banks and nations atHighly liquid and settling 24/7, stablecoins can leave banks and countries at lightning speed. But whether stablecoins are a risk — or an opportunity — depends on your perspective. | 2026-10-01 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Bitget’s $388M hack pushes Q3 crypto security lossesCrypto security losses reached $1.26 billion in Q3 across 247 incidents, with September alone accounting for roughly $769 million. | 2026-10-01 | Not specified | Security incident | $388.0M | Under review | 55% | Open → |
| BitMart proposes court-backed repayment plan for usersBitMart's court-backed repayment plan highlights the complexities of crypto exchange recovery, impacting user trust and industry regulatory standards. The post BitMart proposes court-backed repayment plan for users hit by 2021 hack appeared first on Crypto Briefing . | 2026-10-01 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Binance CEO Richard TengRichard Teng, CEO of Binance, emphasizes the importance of verifying token authenticity to avoid scams. The post Binance CEO Richard Teng Warns of Fake Payment Scams appeared first on Coinfomania . | 2026-10-01 | Not specified | Fraud or scam | Unavailable | Under review | 55% | Open → |
| Crypto hacks top $768M in September, worst monthThe $388 million Bitget breach and $320 million Liquid Network exploit accounted for most of September’s losses, though more than $270 million from the latter was later returned. | 2026-10-01 | Not specified | Exploit | $768.0M | Confirmed | 80% | Open → |
| Crypto Hack Losses Jump 462% in September asCrypto hack losses reached $766.49 million in September, making it the worst month of 2026 so far. The total jumped about 462% from August’s $136.3 million, according to PeckShield. Two incidents caused most of the damage. Bitget lost roughly $387 million. Liquid Network lost about $320 million, though the people behind it, claiming to be The post Crypto Hack Losses Jump 462% in September as Bitget Becomes the Year's Biggest Theft appeared first on BeInCrypto . | 2026-10-01 | Not specified | Security incident | $766.5M | Under review | 55% | Open → |
| CertiK Tallies $766.4 Million in September Exploit andBitget and Liquid Network dominate the month's losses, while recovered and frozen funds substantially reduce the remaining damage. | 2026-10-01 | Not specified | Phishing | $766.4M | Under review | 55% | Open → |
| OFAC Sanctions 7 Crypto Wallets Tied to FBIThe US Treasury’s Office of Foreign Assets Control (OFAC) sanctioned 10 targets on Wednesday. They are tied to an ATM jackpotting scheme run by Tren de Aragua (TdA). The network allegedly washed the stolen cash through cryptocurrency, among other channels. The action also listed 7 crypto addresses belonging to ringleader “Prometheus,” an FBI Most Wanted The post OFAC Sanctions 7 Crypto Wallets Tied to FBI Most Wanted Fugitive and Venezuelan Gang appeared first on BeInCrypto . | 2026-10-01 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Bitcoin's soft-inflation pop to $85,500 fades as bondA cooler-than-expected PCE report sent bitcoin briefly above $85,000 on Wednesday. Treasury yields held near their highest since 2002 and the gains drained away. | 2026-10-01 | Bitcoin | Security incident | $85 | Under review | 55% | Open → |
| Three hidden flaws in Uniswap’s StablePair hook drainStablePair can retain rebalancing value for liquidity providers, but fees anchored to a configured rate leave token and inventory risk with LPs. The post Three hidden flaws in Uniswap’s StablePair hook drain LP returns appeared first on CryptoSlate . | 2026-10-01 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| MetaMask Staking Exits Lido Validators After InfrastructureLido estimates the exit, withdrawal and re-entry cycle could take up to about 45 days. Aave’s founder says its markets are operating normally. | 2026-10-01 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| Bitget’s hackers turn to Zcash after $50 millionHackers behind Bitget’s $387.5 million breach are turning to Zcash's privacy features to hide the stolen funds as crypto firms increasingly block other escape routes. About 2,746 ZEC worth roughly $3.9 million was transferred Wednesday into Zcash’s Ironwood shielded pool through three transactions, according to on-chain activity flagged by blockchain investigator ZachXBT. The amount represents […] The post Bitget’s hackers turn to Zcash after $50 million laundering route gets blocked appeared first on CryptoSlate . | 2026-09-30 | Not specified | Security incident | $50.0M | Under review | 55% | Open → |
| FBI Tells Its Employees to Assume Hackers HaveAn internal memo warned FBI staff that ShinyHunters, the group claiming it hacked the bureau's jobs site, may hold their private details. | 2026-09-30 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| SlowMist traces Bitget hack activity to Aug. 31SlowMist identified malicious activity weeks before the Bitget theft, involving a zero-day vulnerability, two security products and a custom withdrawal tool. | 2026-09-30 | Not specified | Smart-contract vulnerability | Unavailable | Confirmed | 80% | Open → |
| Ex-NCA Officer Must Repay $2.4M for Bitcoin HePaul Chowles took 50 BTC from a Silk Road 2.0 seizure in 2017. Prosecutors have now valued the theft at more than 30 times that. | 2026-09-30 | Bitcoin | Security incident | $2.4M | Confirmed | 80% | Open → |
| Bitget hackers move $4 million into Zcash’s privateThree transfers pushed about 15% of the stolen ZEC into Ironwood, where payments hide their senders, recipients and amounts. | 2026-09-30 | Not specified | Security incident | $4.0M | Under review | 55% | Open → |
| Solana’s DeFi TVL recovers above $6.5B after DriftThe recovery highlights the resilience of DeFi systems and sets a precedent for future compensation mechanisms, emphasizing security reforms. The post Solana’s DeFi TVL recovers above $6.5B after Drift hack wiped $285M appeared first on Crypto Briefing . | 2026-09-30 | Solana | Security incident | $6 | Under review | 55% | Open → |
| Bitget hackers move $4 million into Zcash’s privateThree transfers pushed about 15% of the stolen ZEC into Ironwood, where payments hide their senders, recipients and amounts. | 2026-09-30 | Not specified | Security incident | $4.0M | Under review | 55% | Open → |
| Bitget brings back USDT withdrawals after $387M hackBitget has restored BTC, ETH and USDT withdrawals after its $387.5M hack, with P2P and remaining services set to reopen Friday. | 2026-09-30 | Not specified | Security incident | $387.0M | Under review | 55% | Open → |
| 30 Bitcoin miners detained in Malaysia electricity theftMalaysian police have detained two men and seized 30 Bitcoin mining machines after uncovering an operation in Seri Iskandar that allegedly used an illegal electricity connection.on. According to Perak Tengah district police chief Supt Hafezul Helmi Hamzah, the district’s Criminal… | 2026-09-30 | Bitcoin | Security incident | Unavailable | Under review | 55% | Open → |
| Bitget’s hack exposes a double standard on stolenTHORChain is being asked to block stolen funds. Why isn’t the same demand being made of the blockchains carrying them? Bitget has every reason to pursue the people behind its recent hack and recover the money. The exchange now puts… | 2026-09-29 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Apple patches iOS vulnerability, are crypto wallets stillApple patched an exploited iPhone CoreGraphics flaw as SlowMist warned crypto users about recent attacks targeting sensitive wallet data. | 2026-09-29 | Not specified | Smart-contract vulnerability | Unavailable | Under review | 55% | Open → |
| Česká národní banka Issues Warning About FraudulentČeská národní banka has issued a warning about a fraudulent entity offering financial services without authorization. The post Česká národní banka Issues Warning About Fraudulent appeared first on Coinfomania . | 2026-09-29 | Not specified | Fraud or scam | Unavailable | Under review | 55% | Open → |
| NEAR Intents says it blocked $50M tied toThe cross-chain protocol said it actively prevents stolen funds from being laundered, drawing a contrast with THORChain’s position that it does not selectively censor transactions. | 2026-09-29 | Not specified | Security incident | $50.0M | Confirmed | 80% | Open → |
| Compound DAO used protocol reserves to buy $52Bitquery says 344,780 COMP pushed supporters above half of delegated voting power; the Foundation says the move fit its DAO mandate. The post Compound DAO used protocol reserves to buy $52 million worth of COMP, and delegates call it a mandate breach appeared first on CryptoSlate . | 2026-09-29 | Not specified | Security incident | $52.0M | Under review | 55% | Open → |
| Nearly 5,000 BTC leaves Bitget as hackers beginNearly 5,000 Bitcoin has left Bitget’s tracked reserves after the crypto exchange reopened withdrawals following its $387.5 million hack. On Sept. 28, Bitget Chief Executive Officer Gracy Chen said the exchange had processed 9,585 withdrawal orders totaling 4,098.036 BTC as of 17:00 UTC+8, shortly after it resumed Bitcoin withdrawals. Separate DeFiLlama data showed Bitget’s tracked […] The post Nearly 5,000 BTC leaves Bitget as hackers begin laundering $387 million haul appeared first on CryptoSlate . | 2026-09-28 | Bitcoin | Security incident | $387.0M | Under review | 55% | Open → |
| Compound DAO used protocol reserves to buy $52Bitquery says 344,780 COMP pushed supporters above half of delegated voting power; the Foundation says the move fit its DAO mandate. The post Compound DAO used protocol reserves to buy $52 million worth of COMP, and delegates call it a mandate breach appeared first on CryptoSlate . | 2026-09-29 | Not specified | Security incident | $52.0M | Under review | 55% | Open → |
| AI agents could drain cheap bank deposits, Apollo's Torsten SlokAI agents could trigger a bank run by automatically moving household cash from low-interest checking accounts to higher-yield alternatives, Slok warns. | 2026-09-28 | Not specified | Security incident | Unavailable | Confirmed | 80% | Open → |
| Bitget says Bitcoin withdrawals are open after $387MSept. 28 public fills show BTC and ETH futures activity before the scheduled 08:00 UTC Bitcoin withdrawal restart. The post Bitget says Bitcoin withdrawals are open after $387M hack, but ETH and USDT must wait appeared first on CryptoSlate . | 2026-09-28 | Bitcoin | Security incident | $387.0M | Under review | 55% | Open → |
| Investigator Finds $387M Bitget Hack Suspects Asking forZachXBT says Bitget hack launderers asked for help in public Discord and Telegram chats. One is tied to the Kelp DAO hack. The post Investigator Finds $387M Bitget Hack Suspects Asking for Help in Public Chats appeared first on BeInCrypto . | 2026-09-28 | Not specified | Security incident | $387.0M | Confirmed | 80% | Open → |
| After AI AgentSenator Sarah Hanson-Young has invited the OpenAI and Anthropic CEOs to a Canberra hearing on October 1, after an OpenAI agent quietly accessed Australia's Medicare data and nobody said a word for months. | 2026-09-28 | Not specified | Security incident | Unavailable | Confirmed | 80% | Open → |
| Bitget had 30 minutes to contain its hackHypernative places the major transfer waves roughly 30 and 45 minutes after Bitget's reported detection. The post Bitget had 30 minutes to contain its hack before $290 million started moving appeared first on CryptoSlate . | 2026-09-28 | Not specified | Security incident | $290.0M | Under review | 55% | Open → |
| THORChain rejects Bitget request to block hacker asCoinDesk found 27 successful swaps moving about 2,390 ETH into 75.2 BTC, even as Bitget urged THORChain to stop serving addresses tied to the $387.5 million theft. | 2026-09-28 | Bitcoin | Security incident | $6.0M | Confirmed | 80% | Open → |
| Compound Foundation denies misuse of V2 reserve fundsThe controversy highlights potential vulnerabilities in DeFi governance, risking reputational damage and questioning DAO decision legitimacy. The post Compound Foundation denies misuse of V2 reserve funds amid governance controversy appeared first on Crypto Briefing . | 2026-09-28 | Not specified | Smart-contract vulnerability | Unavailable | Confirmed | 80% | Open → |
| Bitget resumes Bitcoin withdrawals as hacker swaps ETHEther withdrawals are scheduled to return Tuesday and USDt on Wednesday as Bitget restores services following last week’s $388 million hack. | 2026-09-28 | Bitcoin | Security incident | $388.0M | Under review | 55% | Open → |
| Bitget CEO says $388M hackSome stolen assets have been frozen, but Bitget has yet to disclose how much has been recovered as investigators continue to assess a possible North Korea link. | 2026-09-28 | Not specified | Smart-contract vulnerability | $388.0M | Confirmed | 80% | Open → |
| Bitget reveals attack path behind $387.5M breach asBitget resumed Bitcoin withdrawals after its $387.5M hack as CEO Gracy Chen revealed attackers stole internal credentials through a third-party flaw. The post Bitget reveals attack path behind $387.5M breach as Bitcoin withdrawals restart appeared first on Crypto Briefing . | 2026-09-28 | Bitcoin | Credential compromise | $387.5M | Confirmed | 80% | Open → |
| Bitget starts phased withdrawal resumption following $388 millionThe exchange said it has patched the vulnerability, and losses from the incident will be fully covered by a user protection fund. | 2026-09-28 | Not specified | Smart-contract vulnerability | $388.0M | Confirmed | 80% | Open → |
| Bitget resumes BTC withdrawals after $388M hackBitget has reopened BTC withdrawals after its USD 388 million hack, with ETH, USDT and other services scheduled to return through Oct. 2. | 2026-09-28 | Not specified | Security incident | $388.0M | Confirmed | 80% | Open → |
| Chainlink updates its crypto bridge tech months afterThe new software lets companies add custom security checks so they do not fall victim to the same single-point-of-failure vulnerabilities that plagued rival bridges. | 2026-09-28 | Not specified | Smart-contract vulnerability | $292.0M | Under review | 55% | Open → |
| Fake GIWA Layer 2 BridgeDYORSWAP, which mistook the network for the Upbit-backed project, promises 40% reimbursement for eligible wallets that bridged less than 5 ETH. | 2026-09-28 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Bitget had 30 minutes to contain its hackHypernative places the major transfer waves roughly 30 and 45 minutes after Bitget's reported detection. The post Bitget had 30 minutes to contain its hack before $290 million started moving appeared first on CryptoSlate . | 2026-09-28 | Not specified | Security incident | $290.0M | Under review | 55% | Open → |
| Bitget resumes BTC withdrawals after $388M hackBitget has reopened BTC withdrawals after its USD 388 million hack, with ETH, USDT and other services scheduled to return through Oct. 2. | 2026-09-28 | Not specified | Security incident | $388.0M | Under review | 55% | Open → |
| Bitget resumes Bitcoin withdrawals as hacker swaps ETHEther withdrawals are scheduled to return Tuesday and USDt on Wednesday as Bitget restores services following last week’s $388 million hack. | 2026-09-28 | Bitcoin | Security incident | $388.0M | Under review | 55% | Open → |
| Bitget hack sparks dispute over THORChain’s permissionless designTHORChain has defended its permissionless design after Bitget asked the cross chain protocol to refuse service to addresses tied to the exchange’s $387.5 million security breach, opening a dispute over whether its network should block known stolen funds. THORChain said… | 2026-09-28 | Not specified | Security incident | $387.5M | Under review | 55% | Open → |
| MEXC account hack: How did a userMEXC says a $340K account theft dispute is resolved after a user claimed an attacker-created API remained usable after account recovery. | 2026-09-28 | Not specified | Security incident | $340.0K | Under review | 55% | Open → |
| Zano rolls blockchain back a month after GatewayThe Zano blockchain has been restarted at the block height that came immediately before Hard Fork 6, which introduced Gateway Addresses. | 2026-09-28 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Zano restarts chain at block 3,833,000 after exploitZano restarted its blockchain at block 3,833,000 after a Gateway Address flaw created unauthorized ZANO and fUSD, erasing one month of history. | 2026-09-28 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Zano rolls blockchain back a month after GatewayThe Zano blockchain has been restarted at the block height that came immediately before Hard Fork 6, which introduced Gateway Addresses. | 2026-09-28 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Cosmos intercepts 1.23 million stolen ATOM but refundsValidators secured one Hub-side balance, but the custody signers say a Neutron recovery plan and passed Hub proposal must precede its release. The post Cosmos intercepts 1.23 million stolen ATOM but refunds now wait on governance vote appeared first on CryptoSlate . | 2026-09-27 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| THORChain Refuses to Block Assets Tied to BitgetTHORChain paused itself over a $10M loss in May. Now it won't block $387M Bitget hack funds. Here's the fight. The post THORChain Refuses to Block Assets Tied to Bitget Hackers appeared first on BeInCrypto . | 2026-09-27 | Not specified | Security incident | $10.0M | Under review | 55% | Open → |
| THORChain Refuses to Block Assets Tied to BitgetTHORChain paused itself over a $10M loss in May. Now it won't block $387M Bitget hack funds. Here's the fight. The post THORChain Refuses to Block Assets Tied to Bitget Hackers appeared first on BeInCrypto . | 2026-09-27 | Not specified | Security incident | $10.0M | Under review | 55% | Open → |
| Cosmos intercepts 1.23 million stolen ATOM but refundsValidators secured one Hub-side balance, but the custody signers say a Neutron recovery plan and passed Hub proposal must precede its release. The post Cosmos intercepts 1.23 million stolen ATOM but refunds now wait on governance vote appeared first on CryptoSlate . | 2026-09-27 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Bitget hacker routes 4 BTC through Wasabi CoinJoinAMLBot traced about 4 BTC linked to the Bitget hack into Wasabi CoinJoin after swaps through USDT0, Ethereum and THORChain. | 2026-09-27 | Ethereum | Security incident | Unavailable | Under review | 55% | Open → |
| Australia asks OpenAI, Anthropic chiefs to Senate inquiry on rogue hackA rogue OpenAI research agent bypassed blocks on the Australian government health-data portal, accessing non-public files in June. | 2026-09-27 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| THORChain Refuses to Block Assets Tied to BitgetTHORChain paused itself over a $10M loss in May. Now it won't block $387M Bitget hack funds. Here's the fight. The post THORChain Refuses to Block Assets Tied to Bitget Hackers appeared first on BeInCrypto . | 2026-09-27 | Not specified | Security incident | $10.0M | Under review | 55% | Open → |
| Bitget hacker routes 4 BTC through Wasabi CoinJoinAMLBot traced about 4 BTC linked to the Bitget hack into Wasabi CoinJoin after swaps through USDT0, Ethereum and THORChain. | 2026-09-27 | Ethereum | Security incident | Unavailable | Under review | 55% | Open → |
| Nearly $15B is moving off LayerZero, now aEvercrest Technologies, the company behind KelpDAO, has sued LayerZero Labs, its Canadian affiliate, and CEO Bryan Pellegrino in British Columbia over April's $292 million rsETH exploit. The claim alleges negligent misrepresentation, negligence and defamation, seeks aggravated and punitive damages, and says Kelp users have withdrawn more than $650 million since the attack. Pellegrino has called […] The post Nearly $15B is moving off LayerZero, now a $292M lawsuit puts its security model on trial appeared first on CryptoSlate . | 2026-09-26 | Not specified | Exploit | $292.0M | Under review | 55% | Open → |
| Nearly $15B is moving off LayerZero, now aEvercrest Technologies, the company behind KelpDAO, has sued LayerZero Labs, its Canadian affiliate, and CEO Bryan Pellegrino in British Columbia over April's $292 million rsETH exploit. The claim alleges negligent misrepresentation, negligence and defamation, seeks aggravated and punitive damages, and says Kelp users have withdrawn more than $650 million since the attack. Pellegrino has called […] The post Nearly $15B is moving off LayerZero, now a $292M lawsuit puts its security model on trial appeared first on CryptoSlate . | 2026-09-26 | Not specified | Exploit | $292.0M | Under review | 55% | Open → |
| Bitget hacker moves $83 million in stolen XRPTwo wallets have been almost emptied and a third is being drained, with about $75 million remaining across the five original holding accounts. | 2026-09-26 | Not specified | Security incident | $83.0M | Under review | 55% | Open → |
| Bitget offers 5% bounty for freezing funds stolenBitget has launched a recovery bounty offering 5% for freezing stolen assets and another 5% for recovering them after an attack it initially valued at $351.6 million. Bitget CEO Gracy Chen announced the bounty on X and called on exchanges,… | 2026-09-26 | Not specified | Security incident | $351.6M | Under review | 55% | Open → |
| Bitget hacker withdraws $1.23M from Binance, funnels fundsThe Bitget hack highlights vulnerabilities in crypto exchanges, prompting urgent calls for enhanced security measures and international cooperation. The post Bitget hacker withdraws $1.23M from Binance, funnels funds to attacker-controlled wallet appeared first on Crypto Briefing . | 2026-09-26 | Not specified | Smart-contract vulnerability | $1.2M | Under review | 55% | Open → |
| Bitget Hack Losses Climb to $387MAn attacker faked internal transfer requests to drain $387.5 million from Bitget's hot and warm wallets, and the exchange's CEO says the fingerprints look like Pyongyang's. | 2026-09-25 | Not specified | Security incident | $387.0M | Confirmed | 80% | Open → |
| Three DeFi Exploits Swipe $11M from Payy, Duelbits,TL;DR: On September 24, 2026, three independent security incidents accumulated combined losses exceeding $11 million. The Duelbits platform recorded the day’s largest theft, with nearly $7 million drained from its hot wallets. The Meter.io and Payy Network protocols suffered losses of $2.3 million and $1.8 million, respectively, through verification flaws and bridge vulnerabilities. The DeFi ... Read more | 2026-09-25 | Not specified | Smart-contract vulnerability | $11.0M | Under review | 55% | Open → |
| Circle and Tether Freeze Stablecoins Tied to BitgetThe two stablecoin issuers blacklisted a wallet labeled "Bitget Exploiter 8," locking about $318,000 in USDC and USDT—but the attacker swapped most funds into unfreezable ETH before they could act. | 2026-09-25 | Not specified | Exploit | $318 | Under review | 55% | Open → |
| Bitget hacker swaps USDC for ETH as CircleThe Bitget hacker has converted stolen USDC into ETH after a breach that the exchange valued at about $351.6 million, renewing questions about when Circle freezes funds linked to an attack. Security researcher Taylor Monahan flagged the attacker’s activity on… | 2026-09-25 | Not specified | Security incident | $351.6M | Under review | 55% | Open → |
| Bitget’s hack just got $36 million bigger, andThe exchange says the revision adds assets from the same incident and will announce a withdrawal plan by Sept. 26. The post Bitget’s hack just got $36 million bigger, and now there’s a bounty on the stolen crypto appeared first on CryptoSlate . | 2026-09-25 | Not specified | Security incident | $36.0M | Under review | 55% | Open → |
| Former Hack VC partner Hsin-Ju Chuang’s death ruledThe crypto executive and Dystopia Labs founder previously held senior roles at Stellar and Solana before joining venture capital firm Hack VC. | 2026-09-25 | Solana | Security incident | Unavailable | Under review | 55% | Open → |
| AI AgentsDarktrace's new Signal Labs found AI agents hacking their own evaluation environment to fake a perfect score—and tricking coding assistants into running unauthorized network attacks. | 2026-09-25 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Magic Eden legacy approvals leave $5.7 million inMagic Eden legacy approvals exposed $5.7 million in NFTs to an exploit before whitehats rescued 23,155 tokens. | 2026-09-25 | Not specified | Exploit | $5.7M | Confirmed | 80% | Open → |
| Bitget Hack TimelineBitget says hackers used its own system to approve a $387.5 million theft. Here’s the timeline and the evidence behind suspected North Korean links. The post Bitget Hack Timeline: How Its Own System Approved a $387 Million Theft appeared first on BeInCrypto . | 2026-09-25 | Not specified | Security incident | $387.0M | Confirmed | 80% | Open → |
| KelpDAO Developer Sues LayerZero Over $292M Bridge ExploitEvercrest says LayerZero approved the single-verifier configuration in writing multiple times, then warned a different developer about it. | 2026-09-25 | Not specified | Exploit | $292.0M | Confirmed | 80% | Open → |
| Bitget halts withdrawals after $351M hack, CEO assuresThe incident underscores vulnerabilities in centralized exchanges, potentially affecting market confidence and prompting calls for enhanced security. The post Bitget halts withdrawals after $351M hack, CEO assures funds safe appeared first on Crypto Briefing . | 2026-09-25 | Not specified | Smart-contract vulnerability | $351.0M | Under review | 55% | Open → |
| Circle and Tether step in to freeze hackerThe stablecoin issuer blacklisted a wallet holding about $318,000 in USDT and USDC. Most of the stolen funds sit in ether, which can't be frozen. | 2026-09-25 | Not specified | Security incident | $318 | Under review | 55% | Open → |
| Magic EdenA flaw in Limit Break's Payment Processor V2 put old Magic Eden Ethereum listings at risk, prompting a whitehat rescue of more than 23,000 NFTs. | 2026-09-25 | Ethereum | Exploit | Unavailable | Under review | 55% | Open → |
| North Korean Hackers “Very Likely”Bitget CEO Gracy Chen said North Korea was “very likely” behind the $350 million Bitget hack. The attackers breached a backend system and never obtained private keys, she added. Withdrawals remain suspended after the September 24 breach. DefiLlama data now ranks it as the largest crypto hack of 2026. Chen Follows a VPN Trail to The post North Korean Hackers “Very Likely” Drained $350 Million From Bitget, CEO Says appeared first on BeInCrypto . | 2026-09-25 | Not specified | Credential compromise | $350.0M | Confirmed | 80% | Open → |
| KelpDAO Developer Sues LayerZero Over $292M Bridge ExploitEvercrest says LayerZero approved the single-verifier configuration in writing multiple times, then warned a different developer about it. | 2026-09-25 | Not specified | Exploit | $292.0M | Confirmed | 80% | Open → |
| Bitget CEO suspects North Korea behind $352M hack,Bitget CEO Gracy Chen said a preliminary investigation found IP addresses matching VPN choices associated with a DPRK hacking group. | 2026-09-25 | Not specified | Security incident | $352.0M | Confirmed | 80% | Open → |
| Payy bridge exploit freezes crypto cards, and noPayy says the bridge was drained, while the extent of any customer losses remains undisclosed. The post Payy bridge exploit freezes crypto cards, and no balances remain safe appeared first on CryptoSlate . | 2026-09-25 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Bitget probe points to backend breach after $351.6MBitget says a $351.6M wallet breach hit hot and warm wallets, with withdrawals paused as investigators examine a backend system compromise. | 2026-09-25 | Not specified | Credential compromise | $351.6M | Under review | 55% | Open → |
| Magic Eden undergoing possible exploit as thousands ofMagic Eden has faced reports of a possible contract exploit after unusual transactions showed thousands of NFTs being sold for 0 ETH, although one account involved in the activity has claimed the transfers are part of a whitehat operation. NFT… | 2026-09-25 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Yuga Labs Responds to Payment Processor Exploit, SafeguardsYuga Labs secures over $5.7 million in NFTs amid a payment processor vulnerability. Here's why this incident is significant. The post Yuga Labs Responds to Payment Processor Exploit, Safeguards appeared first on Coinfomania . | 2026-09-25 | Not specified | Smart-contract vulnerability | $5.7M | Under review | 55% | Open → |
| MultiversX restarts after exploit halt, but Kraken stillMainnet blocks resumed Sept. 24, while Kraken's latest EGLD notice kept trading cancel-only and deposits and withdrawals paused. The post MultiversX restarts after exploit halt, but Kraken still bars new EGLD trades appeared first on CryptoSlate . | 2026-09-25 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Bitget’s $351.6 million hack pushes September crypto lossesBitget has suspended withdrawals after unauthorized transfers drained about $351.6 million from a limited number of its hot and warm wallets. The crypto exchange detected the transfers at 18:31 UTC on Sept. 24 and activated its emergency response procedures within minutes, Chief Executive Officer Gracy Chen said. Bitget’s cold wallets and most assets held on […] The post Bitget’s $351.6 million hack pushes September crypto losses to 2026 high appeared first on CryptoSlate . | 2026-09-24 | Not specified | Security incident | $351.6M | Confirmed | 80% | Open → |
| Asia dominates Crypto Adoption Index, Bitget’s $352M hackThe APAC region accounts for half of the Global Crypto Adoption Index. Bitget suffers massive $352M loss and OpenAI forgets to mention its agents hacked the Australian Government. | 2026-09-24 | Not specified | Security incident | $352.0M | Confirmed | 80% | Open → |
| Bitget CEO suspects North Korea behind $352M hack,Bitget CEO Gracy Chen said a preliminary investigation found IP addresses matching VPN choices associated with a DPRK hacking group. | 2026-09-25 | Not specified | Security incident | $352.0M | Confirmed | 80% | Open → |
| KelpDAO sues LayerZero over $292M rsETH exploitKelpDAO has sued LayerZero and CEO Bryan Pellegrino over April’s $292M rsETH exploit, alleging security and disclosure failures. | 2026-09-25 | Not specified | Exploit | $292.0M | Under review | 55% | Open → |
| Bitget probe points to backend breach after $351.6MBitget says a $351.6M wallet breach hit hot and warm wallets, with withdrawals paused as investigators examine a backend system compromise. | 2026-09-25 | Not specified | Credential compromise | $351.6M | Under review | 55% | Open → |
| BitgetA newly created wallet drained hot and cold reserves labeled as belonging to Bitget across multiple blockchains in under an hour. | 2026-09-24 | Not specified | Security incident | $350.0M | Confirmed | 80% | Open → |
| BitgetBitget said unauthorized transfers affected a limited number of hot wallets, while cold wallets and most platform assets remained unaffected. | 2026-09-24 | Not specified | Security incident | $352.0M | Confirmed | 80% | Open → |
| Bitget CEO suspects North Korea behind $352M hack,Bitget CEO Gracy Chen said a preliminary investigation found IP addresses matching VPN choices associated with a DPRK hacking group. | 2026-09-25 | Not specified | Security incident | $352.0M | Under review | 55% | Open → |
| Asia dominates Crypto Adoption Index, Bitget’s $351M hackThe APAC region accounts for half of the Global Crypto Adoption Index. Bitget suffers massive $351M loss and OpenAI forgets to mention its agents hacked the Australian Government. | 2026-09-24 | Not specified | Security incident | $351.0M | Under review | 55% | Open → |
| BitgetBitget confirmed a $351.6 million wallet breach and paused withdrawals, while CEO Gracy Chen said customer funds remain protected. The post Bitget confirms over $350M breach and temporarily pauses withdrawals appeared first on Crypto Briefing . | 2026-09-24 | Not specified | Security incident | $350.0M | Confirmed | 80% | Open → |
| Crypto casino Duelbits goes offline after $7 millionAttackers drained Duelbits' hot wallets across four blockchains; about $6 million in stolen funds now sits in a single Ethereum address. | 2026-09-24 | Ethereum | Security incident | $7.0M | Under review | 55% | Open → |
| ReporteEl exchange de criptomonedas Bitget ha sido hackeado por más de 350 millones de dólares. El hack se identificó después de que los usuarios reportaran problemas con los retiros. Los primeros datos on-chain mostraron que aproximadamente 176 millones de dólares salieron de wallets etiquetadas como pertenecientes al exchange. Los datos de Arkham muestran una serie El post Reporte: Hackean el exchange Bitget por más de 170 millones de dólares fue visto por primera vez en BeInCrypto . | 2026-09-24 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| EQIBank fights to recover $89M seized from USEQIBank's legal struggle highlights the vulnerability of offshore banks to US jurisdiction, potentially reshaping digital banking's global landscape. The post EQIBank fights to recover $89M seized from US payment provider accounts appeared first on Crypto Briefing . | 2026-09-24 | Not specified | Smart-contract vulnerability | $89.0M | Under review | 55% | Open → |
| Payy Network halts operations after $1.92M USDC exploitThe Payy Network exploit highlights the ongoing vulnerabilities in DeFi infrastructure, raising concerns about security and user trust in digital finance. The post Payy Network halts operations after $1.92M USDC exploit drains Ethereum rollup appeared first on Crypto Briefing . | 2026-09-24 | Ethereum | Smart-contract vulnerability | $1.9M | Confirmed | 80% | Open → |
| Crypto casino Duelbits goes offline after $7 millionAttackers drained Duelbits' hot wallets across four blockchains; about $6 million in stolen funds now sits in a single Ethereum address. | 2026-09-24 | Ethereum | Security incident | $7.0M | Under review | 55% | Open → |
| Alpen says AI identified Liquid’s $320M BTC exploitIts post-attack replay explains the cache flaw, while SideSwap says a 4,000 L-BTC order faced no size or velocity hold. The post Alpen says AI identified Liquid’s $320M BTC exploit in an hour. Could a payout limit have stopped it? appeared first on CryptoSlate . | 2026-09-24 | Not specified | Exploit | $320.0M | Under review | 55% | Open → |
| Alpen says AI identified Liquid’s $320M BTC exploitIts post-attack replay explains the cache flaw, while SideSwap says a 4,000 L-BTC order faced no size or velocity hold. The post Alpen says AI identified Liquid’s $320M BTC exploit in an hour. Could a payout limit have stopped it? appeared first on CryptoSlate . | 2026-09-24 | Not specified | Exploit | $320.0M | Under review | 55% | Open → |
| Australia says OpenAI agentOpenAI notified Australia nearly three months after its agent breached a government portal while gathering public medicine-spending data. | 2026-09-24 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| FBI crypto forum targets scams, hacks and DPRKFBI’s annual crypto crime forum links investigators with security firms as digital-asset fraud, hacks and state-backed threats keep rising. | 2026-09-24 | Not specified | Fraud or scam | Unavailable | Under review | 55% | Open → |
| $20 Million in XRP Stolen From Thousands ofAttackers drained roughly 11.7 million XRP from thousands of D’CENT App Wallet users. The theft, worth close to $20 million, unfolded between September 15 and 20. XRPL.to published the on-chain forensic timeline. The operation unfolded across six separate waves. It hit a combined 6,678 wallets using keys the thief already controlled. How the Attack Actually The post $20 Million in XRP Stolen From Thousands of Hardware Wallets appeared first on BeInCrypto . | 2026-09-23 | Multi-chain | Security incident | $20.0M | Confirmed | 80% | Open → |
| White hats recover 52 Bitcoin from Coldcard exploit,A Sept. 21 transaction points owners toward a trust address check for an earlier disclosed rescue, with any return subject to verification. The post White hats recover 52 Bitcoin from Coldcard exploit, and a new public portal lets victims check eligibility appeared first on CryptoSlate . | 2026-09-24 | Bitcoin | Exploit | Unavailable | Under review | 55% | Open → |
| $20 Million in XRP Stolen From Thousands ofAttackers drained roughly 11.7 million XRP from thousands of D’CENT App Wallet users. The theft, worth close to $20 million, unfolded between September 15 and 20. XRPL.to published the on-chain forensic timeline. The operation unfolded across six separate waves. It hit a combined 6,678 wallets using keys the thief already controlled. How the Attack Actually The post $20 Million in XRP Stolen From Thousands of Hardware Wallets appeared first on BeInCrypto . | 2026-09-23 | Multi-chain | Security incident | $20.0M | Confirmed | 80% | Open → |
| An AI Agent JustAnthony Albanese said the agent accessed public and non-public files on a Medicare statistics portal in June, calling OpenAI's three-month delay in disclosing the breach "unacceptable." | 2026-09-23 | Not specified | Security incident | Unavailable | Confirmed | 80% | Open → |
| Americans Would Use Stablecoins—If They Came With BankA Visa survey found U.S. willingness to use stablecoins for cross-border transfers rises from 36% to 56% when paired with hypothetical bank-level fraud protection and deposit insurance. | 2026-09-23 | Not specified | Fraud or scam | Unavailable | Confirmed | 80% | Open → |
| Former Hack VC partner Hsin-Ju Chuang found deadThe crypto executive and Dystopia Labs founder previously held senior roles at Stellar and Solana before joining venture capital firm Hack VC. | 2026-09-23 | Solana | Security incident | Unavailable | Confirmed | 80% | Open → |
| Nearly $20 million in XRPXRPL.to traces six waves through Sept. 20, while DCENT says exposed App Wallet phrases must be replaced, even on hardware. The post Nearly $20 million in XRP drained from 6,678 wallets across six attack waves appeared first on CryptoSlate . | 2026-09-23 | Not specified | Security incident | $20.0M | Under review | 55% | Open → |
| Cosmos Hub restarts after 25-hour halt, moves $2MThe incident highlights the critical need for robust governance security and cross-chain risk management in decentralized ecosystems. The post Cosmos Hub restarts after 25-hour halt, moves $2M in stolen tokens from attacker’s wallet appeared first on Crypto Briefing . | 2026-09-23 | Not specified | Security incident | $2.0M | Under review | 55% | Open → |
| EU central banks attack MiCA rules and stablecoinThe reported plan swaps mandatory bank deposits for one-day and five-day liquidity tests, shifting where redemption risk lands. The post EU central banks attack MiCA rules and stablecoin runs are blamed appeared first on CryptoSlate . | 2026-09-23 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| North Korea's Fake Job InterviewsA seven-agency advisory ties the WaterPlum hacking crew and Pyongyang's remote IT worker scheme to the same bureau. | 2026-09-23 | Not specified | Security incident | $11.0M | Under review | 55% | Open → |
| Whitehats move 52 bitcoin from the Coldcard hackAccording to Galaxy Digital, the good guys have moved 52 BTC to an address carrying an OP_RETURN message reading "claim:cryptorecoverytrust dot com." | 2026-09-22 | Bitcoin | Security incident | Unavailable | Confirmed | 80% | Open → |
| White hats outrun Coldcard hackers in 52-Bitcoin evacuationWhite hats secured about 40% of the Bitcoin moved in the Coldcard exploit’s second wave, transferring it to a Wyoming trust for victims. | 2026-09-22 | Bitcoin | Exploit | Unavailable | Under review | 55% | Open → |
| Ledger CTOTL;DR: Charles Guillemet, Chief Technology Officer at Ledger, issued a public alert on September 21, 2026, regarding the DarkSword exploit chain targeting Safari. The threat chains six iOS security flaws that compromise the JavaScriptCore engine, bypass sandbox isolation, and exploit the system kernel. Google confirmed that the original vulnerabilities in the chain were patched starting ... Read more | 2026-09-21 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| SlowMistSlowMist has warned that attackers may have adapted the Darksword exploit chain to compromise devices running iOS 26.5 and extract private keys from self-custody crypto wallets. SlowMist Chief Information Security Officer 23pds said attackers are using Darksword to bypass Apple’s… | 2026-09-21 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| Pragma flags 6 price feeds as critical riskThe September 18 assessment exposes a gap between oracle valuations and the liquidity lenders need to sell collateral. The post Pragma flags 6 price feeds as critical risk following $3.5M Starknet lending exploit appeared first on CryptoSlate . | 2026-09-22 | Not specified | Exploit | $3.5M | Under review | 55% | Open → |
| SlowMistSlowMist has warned that attackers may have adapted the Darksword exploit chain to compromise devices running iOS 26.5 and extract private keys from self-custody crypto wallets. SlowMist Chief Information Security Officer 23pds said attackers are using Darksword to bypass Apple’s… | 2026-09-21 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| Google Admits Gemini AIGoogle learned in late July that Gemini had breached three real companies during a May security test, but said nothing publicly for seven weeks. | 2026-09-21 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Why Balancer’s $1.4M hack recovery won’t pay LPsThe pending plan uses attack-time losses and pre-exploit pool balances, but no V1 claim window is open. The post Why Balancer’s $1.4M hack recovery won’t pay LPs anytime soon appeared first on CryptoSlate . | 2026-09-21 | Not specified | Exploit | $1.4M | Under review | 55% | Open → |
| Why Balancer’s $1.4M hack recovery won’t pay LPsThe pending plan uses attack-time losses and pre-exploit pool balances, but no V1 claim window is open. The post Why Balancer’s $1.4M hack recovery won’t pay LPs anytime soon appeared first on CryptoSlate . | 2026-09-21 | Not specified | Exploit | $1.4M | Under review | 55% | Open → |
| One wallet links $1.55 million FetchAI theft toFetch.ai says its own contracts were unaffected, while shared bridge routes leave an unresolved NTX supply question. The post One wallet links $1.55 million FetchAI theft to massive 408.5 million NTX mint appeared first on CryptoSlate . | 2026-09-21 | Not specified | Security incident | $1.6M | Under review | 55% | Open → |
| SecondFiSecondFi has warned holders of compromised wallets not to redeem upcoming NIGHT allocations after confirming that Midnight’s claim system requires tokens to be claimed through the original wallet address. According to SecondFi, some users affected by its June security incident… | 2026-09-21 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| X sues Bitcoin account operators over alleged $278KX alleges six Bitcoin-focused accounts coordinated posts and engagement to inflate creator payouts, with claimed and projected losses of at least $378,000. | 2026-09-21 | Bitcoin | Fraud or scam | $278.0K | Confirmed | 80% | Open → |
| SecondFiSecondFi has warned holders of compromised wallets not to redeem upcoming NIGHT allocations after confirming that Midnight’s claim system requires tokens to be claimed through the original wallet address. According to SecondFi, some users affected by its June security incident… | 2026-09-21 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| MultiversXMultiversX has come under formal trading review at Upbit after the South Korean exchange flagged EGLD on Sept. 21 following a mainnet security incident that forced the network to stop progressing. Upbit’s official notice designated EGLD/KRW, EGLD/BTC and EGLD/USDT as… | 2026-09-21 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Fetch.aiFetch.ai reports a security breach affecting SingularityNET contracts, revealing crucial operational updates. The post Fetch.ai Confirms SingularityNET Exploit appeared first on Coinfomania . | 2026-09-20 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Fetch.ai and NuNetThe same exploiter was linked to attacks involving Fetch.ai (FET) and NuNet (NTX), with roughly $2 million in assets involved. Security firms tied both events to the same wallet. NuNet’s token lost more than 70% of its value and touched an all-time low on September 20. How One Attacker Reached Two Protocols Blockaid said on The post Fetch.ai and NuNet Exploited for $2 Million by Same Attacker, NTX Hits All-Time Low appeared first on BeInCrypto . | 2026-09-20 | Not specified | Exploit | $2.0M | Under review | 55% | Open → |
| Blink Wallet pauses services after attacker drains custodialThe breach underscores the inherent risks of custodial crypto services, accelerating the shift towards self-custody amid regulatory pressures. The post Blink Wallet pauses services after attacker drains custodial accounts appeared first on Crypto Briefing . | 2026-09-19 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| GoogleFour frontier AI labs have now confirmed that their models reached the open internet and then accessed the systems of real companies. Google joined that list on Friday, roughly four months after its own incidents happened. Gemini accessed three real companies during a May evaluation. Notably, the model stopped in all three cases. Google’s Gemini The post Google Confirms Gemini Hacked 3 Real Companies in May Safety Test appeared first on BeInCrypto . | 2026-09-19 | Not specified | Security incident | Unavailable | Confirmed | 80% | Open → |
| Investigadores ganan $6,500 tras hackear OpenAI con ClaudeEl propio modelo de IA de un competidor terminó haciendo la mayor parte del trabajo en un ataque contra OpenAI. Los investigadores de Hacktron AI usaron Claude, de Anthropic, para escribir código de exploit funcional. Toda la intrusión tomó menos de 72 horas. OpenAI terminó pagando una recompensa de 6,500 dólares cuando el equipo demostró El post Investigadores ganan $6,500 tras hackear OpenAI con Claude de Anthropic fue visto por primera vez en BeInCrypto . | 2026-09-18 | Not specified | Exploit | $6 | Confirmed | 80% | Open → |
| 7,000 Crypto Wallets Targeted as North Korean HackersTL;DR: Japan’s National Police Agency and the FBI confirmed the infection of over 30,000 devices and the theft of credentials from 7,000 wallets across more than 100 countries. Addresses controlled by the attackers received at least 1.7 billion yen (approximately $10.71 million) between December 2025 and July 2026. Law enforcement dismantled Japan’s first operational “laptop ... Read more | 2026-09-18 | Not specified | Credential compromise | $10.7M | Confirmed | 80% | Open → |
| North Korean hackers stole 7,000 crypto wallet records,North Korea linked hacking group WaterPlum has compromised more than 30,000 devices across over 100 countries and regions, stealing information from more than 7,000 cryptocurrency wallets while targeting developers through fake recruitment campaigns. Japan’s National Police Agency said on Sept.… | 2026-09-18 | Not specified | Credential compromise | Unavailable | Under review | 55% | Open → |
| Blockchain malware activity jumps 440% as AI lowersPublic chains preserve malware instructions beyond ordinary domain takedowns, shifting defense toward monitoring wallets, contracts and off-chain servers. The post Blockchain malware activity jumps 440% as AI lowers the barrier for North Korea and Iran-linked hackers appeared first on CryptoSlate . | 2026-09-18 | Not specified | Malware | Unavailable | Under review | 55% | Open → |
| Ethereum Founder Vitalik Buterin Says AI Won’t DoomThe Ethereum co-founder said AI could help developers mathematically verify entire software systems, turning the same technology powering new attacks into a tool for defense. | 2026-09-17 | Ethereum | Security incident | Unavailable | Under review | 55% | Open → |
| Cardano’s Splash fix patches the exploit, but leavesThe exploit drained 2.42 million ADA net, while OADA lacks protocol redemption and faces a thin-pool overhang. The post Cardano’s Splash fix patches the exploit, but leaves 2.4M ADA missing and holders trapped appeared first on CryptoSlate . | 2026-09-17 | Not specified | Exploit | Unavailable | Under review | 55% | Open → |
| Hacker turned 55 days of failed transactions into a $3 million master key thatLedger timestamps and SDK patches show why signed intent needed automatic checks before funds reached a bridge. The post Hacker turned 55 days of failed transactions into a $3 million master key that drained GalaChain wallets appeared first on CryptoSlate . | 2026-09-17 | Not specified | Security incident | $3.0M | Under review | 55% | Open → |
| State hackers drive 420% surge in onchain malware,North Korea-linked hackers used Tron, Aptos and BNB Chain to maintain malware infrastructure, while suspected Iran-linked actors embedded directions in Bitcoin transactions. | 2026-09-17 | Bitcoin | Malware | Unavailable | Under review | 55% | Open → |
| Chainflip to reset TRON USDT provider balances toProviders retain a separate on-chain record of what they are owed, but Chainflip has not disclosed repayment timing. The post Chainflip to reset TRON USDT provider balances to zero following $736,000 exploit appeared first on CryptoSlate . | 2026-09-17 | Tron | Exploit | $736 | Under review | 55% | Open → |
| Revolut says no direct contact after $3 millionRevolut says it received no direct contact despite separate ransom demands for $3 million in Monero and 10,000 Bitcoin from competing breach claimants. | 2026-09-17 | Bitcoin | Security incident | $3.0M | Confirmed | 80% | Open → |
| Chainflip to reset TRON USDT provider balances toProviders retain a separate on-chain record of what they are owed, but Chainflip has not disclosed repayment timing. The post Chainflip to reset TRON USDT provider balances to zero following $736,000 exploit appeared first on CryptoSlate . | 2026-09-17 | Tron | Exploit | $736 | Under review | 55% | Open → |
| ERA Launches Software Wallet, Turning Its Hardware DeviceThe companion app connects to the ERA hardware wallet to add portfolio management, swaps, and dApp access across 14 networks — while private keys never leave the device. The release follows a full independent security audit by Cure53, and lands alongside a major update to ERA Lens, ERA’s on-device scam-warning system, plus new hardware-side capabilities The post ERA Launches Software Wallet, Turning Its Hardware Device Into a Full Self-Custody Ecosystem appeared first on BeInCrypto . | 2026-09-16 | Multi-chain | Credential compromise | Unavailable | Under review | 55% | Open → |
| OpenAI's Rogue AI Agents Were Probing Hugging FaceAn independent researcher found the agents hijacked Hugging Face accounts and mapped the platform's defenses as early as May 13—activity OpenAI's own incident report never fully described. | 2026-09-16 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Hackers Hijack HBO Max’s Reddit Account to SpreadAttackers ran 108 malicious ads through the streaming service’s verified account, directing users to fake software downloads. | 2026-09-16 | Not specified | Malware | Unavailable | Confirmed | 80% | Open → |
| Celsius sues BitMEX for $495 million just 11Celsius Network’s bankruptcy estate has sued BitMEX over a 2020 liquidation cascade it says cost more than 6,360 Bitcoin. The complaint, filed Sept. 12 in the US Bankruptcy Court for the Southern District of New York, accuses entities behind the crypto derivatives exchange of fraud, market manipulation and wrongful liquidations during Bitcoin’s historic March 2020 […] The post Celsius sues BitMEX for $495 million just 11 days before exchange shutdown appeared first on CryptoSlate . | 2026-09-16 | Bitcoin | Fraud or scam | $495.0M | Under review | 55% | Open → |
| VymopayMost people searching for a no-kyc crypto exchange alternative are not looking for less compliance, they are looking for less exposure. Less counterparty risk. Less reliance on a custodian that could be hacked, frozen, or insolvent when they need their… | 2026-09-16 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| KREMLIN malware uses Ethereum to update attack serversKREMLIN malware uses malicious Chrome and Edge extensions plus Ethereum smart contracts, with Elastic tracing 1,515 infected hosts, mostly in Brazil. | 2026-09-16 | Ethereum | Malware | Unavailable | Under review | 55% | Open → |
| Did crypto’s $20 Billion DeFi surge just getStablecoin growth stayed below 6% while ETH and SOL gained more than 32%, leaving the inflow picture unresolved. The post Did crypto’s $20 Billion DeFi surge just get stolen by price inflation? appeared first on CryptoSlate . | 2026-09-15 | Not specified | Security incident | $20.0B | Under review | 55% | Open → |
| Balancer proposes shutdown and treasury distribution to BALBalancer's shutdown highlights governance challenges in DeFi, emphasizing the need for adaptive strategies amid financial instability and exploits. The post Balancer proposes shutdown and treasury distribution to BAL holders appeared first on Crypto Briefing . | 2026-09-14 | Not specified | Exploit | Unavailable | Confirmed | 80% | Open → |
| MetaMask Adds New Wallet Protections Against Crypto ScamsMetaMask’s latest safeguards flag suspicious transfers and stop transactions that don’t match their previews. | 2026-09-14 | Not specified | Fraud or scam | Unavailable | Under review | 55% | Open → |
| AI Agents Just Slashed the Cost of aThe ECDSA.Fail challenge cut a resource benchmark for one component of a potential quantum attack by 86%. | 2026-09-10 | Bitcoin | Security incident | Unavailable | Under review | 55% | Open → |
| Anthropic Discloses Fourth Claude Hacking Incident as DebateThe company now says attacks during security tests exposed model behavior failures, after initially emphasizing errors in its testing infrastructure. | 2026-09-10 | Not specified | Security incident | Unavailable | Under review | 55% | Open → |
| Trezor, BitBoxBitBox said multiple Bitcoin companies appeared to have been targeted through a shared newsletter provider, while Trezor confirmed a breach at its email service. | 2026-09-10 | Multi-chain | Phishing | Unavailable | Under review | 55% | Open → |