News linked to this event type.
According to The Block, the Securities and Futures Commission of Hong Kong (SFC) issued a circular requiring licensed virtual asset trading platforms and internet brokers to stop using one-time passwords (OTP) for user login and device binding within 12 months, and instead adopt stronger authentication methods such as passkeys (Passkey) and device binding. This move stems from deception attacks accounting for up to 57% of Hong Kong cybersecurity incidents in 2025. The SFC also requires all institutions to establish monitoring systems for suspicious logins, transactions, and withdrawals, and promptly notify customers of unusual account activity; large brokers must implement the new authentication measures immediately. The SFC emphasized that if internal control deficiencies within an institution lead to customer losses, relevant parties will be held accountable.
Gate issued an announcement regarding the recent "user asset theft incident," sharing internal comprehensive verification results, analysis of the incident's cause, and progress on subsequent handling. Regarding the verification process and key facts, the announcement stated that after comprehensive verification, materials submitted by the applicant at the time, including account information, real-name information, transaction records, Alipay screen recordings, etc., matched the account completely. According to analysis by the technical team, Alipay screen recordings can only be made by the customer themselves or someone with access to the customer's Alipay account. Alipay possesses an extremely strict real-time risk control system; logging into Alipay on a different device will mandate multi-factor authentication. This indicates a situation involving serious leakage of customer information or device compromise. Regarding the Gate platform audit mechanism, the announcement stated that the Company's security unbinding audit mechanism strictly executes the four-fold verification process of "Multi-channel advance notification + System risk control preliminary screening + Manual multi-layer review + Time protection," and never has nor will it approve any security item change application based on a single material alone. Gate always takes information security and customer data protection as the Company's core management requirements. The issue of internal information leakage mentioned by some parties does not exist. Regarding fund recovery and subsequent handling, the announcement stated that Gate processed the matter with the highest priority immediately after the incident occurred, coordinating security, compliance, legal, business, and other teams to carry out on-chain analysis and asset tracking and freezing. It continues to coordinate with third-party institutions such as Tether to advance fund freezing. Subsequently, it will also actively cooperate with judicial authorities in investigations and data collection. Any substantive progress will be communicated immediately.
According to Fortune, DeFi asset management and risk analysis company Gauntlet completed a $125 million financing round, exclusively invested by Japanese financial group SBI Holdings. The financing was completed in June this year, and the specific valuation was not disclosed. This is Gauntlet's largest financing round since its establishment in 2018, far exceeding its $24 million Series B round in 2022 led by Ribbit Capital at a $1 billion valuation. Gauntlet was founded by former Wall Street quantitative trader Tarun Chitra. It initially focused on providing stress testing and vulnerability analysis services for DeFi protocols. Later, as the DAO governance model waned, it gradually transitioned to a "treasury curation" business—assessing yield strategy risks through quantitative analysis to help institutional investors manage digital asset allocation. Currently, its clients include asset management giant Apollo, Coinbase, and stablecoin issuer Circle.
According to official sources, TAC issued a statement regarding the significant price drop in the past 24 hours, stating that the protocol was not attacked, on-chain assets are secure, and the system is operating normally; the team and early investors did not participate in the sell-off, relevant tokens remain in the lock-up and vesting period, and there is no possibility of unlocking at this stage.
Odaily Odaily News According to Onchain Lens monitoring, on July 6, the Summer.fi attacker wallet (0x7BF...b3bdca) received 6.017 million DAI from the Summer.fi attack incident; subsequently, 1.35 million DAI have been transferred, swapped for ETH via Uniswap, and then sent to Tornado Cash through a second wallet (0x46e...eba7). The original wallet still holds approximately 4.67 million DAI, while the second wallet still holds 50 ETH.
According to PPP Prediction Market Tool monitoring, the probability of "WTI crude oil rising to $80 by July 2026" on Polymarket has reached 47%, up 28% in 24 hours.Trump stated today that he may launch a large-scale attack on Iran. As the 60-day ceasefire agreement between the US and Iran becomes precarious, oil tanker traffic through the Strait of Hormuz has "basically come to a standstill." Kpler senior oil analyst Navin Das stated that since the US and Iran reached a 60-day ceasefire agreement on June 17, the average daily number of tankers passing through has been approximately 32. This figure is nearly three times the average daily traffic between the outbreak of the conflict (February) and the signing of the agreement on June 17, though still far below pre-war levels.Join the PPP Signal Push Community to stay ahead and seize the opportunity.
: In response to the online rumor of "Gate being hacked for 1.7 million", the platform's founder and CEO, Dr. Han, posted a tweet saying: "The whole story is here. Some controversies become clear after you read it." Previously, the official Gate account had already released a full disclosure and review of the incident.
Gate 华语官方 X 账号发文披露,针对网传"Gate 被盗 170 万美元"事件,Gate 官方对完整操作时间线进行了还原。7月 4 日至 6 日期间,涉事账户通过活体人脸验证、历史交易记录核验等多重身份验证,完成了手机解绑、谷歌验证码重置、登录密码及资金密码修改等操作;7月 7 日,该账户在一台历史老设备上通过旧 Passkey 登录,随后经全面身份验证完成 5 笔提现,共涉及约 49.96 ETH、746,475 枚 HSK 及 1,565,982 枚 USDT;7月 8 日,用户方才向客服反馈资产被盗。Gate 强调,所有操作轨迹均来源于平台后台完整留存数据,可溯源核验,目前全站用户资产及账户安全。
Gate has responded on platform X to alleged user asset theft, stating: "The incident shows that the customer initiated withdrawal operations between 15:00-16:00 (UTC+8) on July 7, and reported the fund loss to online customer service at 17:00 (UTC+8) on July 8. Gate immediately activated its verification mechanism. The matter is currently under urgent investigation. Initial assessment indicates an isolated case with no system security vulnerabilities, and the website is operating normally."According to preliminary checks, the possibility of user information leakage cannot be ruled out in this incident, and the specific circumstances are still under investigation. Gate will disclose details of the event as soon as the investigation is concluded.Additionally, during the dissemination of related information, unverified content has been widely shared. We urge netizens to maintain their ability to discern credible sources.Finally, we remind all users to log in through official channels and enable two-factor authentication to ensure fund security. Protecting user asset security has always been Gate's top priority."
According to The Block, BNB Chain is building a new Layer 1 blockchain designed specifically for agent trading, targeting transaction pre-confirmation in under 50 milliseconds, and suppressing MEV behaviors such as sandwich attacks by eliminating the public mempool (adopting the TxStream mechanism). The new chain will also reserve block space for oracles, liquidations, and cross-chain bridges via PriorityLane, with a designed throughput target exceeding 100,000 TPS, and supporting sub-second block finality. This chain will become the fourth chain in the BNB Chain ecosystem, connected to BNB Smart Chain via a native bridge, with BSC serving as the settlement hub. The testnet is planned to launch at the end of 2026, and the mainnet is expected to deploy in early 2027.
BNB Chain is developing a new Layer 1 blockchain designed for Agentic Trading, releasing the first detailed architectural information after months of research and development. According to BNB Chain's disclosed technical roadmap for the second half of 2026, the new chain will run in parallel with the existing BNB Chain ecosystem, targeting transaction preconfirmation times of less than 50 milliseconds. The goal is to deliver an execution experience close to that of centralized exchanges (CEX) while retaining the advantages of on-chain self-custody and transparency.In terms of technical architecture, the new chain will remove the traditional public mempool and introduce a transaction transmission mechanism called "TxStream," which directly sends transactions to block producers to reduce latency and minimize MEV extraction behaviors such as sandwich attacks. (The Block)
Secret Network 团队提议将隐私区块链从 Cosmos 迁移至 Arbitrum,称 AI 使旧代码更易被攻击的安全风险及生态流动性下降是主要考量。
According to official sources, Summer.fi released a post-mortem stating that on July 6, the attacker manipulated the share prices of two Lazy Summer USDC vaults by injecting overvalued Silo tokens into an offline Ark still included in the NAV, and extracted approximately $6.04 million in a single atomic transaction.
Odaily Zcash's native token ZEC rose over 12% on Tuesday after the team responsible for developing its privacy pool said it is nearing completion of a mathematical proof to confirm that there are no undetectable counterfeit minting vulnerabilities in the latest Zcash shielded pool.The verification work, driven by Project Tachyon, is aimed at Zcash's upcoming Ironwood shielded pool. Zcash founder Zooko Wilcox stated that the project is on the verge of producing a mathematical proof, with the goal of proving that the latest Zcash privacy pool has no undetectable minting vulnerabilities.This development follows the disclosure last month of a serious counterfeit vulnerability in the Zcash Orchard shielded pool. At the time, the flaw sparked market concerns about the potential for undiscoverable, hidden inflation risks within Zcash's privacy system, causing ZEC to drop by over 40% within two days.Developers say that with the help of AI-assisted formal verification, proof work that previously might have taken years has now been compressed to a few weeks. The news pushed ZEC back above $500, its highest level since early June. (The Block)
Odaily, on-chain security firm Specter has released preliminary findings on the BONK DAO governance attack. After tracing on-chain fund flows, significant suspicions have emerged: the Realms founder, an address associated with Crypto Notte, shows signs of capital flow interaction with the suspected attacker's wallet.According to the review, the attacker published a malicious governance proposal on June 30. The proposal required 1% of the total BONK circulating supply in voting power to pass. Between July 4 and 5, the attacker acquired sufficient voting weight by purchasing tokens through exchanges and borrowing from Marginfi, totaling approximately $4 million, thereby pushing forward and executing the governance attack.
the Zcash development team announced plans to introduce formal verification through the upcoming new privacy pool Ironwood, using mathematical proof methods to eliminate the risk of "Undetectable Counterfeiting."Previously, although the vulnerability in the Orchard shielded pool has been fixed and there is no evidence of exploitation, the community decided to launch a completely new Ironwood shielded pool and perform comprehensive formal verification on its protocol, as it is theoretically impossible to confirm through on-chain history whether covert counterfeiting has occurred.
Du Jun, co-founder of ABCDE Capital, publicly stated that Li Bojie, founder of Metagent, is "the founder with the least sense of contract" he has ever worked with.Du Jun said that Li Bojie founded Metagent in 2024 and secured investment from ABCDE Capital, but subsequently refused to fulfill the basic obligations stipulated in the investment agreement, including keeping investors informed of business progress and financial status, and then even went completely missing. Du Jun stated that while venture capital can accept project failures, it cannot tolerate fraudulent behavior such as founders "absconding" with the investment funds.
According to Onchain Lens monitoring, the Summer.fi attacker is actively transferring funds. The relevant address is splitting 6.017 million DAI into multiple small transactions and swapping them for ETH via Uniswap.
According to official announcements, Summer.fi released a security notice stating that the team discovered an active vulnerability affecting Lazy Summer Protocol earlier today. As a precautionary measure, Guardians have paused all vaults and set deposit limits to zero across all networks. The incident is currently under assessment, and the team advises users not to interact with the protocol until further notice. A full update will be published as soon as possible.
据官方消息,BonkDAO 表示,其 DAO 金库 因一项恶意治理提案遭攻击,约价值 2000 万美元的 BONK 代币被盗。调查显示,相关地址曾在提案发起前通过交易所钱包购买 BONK。BonkDAO 正与交易所、跨链桥及 Solana 基金会合作处理此事,执法部门已获通知,后续将继续推进资金追回及责任追查。