News linked to both this project and an event.
Haseeb posted on X, stating that with models like GLM 5.2, Fable, and GPT 5.6 already launched and actively used by attackers, DeFi has not experienced the anticipated "hacker apocalypse." Chart data shows that based on the current year's data and running rate, the annualized amount stolen from DeFi in 2026 is approximately $1.89 billion. The cumulative stolen amount for the year is around $986 million, lower than the 2025 level and still within the historical range. Haseeb noted that the deeper change now is that while the number of hacker attacks has increased, the scale of individual attacks is declining more rapidly. Attackers are increasingly targeting smaller protocols and abandoned projects, while large protocols have implemented more security enhancements. As a result, overall fund security has not significantly deteriorated.
Odaily reports: A court in the state of São Paulo, Brazil, has ordered Coinbase to refund nearly $100,000 to a user who claimed funds deposited in their Coinbase Wallet disappeared in an unauthorized transaction. Coinbase argued that the private keys to the wallet were entirely under the user's control. However, it failed to prove that the transaction was initiated by the wallet holder or that adequate security measures were in place to prevent the incident. The court ruled based on relevant provisions of the Consumer Protection Code and ordered Coinbase to return the full amount plus statutory interest. (Bitcoin.com News).
Bonzo Finance, a lending protocol based on Hedera, suffered an oracle attack, resulting in a loss of approximately $9 million. The attacker exploited collateral whose SAUCE token price had been artificially inflated to borrow assets far exceeding their actual value from the protocol. According to a preliminary incident report released by Bonzo Finance, the attacker deposited only 250 SAUCE tokens, then submitted a single price update that artificially inflated the token's price by approximately 12 orders of magnitude. Subsequently, the address borrowed 6.63 million USDC and 34.5 million wrapped HBAR from the lending pool.This attack was not due to a vulnerability in Bonzo Finance's smart contracts or the underlying Hedera network itself, but rather stemmed from a flaw in the on-chain oracle verifier of the oracle service provider Supra. It erroneously accepted a SAUCE price data point where the signature had been zeroed out. Supra has since confirmed the issue and completed a fix.
prosecutors from Wisconsin and New York have expressed dissatisfaction with stablecoin issuer Circle, as the company has repeatedly refused to cooperate with law enforcement agencies in recovering stolen funds.According to the report, multiple law enforcement agencies had requested Circle to help victims of fraud and hacking incidents recover their losses by burning and reissuing USDC. However, Circle declined these requests based on its own policy stance.Circle stated that modifying the blockchain ledger to reverse transactions would undermine the fundamental properties of the USDC stablecoin and could set a dangerous precedent for the entire crypto industry. This incident highlights the conflict between the immutability of blockchain and the need for law enforcement to recover assets. (Protos)
Gate issued an announcement regarding the recent "user asset theft incident," sharing internal comprehensive verification results, analysis of the incident's cause, and progress on subsequent handling. Regarding the verification process and key facts, the announcement stated that after comprehensive verification, materials submitted by the applicant at the time, including account information, real-name information, transaction records, Alipay screen recordings, etc., matched the account completely. According to analysis by the technical team, Alipay screen recordings can only be made by the customer themselves or someone with access to the customer's Alipay account. Alipay possesses an extremely strict real-time risk control system; logging into Alipay on a different device will mandate multi-factor authentication. This indicates a situation involving serious leakage of customer information or device compromise. Regarding the Gate platform audit mechanism, the announcement stated that the Company's security unbinding audit mechanism strictly executes the four-fold verification process of "Multi-channel advance notification + System risk control preliminary screening + Manual multi-layer review + Time protection," and never has nor will it approve any security item change application based on a single material alone. Gate always takes information security and customer data protection as the Company's core management requirements. The issue of internal information leakage mentioned by some parties does not exist. Regarding fund recovery and subsequent handling, the announcement stated that Gate processed the matter with the highest priority immediately after the incident occurred, coordinating security, compliance, legal, business, and other teams to carry out on-chain analysis and asset tracking and freezing. It continues to coordinate with third-party institutions such as Tether to advance fund freezing. Subsequently, it will also actively cooperate with judicial authorities in investigations and data collection. Any substantive progress will be communicated immediately.
Odaily French Interior Minister Laurent Nuñez confirmed that France recorded 77 crypto-related kidnapping and extortion cases in the first half of 2026, a significant rise from 45 cases throughout the entire year of 2025. Authorities have launched a rapid alert system, with 724 people registered, and emergency measures have led to 200 arrests. Nuñez pledged to introduce a three-part plan to strengthen security measures in the crypto industry, including enhanced intelligence sharing, deeper cooperation with ADAN, and improved coordination among security agencies.CertiK stated that France has become a center for attacks, citing reasons including the presence of multiple leading crypto companies and their executives based locally, a “culture of炫耀 and voluntary disclosure of identity” within the community, and multiple sensitive data breaches. (cointelegraph)
Odaily, Cardano wallet service provider SecondFi has launched an asset recovery wallet check tool, allowing users to preliminarily check whether their relevant wallets have been affected by the previous security incident.SecondFi stated that the addresses currently displayed in the tool are based on the team's preliminary review data of the security incident and are not final. The list may not be complete and does not represent the final scope of recovery.
zero-knowledge scaling company StarkWare has released a Starknet quantum resistance roadmap, stating that the roadmap is divided into three phases to address the risk of future quantum computing attacks. StarkWare CEO Eli Ben-Sasson stated that Starknet can leverage its architectural advantages to achieve quantum resistance, as its underlying cryptography is based on zero-knowledge STARK proofs. According to reports, the first phase of the roadmap includes replacing part of the existing secure mathematical mechanism, Pedersen hash, with a quantum-resistant version, and adding quantum-resistant signatures; the second phase focuses on migration tools, upgrading existing smart contracts without requiring developers to manually rebuild applications; the third phase involves dependencies that Starknet cannot solve alone, primarily relying on Ethereum's quantum upgrade roadmap. Circle, Ethereum, Solana, Tezos, and Algorand have all proposed quantum resistance roadmaps. (Cointelegraph)
: In response to the recent security incident involving Cardano ecosystem project SecondFi, SlowMist founder Cos said on social media that after continuously monitoring the relevant on-chain data, he believes that if the two addresses starting with "addr1q" are both controlled by the attacker, the actual losses for SecondFi users may have exceeded $20 million.Cos stated that based on on-chain behavior analysis, the aforementioned addresses are highly likely related to the attacker, involving stolen assets potentially exceeding 129 million ADA and other tokens.Previously, SecondFi disclosed that this security incident affected approximately 16 million ADA, stating that the issue originated from the web wallet generation software.
: Cross-chain protocol Axelar Network has issued a statement regarding the recent security incident related to Secret Network, clarifying that there is a misunderstanding within the community. Neither Axelar nor the Inter-Blockchain Communication Protocol (IBC) was attacked or compromised. The affected token smart contract was not developed, deployed, or maintained by Axelar. Furthermore, Axelar's firewall mechanism prevented the impact from spreading to other chains.It is reported that the exploited contract was a fork based on the CW20-ICS20 implementation, but the developers removed two core security checks, leading to an "infinite mint" vulnerability. By deleting the verification mechanisms originally designed to prevent such issues, this fork altered the contract's original trust model and was not subjected to a new security audit.Axelar Network explained that anyone can deploy contracts via IBC for wrapping cross-chain assets, and similar contracts are used to wrap tokens from other chains onto Secret Network. However, the specific fork on the Secret side in this incident contained a vulnerability due to the removal of critical security checks. This incident was not caused by an inherent logic flaw or an issue with the IBC protocol itself, but rather a security risk introduced by modifications made to the third-party contract.
The Zodiac team released a security incident analysis report regarding the impact on the Zodiac Roles Modifier, disclosing that the root cause of the vulnerability lies in a flaw in the ERC-1271 transaction signature verification logic: the system determines signature validity solely based on the returned “magic value,” without verifying whether the call itself succeeded—thus potentially allowing failed verifications to be masqueraded as valid signatures and bypassing the module’s authentication mechanism.
Microsoft’s Threat Intelligence Team has disclosed a Windows clipboard cryptojacking trojan that has been active since February 2026. This malware employs a combination of “worm-like propagation,” “clipboard hijacking,” and “Tor-based anonymous communication” to target cryptocurrency users.
Humanity has announced the $H incident recovery plan: The legacy version of H on Ethereum, BNB Smart Chain, and Humanity Mainnet has been deprecated. A new Ethereum ERC-20 version of H will be airdropped 1:1 to eligible holders based on a pre-attack snapshot. Attackers and associated addresses have been excluded.
Odaily, Mitchell Amador, CEO of bug bounty platform Immunefi, stated at the WAIB Summit that new AI models such as Claude Opus 4.8 and ChatGPT 5.5 are shifting the balance of cybersecurity offense and defense in favor of attackers, leading to a resurgence in crypto hacks in 2026. Data from DefiLlama shows that in April 2026, illicit actors stole over $634 million from crypto platforms, the highest monthly total since the Bybit hack in February 2025 drove losses of approximately $1.4 billion.Amador stated that the crypto industry is in a critical survival period for the next three to four years until security teams leverage similar AI models to build codebases that attackers cannot breach; if the industry adopts more crowd-sourced security solutions, this timeline could be shortened to within two years. The latest Claude Mythos model, Fable 5, from AI company Anthropic, previously raised concerns about accelerating the ability to exploit crypto vulnerabilities.Anthropic stated that Fable 5 has safeguards in place that will redirect topics related to cybersecurity and similar fields to Claude Opus 4.8. On April 19, an attacker transferred approximately 116,500 restaked Ethereum (rsETH) from Kelp DAO's LayerZero-based rsETH bridge, valued at around $290 million to $293 million at the time. Cross-chain protocol LayerZero stated that the 1/1 decentralized verification network configuration of Kelp DAO relied on a single verification path for processing cross-chain messages, creating a single point of failure. (Cointelegraph)
Bitget Chief Legal Officer Hon Ng issued an open letter today, announcing the official launch of Bitget’s 2026 Global Anti-Fraud Month campaign under the theme “More Assets, Stronger Protection.” In the letter, Hon Ng noted that as the platform expands from crypto assets to a multi-asset ecosystem, users are facing increasingly complex cybersecurity threats while enjoying broader market access. He emphasized: The multi-asset era means greater responsibility. User protection is not a one-time project but the collective result of continuous risk monitoring, rapid response, security education, and industry collaboration.The open letter also disclosed Bitget’s security and anti-fraud achievements for 2025. Data shows that Bitget intercepted over 150 million malicious attack requests throughout the year, identified more than 13,000 high-risk malicious IP addresses, handled 18,135 user protection cases, and assisted users in recovering approximately $32.3 million in funds related to security incidents and fraudulent activities. Additionally, Bitget’s security system achieved over 2.8 billion risk interceptions through custom protection rules, repelled more than 1.5 billion DDoS attack attempts, and introduced machine learning-based behavioral analysis capabilities to further identify suspicious activities and potential risks.
In response to Radha Stirling’s claims regarding alleged abuse of multiple Dubai-based cryptocurrency individuals in UAE detention facilities, on-chain investigator ZachXBT stated that the individuals referred to as “crypto entrepreneurs” are in fact threat actors suspected of involvement in high-impact social engineering cryptocurrency scams and data ransom operations; law enforcement authorities have seized $18.9 million in stolen funds.
Odaily Seer Prophet Channel monitoring shows that the probability of "Zcash will hit $100 in 2026" on Polymarket has risen to 53%, a 24-hour increase of 36%.Market rules: If between 17:35 on November 24, 2025, and 23:59 on December 31, 2026 (Eastern Time), the lowest price (Low) of any 1-minute candlestick of the Binance ZEC/USDT trading pair reaches or falls below the price stated in the title, this market will immediately settle as "Yes"; otherwise, it will settle as "No." Settlement is based solely on the 1-minute candlestick data of the Binance ZEC/USDT trading pair; prices from other exchanges or trading pairs will not be considered.In previous news, the privacy coin Zcash disclosed and fixed a critical security vulnerability that could have been exploited by malicious miners to transfer over 25,000 ZEC (approximately $6.5 million) from the deprecated Sprout privacy pool. Officials stated that the vulnerability had existed since July 2020 but was not actually exploited, and user funds remained safe at all times. The development team has released version v6.12.0 to complete the fix, and major mining pools have already upgraded their deployments.Odaily Seer Prophet Channel continues to monitor prediction markets, seeing changes before pricing.
: SlowMist posted on X platform, stating that its threat intelligence system has detected a new Rust supply chain malware activity named IronWorm. This malware actively attacks developer environments and the Web3/crypto ecosystem through malicious npm packages. Potential attack behaviors include credential theft, wallet seed phrase and password theft, GitHub repository tampering, malicious package publishing, CI/CD key theft, Tor-based command and control, and covert persistence via eBPF rootkits.SlowMist recommends that security teams audit repositories for backdated commits, suspicious branches, abnormal build hooks, and commits attributed to automated identities such as claude, dependabot, renovate, or github-actions; remove or deprecate affected package versions, publish clean versions, rotate all exposed keys and tokens, review GitHub Actions build artifacts, and rebuild potentially compromised developer or CI systems from clean images. This threat was discovered and analyzed by JFrogSecurity.
: According to an official announcement, on June 3, Trust Wallet announced a partnership with BNB Chain and CoinMarketCap to officially launch the "BNB Hack: AI Trading Agents" hackathon, featuring a total prize pool of $36,000. The Trust Wallet Agent Kit serves as the core on-chain execution technology stack for this event. This hackathon also marks the first time the Trust Wallet Agent Kit has been fully integrated as a core infrastructure component into a top-tier AI Agent hackathon system.The hackathon features two main tracks: "Autonomous Trading Agents" (prize pool $24,000, 5 winners) and "Strategy Skills" (prize pool $6,000, 3 winners), in addition to three partner special awards of $2,000 each. In the "Autonomous Trading Agents" track, participants must leverage the Trust Wallet Agent Kit to achieve local self-custodial signing, autonomous mode operation, and on-chain trade execution, deployed within native BNB Chain scenarios such as PancakeSwap and BSC Perpetual Contracts. The "Strategy Skills" track does not require an execution layer; participants build backtestable strategy proposals based on 12 categories of data tools from CoinMarketCap MCP, including market data, technical indicators, on-chain data, sentiment, and news.Track one uses real PnL as the core evaluation criterion, setting a maximum drawdown limit as the risk control threshold. Track two is comprehensively scored by a judging panel across four dimensions: technical execution, originality, real-world value, and presentation. The build window runs from June 3 to June 21, the trading window from June 22 to June 28, and winners will be announced during the week of July 6. In addition to cash prizes, winning teams will receive CoinMarketCap Pro API subscription credits, mentorship from CMC Labs, and the BNB Chain Kickstart ecosystem support package.
The Resolv Foundation has announced its recovery plan following the protocol security incident. USR/wstUSR tokens held and snapshot-recorded prior to the incident will be redeemed for USDC at a 1:1 ratio, while USR/wstUSR acquired after the incident will be redeemed at a 1:0.5 ratio. RLP holdings will be restored at a core redemption rate of 0.71 USDC per token, with additional RESOLV token allocations based on a reference price of $0.03. The Foundation stated that eligible users may claim their recovery funds between May 26, 2026, and August 26, 2026.