SEC Staff Clarifies State Trust Companies Qualify as Digital Asset Custodians
The SEC Staff's no-action relief provides a critical, compliant pathway for Registered Investment Advisers to custody client digital assets via state-chartered trusts.
Iran Central Bank Imposes Stablecoin Purchase and Holding Limits
Iranian citizens now face strict annual stablecoin purchase and total holding limits, necessitating immediate portfolio rebalancing and compliance adjustments.
Hyperdrive Operator Permissions Exploited, $700k Drained from Treasury Markets
A critical flaw in Hyperdrive's operator permissions allowed unauthorized manipulation of Treasury Market positions, leading to significant capital loss and market disruption.
Tangem Hardware Wallets Vulnerable to PIN Brute Force “Tearing Attack”
A physical side-channel vulnerability in Tangem cards enables rapid PIN brute-forcing, directly exposing user assets to theft if physical access is gained.
Ethereum Staking Validators Suffer Slashing Incident Due to Operational Errors
Operational misconfigurations in Ethereum validator infrastructure led to a slashing event, exposing systemic risks within liquid staking derivatives.
Tangem Hardware Wallet PIN Brute-Forced via Physical Side-Channel Attack
A critical physical side-channel vulnerability in Tangem hardware wallets enables PIN brute-forcing, exposing user assets to direct theft.
User Wallet Drained by Phishing Permit Signature Exploit
Malicious permit signatures leveraging EIP-2612 enable off-chain asset drainage, posing a critical risk to DeFi users' staked and wrapped holdings.
Supply Chain Attack Poisons JavaScript Packages, Threatening Crypto Wallets
A phishing compromise of critical JavaScript package maintainers exposed DeFi to widespread transaction redirection, highlighting systemic supply chain vulnerabilities.
Venus Protocol Recovers $13.5 Million from Lazarus Group Phishing Attack
A targeted phishing exploit against a high-value user's delegated account control enabled asset drain, underscoring critical off-chain vulnerability.
Venus Protocol Recovers $13.5 Million after Phishing Attack
A compromised user account, exploited via phishing, underscores the critical risk of off-chain vectors impacting on-chain asset security.
SwissBorg Solana Earn API Compromise Drains $41 Million
A third-party API vulnerability allowed unauthorized access to SwissBorg's SOL Earn program, resulting in significant asset loss for users.
Multi-Signature Wallet Drained via Sophisticated Phishing Attack
A meticulously crafted phishing campaign exploited multi-signature wallet approval mechanisms, enabling the unauthorized transfer of significant digital assets.
