DeFi Payment Protocol Drained after Centralized Admin Key Compromise
A compromised administrative private key allowed a threat actor to seize contract ownership, manipulate reward logic, and execute a $3.1M asset drain.
DeFi Payment Platform Drained after Centralized Admin Key Compromise
Centralized contract authority remains a critical risk; a single compromised admin key can bypass core protocol logic to drain all user assets.
Web3 Users Compromised by EtherHiding Malware Campaign via JavaScript Injection
Threat actors are leveraging compromised websites and four BSC contracts to deploy credential-stealing malware, bypassing traditional network defenses.
