UXLINK Multi-Signature Wallet Compromised via Delegate Call Vulnerability
A critical delegate call flaw in UXLINK's multi-sig wallet granted unauthorized administrative control, enabling significant asset exfiltration.
UXLINK Multi-Signature Wallet Compromised, Billions of Tokens Minted
A delegate call vulnerability in UXLINK's multi-signature wallet granted administrative control, enabling unauthorized token minting and significant financial loss.
UXLINK Multi-Signature Wallet Compromised, $11.3 Million Drained
A delegate call vulnerability in UXLINK's multi-signature wallet granted an attacker administrative control, enabling unauthorized asset transfers and unlimited token minting.
UXLINK Exploiter Loses $48 Million to Sophisticated Phishing Attack
A malicious `increaseAllowance` signature allowed a phishing group to drain $48 million from a prior UXLINK exploiter, underscoring persistent social engineering risks.
UXLINK Multi-Signature Wallet Compromised, $11.3 Million Drained, Tokens Minted
A `delegateCall` vulnerability in UXLINK's multi-signature wallet enabled unauthorized administrative control, leading to asset exfiltration and arbitrary token minting, underscoring critical smart contract design and access control failures.
JavaScript Supply Chain Attack Threatens DeFi Ecosystem
A compromised JavaScript package, widely integrated across DeFi, enables transaction hijacking, posing a systemic risk to user funds and operational integrity.
AdsPower Users Lose Millions to Malicious Browser Extension Supply Chain Attack
A compromised software supply chain enabled attackers to distribute malicious wallet extensions, directly exposing users' private keys and draining substantial digital assets.
Coinbase Customers Suffer $400 Million Loss via Outsourcing Firm Data Breach
The systemic compromise of third-party customer support data enabled sophisticated social engineering, directly jeopardizing user assets and eroding trust in centralized custody.
NPM Supply Chain Compromise Redirects Crypto Transactions via Malicious Packages
A phishing-induced account takeover enabled malicious code injection into widely used NPM packages, silently rerouting cryptocurrency transactions at the browser level.
Outsourcing Service Breach Compromises Crypto Exchange User Data
A sophisticated social engineering and supply chain attack on a third-party vendor exposed user data, leading to over $400 million in crypto losses.
JavaScript Supply Chain Attack Threatens DeFi Wallet Transactions
A phishing-induced compromise of widely used JavaScript packages exposes a critical supply chain vulnerability, allowing attackers to hijack crypto transactions.
Venus Protocol Recovers $13.5 Million from Lazarus Group Phishing Attack
A targeted phishing exploit against a high-value user's delegated account control enabled asset drain, underscoring critical off-chain vulnerability.
Venus Protocol User Phished, $13.5 Million Recovered by Governance
A sophisticated phishing attack leveraging a malicious client compromised a user's delegated account control, exposing DeFi to social engineering vulnerabilities.
NPM Supply Chain Compromised, Crypto Wallets Targeted by Clipper Malware
A compromised open-source dependency allows silent address substitution, posing a systemic risk to browser-based crypto transactions.
Multi-Sig Wallet Drained via Sophisticated Phishing Attack
A meticulously crafted phishing scheme exploited a multi-signature wallet, leveraging disguised approvals to siphon over $3 million in USDC from an unsuspecting investor.
Multi-Sig Wallet Drained by Sophisticated Phishing Attack
A cunning phishing attack exploited a multi-signature wallet, leading to the unauthorized transfer of assets by disguising malicious approvals.
Multi-Signature Wallet Drained via Sophisticated Phishing Attack
A meticulously crafted phishing campaign exploited multi-signature wallet approval mechanisms, enabling the unauthorized transfer of significant digital assets.
Multi-Signature Wallet Drained by Sophisticated Phishing Attack on Approval Mechanism
Advanced phishing leveraging the Safe Multi Send mechanism bypassed multi-sig security, exposing user assets to illicit transfer.
Multi-Sig Wallet Compromised by Sophisticated Phishing Attack
Attackers bypassed security through a meticulously crafted fake contract, enabling illicit fund transfers.
Multi-Sig Wallet Drained by Sophisticated Phishing Attack on Request Finance
Attackers leveraged fake Etherscan-verified contracts and Safe Multi Send to obscure malicious approvals, directly compromising user assets.
Phishing Attack Compromises Multi-Sig Wallet via Malicious Contract Approval
Attackers deployed a verified contract to disguise fraudulent approvals, draining funds from a multi-signature wallet.
JavaScript Supply Chain Attack Hijacks Crypto Transactions across Chains
Attackers compromise widely used JavaScript packages, replacing legitimate crypto transaction destinations with malicious addresses, posing an immediate threat to asset integrity.
Multi-Sig Wallet Drained by Sophisticated Phishing Contract Attack
Attackers deployed a deceptive Etherscan-verified contract, leveraging the Safe Multi Send mechanism to bypass user scrutiny and drain over $3 million.
Multi-Signature Wallet Drained by Sophisticated Phishing Attack
A deceptive phishing attack leveraged fake Etherscan verification and Safe Multi Send to bypass multi-signature wallet security, resulting in significant asset loss.