Brazilian Crypto Investors Targeted by WhatsApp Social Engineering Malware
The Eternidade Stealer, a sophisticated banking trojan, weaponizes WhatsApp social engineering to steal user private keys and financial credentials.
Stablecoin Bank Drained $50 Million via Compromised Internal Private Key
A single point of failure in key management allowed a $49.5 million reserve drain, underscoring the acute insider threat vector.
OKX Web3 Wallet Backdoor Allegation Triggers $955,000 Security Bounty
Unproven wallet backdoor claims expose the systemic risk of closed-source key management, demanding immediate user fund migration.
Payment Platform UPCX Drained by Compromised Administrative Private Key Exploit
The compromise of a single administrative private key enabled a malicious smart contract upgrade, bypassing all on-chain logic to drain $70 million in assets.
Centralized Exchange Drained $44.2 Million via Employee Malware Attack
A sophisticated social engineering vector bypassed internal controls, leveraging employee access to compromise core exchange servers and drain assets.
Web3 Social Platform UXLINK Drained $41 Million via Multi-Sig Key Compromise
A multi-sig wallet's private key compromise enabled an attacker to weaponize a `delegatecall` function, resulting in unauthorized token minting and a $41M capital drain.
High-Value Hyperliquid User Wallet Drained by Private Key Compromise
The compromise of a single EOA's private key allowed a $21M asset drain, underscoring the catastrophic risk of centralized key management failure.
Threat Actor LARVA-208 Targets Web3 Developers via Fake AI Platform Malware
Sophisticated spearphishing campaign delivers the Fickle infostealer via malicious 'audio driver' download, compromising developer credentials and project supply chains.
Centralized Exchange Hot Wallet Compromise Drains $48 Million across Seven Chains
A critical compromise of CEX hot wallet private keys enabled a multi-chain asset drain, exposing systemic risk in centralized key management.
