Typus Finance Drained $3.4 Million Exploiting Custom Oracle Access Flaw
Unaudited custom oracle code with a missing authorization check enabled a $3.4M price manipulation attack on the TLP contract.
Telegram Social Engineering Scam Drains User Funds with False Recovery Promises
This loss recovery scheme weaponizes emotional vulnerability and social proof to funnel non-reversible USDT into international scam wallets.
Exchange Private Key Compromised via Partner Social Engineering Attack
Off-chain social engineering against third-party vendors remains a critical attack vector, bypassing hardened on-chain controls.
State-Sponsored APT Groups Use InvisibleFerret Backdoor to Steal Digital Assets
The InvisibleFerret backdoor, coupled with zero-day exploitation, bypasses endpoint security to exfiltrate wallet data, posing an extreme systemic risk.
Unpatched Ray AI Framework Flaw Exploited to Launch Global Cryptomining Botnet
Critical unauthenticated Ray API access allows threat actors to weaponize compute clusters for self-propagating, illicit cryptojacking.
DeFi Hacker Arrest Triggers Quantum-Safe Security Rush across Blockchain Industry
A single, successful exploit has forced a strategic pivot, validating the long-term, existential threat posed by quantum-level cryptanalysis.
GANA Payment Protocol Drained $3.1 Million via Smart Contract Logic Flaw
A critical access control failure in the payments contract allowed an unauthorized ownership alteration, leading to an immediate, systemic $3.1M liquidity drain.
Law Enforcement Arrests Hacker for DeFi Platform Vulnerability Theft
The successful apprehension of a threat actor confirms that jurisdictional boundaries are closing on DeFi exploiters, fundamentally shifting the risk calculus for future attacks.
AI Framework Vulnerability Exploited for Global Self-Propagating Cryptojacking Operation
Unauthenticated Remote Code Execution in the Ray AI framework's API is being weaponized to hijack high-value compute resources for illicit cryptocurrency mining, turning orchestration features into a global botnet.
