The Arrakis V1 / G-UNI ENS-WETH liquidity-manager vault was drained via Uniswap V3 spot-price manipulation on August 23, 2026. An attacker used a flash loan to distort the pool's price, mint vault shares, and then redeem them for a profit of approximatel… https://t.co/nadUcrXBVS
Arrakis V1 was affected by spot price manipulation on the Ethereum chain, resulting in a loss of approximately $7,100. #ArrakisV1 https://t.co/kkXcXTDz9r
Term Labs was targeted in a governance attack, resulting in a loss of approximately $8.5 million. The stolen funds, including 2,843 ETH and $1.6 million DAI, are currently held at a specific address. #DAI#TermLabs https://t.co/ODocSVngO9
Stable Mint USD (USDSM) depegged to $0.8868, exceeding a 10% deviation for two consecutive checks. The stablecoin is pegged to USD. #StableMintUSD#USDSM https://t.co/Cys3vMNdjn
A Proof of Concept (PoC) demonstrates a delegate hijack vulnerability in SandboxOFT LayerZero's approveAndCall function, potentially allowing for an unbacked mint of 10 million SAND tokens. #LayerZero#SandboxOFT https://t.co/wbZfxAoPjv
Kolibri USD (KUSD) has broken its USD peg, trading at $1.1014, which is a 10.14% deviation from $1.00. This deviation has exceeded the 10% threshold for two consecutive checks. #KUSD#KolibriUSD https://t.co/CbPLMm4Ojy
Balanced Dollars (BNUSD) broke its USD peg, trading at $1.0320, which is a 3.20% deviation from $1.00. This deviation has exceeded the 3% threshold for two consecutive checks. #BNUSD#BalancedDollars https://t.co/fbegE7Q6c3
HumidiFi has halted trading following an internal network incident that affected platform funds. The incident underscores the risks associated with proprietary liquidity models in decentralized exchanges. #HumidiFi https://t.co/Zbiuve6fKQ
In May, one of StablR's three signing keys was compromised, allowing an attacker to mint tokens directly into their wallet. This incident occurred despite StablR being a licensed and compliant stablecoin issuer, with no custody breach or stolen funds inv… https://t.co/2UTFktD1aq
What happens when a fully-licensed, fully-compliant stablecoin issuer still gets hit?
In May, one of StablR's three signing keys was compromised, and the attacker minted tokens directly into their own wallet, with no custody breach and no stolen funds involved.
Hypernative's Head of Professional Services, Yaniv Fogel, walked through the incident in the company's recent webinar, noting that Hypernative's monitoring caught the anomalous mint before StablR did, even though StablR isn't a Hypernative customer.
Our Securing Tokenized Real-World Assets Best Practices Guide covers this and much more. You can download it for free: https://t.co/zodlpU3oqz
Governance takeovers have recently drained $22 million through bought and borrowed votes. Blockaid's Cosigner aims to mitigate this by adding an independent signer to multisig and MPC setups to validate transactions. https://t.co/9p0XvaTobX
Governance takeovers recently drained $22M via bought and borrowed votes.
Blockaid's Cosigner adds an independent signer to multisig and MPC setups, validating what each transaction actually does so a malicious proposal fails to execute.
Read more: https://t.co/Y49D6QXm1x
A user is questioning BitMart's liquidity and transparency regarding fund returns, stating that the exchange's actions have caused people to lose access to funds. #BitMart https://t.co/loKLimF866
@sheldonbitmart@BitMart_zh@BitMartExchange If you actually have the liquidity then simply return the funds to everyone instead of posting vague statements?
Your actions have caused real people to lose access to funds with little transparency….
Malicious activity has been identified in Solidity Pro, a VSCode extension targeting Solidity/Web3 developers. Historical versions under two publisher identities, helper-beeps and another, are affected. https://t.co/JJNo8PTEx0
🚨 Beware of Solidity Pro: A Targeted Poisoning Attack on #Web3 Developers
SlowMist Security Team has identified malicious activity in Solidity Pro, a #VSCode extension targeting #Solidity/Web3 developers.
Historical versions under two publisher identities, helper-beeps and web3devtoolsx, were found to contain credential harvesting, remote payload execution, and remote VSIX update capabilities.
Interestingly, these malicious capabilities disappeared from subsequent versions, while malicious source code and traces of the previous publisher remained in the repository. We traced the version history, publisher migration, and build artifacts, highlighting a key detection blind spot:
Current-version-only detection may cause extensions with a malicious history to appear clean or low-risk again.
This case highlights why #ExtensionSecurity should go beyond a single file or version, incorporating version history, publisher changes, build provenance, and remote control planes.
Read the full analysis 👇
https://t.co/griUF4de3n
The Sandbox experienced a security breach where 500 million SAND tokens were minted on the Base network, potentially undermining tokenomics and risking market instability. #TheSandbox https://t.co/i4kAvwECJ4
FlashstakeV2 mispriced its reward pool, allowing for instant upfront reward extraction of approximately 0.4285 ETH. The incident occurred in August 2026. #FlashstakeV2 https://t.co/fJW6udyGaz
The address labeled Bofur Capital lost $2M due to an address poisoning attack after withdrawing from Compound. A phisher sent a small USDC transaction to spoof the address, and the victim mistakenly copied the wrong address, leading to the drain. The sto… https://t.co/ZSEhxp9jXi
#PeckShieldAlert The address labeled Bofur Capital got hit for $2M via address poisoning after withdrawing from #Compound.
Phisher sent a 0.0002 USDC dust tx to spoof the address, and the victim copy-pasted the wrong one -$2M drained.
Funds have since been swapped to 2M $DAI, now sitting in: 0xe2eB...1816a
BounceBit will shut down its L1 chain and migrate to BNB Chain following an exploit that resulted in the loss of 286.5 million BB tokens. The migration emphasizes the need for robust blockchain infrastructure security. #BounceBit https://t.co/wLguNCzIIF