1/ The ~$292M KelpDAO / rsETH bridge exploit highlights a critical blind spot in DeFi security. This hack was a textbook trust-layer failure where the system acted on fabricated reality. Here is how the attack unfolded. 🧵
Based on Drift's own post-mortem, the $285 million hack of Solana’s Drift Protocol highlights the severe danger of compromised privileged access. After months of social engineering, suspected DPRK actors tricked the Security Council into handing over admin control, allowing them to drain real assets using a fake collateral token.
Because the attackers used valid admin signatures, standard security missed it entirely. Read our analysis of Drift's report and learn how pre-execution evaluation tools like Hexagate's GateSigner can block these types of sophisticated attacks in real-time: https://t.co/FHEO9htObe
How do onchain finance teams detect and respond to threats as they unfold? @coinbase, @OndoFinance, and the @chainalysis product team on operationalizing real-time detection. #links26
"Tools like Hexagate have been really helpful for us. They made it much easier to build in detections and have multiple team members contribute. It's really improved our ability to take all the signal we're getting and route it meaningfully to different folks on our teams."
1/7 On March 22, 2026, an attacker was able to mint tens of millions of Resolv DeFi’s unbacked stablecoins (USR) and extract roughly $25 million in value, triggering a sharp de-peg and forcing the protocol to halt operations.
Here's what happened 🧵
Coinbase Security Series is back for season 2!
Episode 1 will be livestreamed tomorrow on @buildonbase at 2pm ET, featuring our guest presenter @hexagate_ by @chainalysis alongside the Base security team.
Tune in to learn how to protect your onchain applications and assets!
Chaos Vaults: AI-powered yield for institutions. Markets move 24/7. Vault management should too.
This launch is ** still human-centric **.
Humans set policies and execute, while Chaos AI handles monitoring / dynamic alerting.
However, the trajectory is clear:
Vault management will shift from monitoring the situation to defining intent.
Live today on @krakenfx@krakenpro DeFi Earn!
As an infrastructure partner, we are excited to support the payments-first chain by integrating the @tempo testnet directly into Chainalysis Hexagate. Developers building on Tempo can now leverage Hexagate from day one, gaining real-time security monitoring and advanced threat detection.
This crucial security layer allows you to build with confidence, catching an industry-leading 98.4% of hacks before they happen.
Tempo Developers: Ready to launch your projects on a secure foundation? Request a demo of Hexagate today to add this essential protection to your build: https://t.co/WNo5vDY5eE
🧛 Vampires drain blood.
💻 Hackers drain liquidity.
Luckily, there’s garlic for that. 🧄
Stay protected with Chainalysis Hexagate, your real-time DeFi threat detection and prevention platform. Because nothing’s scarier than an exploit you didn’t see coming.
Request a demo here: https://t.co/pwSOsBZyIs
🛡️ Announcing the Safety Switch Plugin!
Built for Algebra Integral & powered by @chainalysis@hexagate_.
🔒 Real-time monitoring
⚡ Pause vulnerable pools instantly
💰 Protect LPs without migrations
DeFi security is now modular — and proactive. 🌱
Learn more: https://t.co/7OjOhdwvDd.
We deploy many security measures to ensure the safety of our protocol, such as @hexagate_, who played a crucial role in helping us identify the phishy transaction early.
Exploit Bounty Opens
We will allow the attacker a 12h grace period starting now to contact us, after which a bug bounty will be opened rewarding 10% of funds returned if the intel leads to a recovery.
We already have several leads regarding the IP addresses and on-chain activities used by the exploiter(s).
We are collaborating with professional anti-cybercrime organizations to support ongoing fund tracing and negotiations regarding the safe return of the funds.
Many thanks to @samczsun@hklst4r@pcaversaccio@hexagate_ for supporting the investigation.
Anyone with relevant information — including names, locations, or verifiable evidence — is encouraged to contact us via email at
[email protected] using the subject line: "Arcadia Exploiter Lead".
To the GMX exploiter -
We're working with the best security personnel (@hexagate_ ) and technologist to trace, and recover funds. Highly recommend responding to the team to discuss the bounty.
Separately, the GMX team is among the strongest and most thoughtful teams we've ever worked with.
If there's anyone who can come back stronger from this, it's @GMX_IO@coinflipcanada@xdev_10@gmx_intern and crew.
@chaoslabs will continue to support GMX in full force.
Chainalysis is excited to announce GateSigner by Hexagate — A powerful new defense against one of crypto’s most exploited attack surfaces: Blind signing
GateSigner acts as a security layer for multi-signature transaction approvals that helps you flag and block malicious activity before it’s signed on-chain.
For exchanges, protocols, and asset managers and more GateSigner brings:
• Real-time threat detection
• Pre-signing simulations
• Seamless co-signer or API-only integration
• Integrate with Safe and other MPC wallets
The signing step should never be your blind spot.
Explore GateSigner: https://t.co/Zg6RrTPhSP
🔒 On-chain Security for Avalanche Builders
Hexagate by @chainalysis is now available on Avalanche — delivering real-time threat detection for smart contracts and protocols.
All protocols on Avalanche are eligible — we encourage developers to apply 🔺
Proud to see @hexagate_ , a recent Chainalysis acquisition, proving to be an effective line of defense for proactive exploit prevention. See here: https://t.co/Aub3hbyykz