We're excited to announce that full @zksync network support is coming to zkCLOB this week!
zkSync is Ethereum’s premier zk-rollup L2, delivering lightning-fast transactions, ultra-low fees and strong security through zero-knowledge proofs.
This integration will bring:
✔️ Deeper liquidity from zkSync’s growing ecosystem
✔️ Faster and cheaper private trading on our professional order book
✔️ Access for zkSync users to fully anonymous CEX-grade execution
Two leading ZK technologies uniting to push scalable, privacy-first on-chain trading to the next level. 🤝
THORChain Incident Update #5
The devs and security teams are working hard to bring the network safely back online. The focus is on getting this right, without rushing any steps. Security and stability remain the top priorities.
Nodes have upgraded to v3.18.1, which contained a patch and restores @RujiraNetwork's ability to manage credit accounts (borrow / repay).
ADR028 has been approved by the nodes. The next major step is cutting and testing v3.19.0. Additional changes are being made to the release and will be tested on stagenet before moving to mainnet. The target is to have it on stagenet by EOD tomorrow, though an exact timeline is yet to be confirmed.
Once finalised and pushed for mainnet adoption, all node operators are asked to upgrade as quickly as possible so the network can come back online safely and efficiently.
With ADR028 now approved, the bounty is active, meaning the hacker has an open window to return a portion of the funds. The protocol will also cover the remaining loss using POL. The figures are still being defined and will be shared in a follow-up announcement.
One important note: tss-lib has temporarily been moved to closed source for the next few weeks to allow THORSec to complete a full security audit without exposing ongoing remediation work. The repository will be reopened once this is complete.
More updates coming soon. We appreciate the patience and support.
I wasn't going to comment on the @THORChain situation, but given that I think TC is cool, and want the best for it, and no one benefits from hacks, there's a couple of things I wanted to voice an opinion on:
1) @jpthor is wrong to suggest that closed source TSS can help because great decompilation is trivial with better language models, so having a closed source TSS lib would not benefit the network by protecting the TSS lib from the validator set. Neither he nor @pluto_hbr are exactly wrong for considering this, but my understanding of next gen (and to some degree current gen) language models is that they render this "protection from validators" fairly ineffective since anyone with the binary and a great LLM could get an understanding.
2) Like Pluto, I think that the correct response is to go with the up to date version of tss-lib from binance instead of the more obscure DKLS lib from @silencelabs_sl . But it does occur to me that the team knows most about the hack and that the issues in gg20 could still be present in the latest TSS-lib.
3 (not security related))
Unlike a lot of commentators here I think Thor chain is great infrastructure and don't see it getting attacked as a form of karmic justice or whatever. This attack is like any other and demands we tighten up. The AI+decompilation threat seemed especially pressing, so in the end I decided to speak up.
THORChain incident update #3
The developers and THORSec teams have been hard at work throughout the weekend continuing the investigation to fully understand the events that took place, while also planning the road to recovery. It’s important to note that the investigation is still ongoing, and details may change in the coming days as we continue to gather information and adjust plans accordingly.
At this time, the team has a strong understanding of what occurred and how the attack was executed, although they are not yet in a position to publicly discuss the technical details. What they can say is that the attack vector does not appear to be related to any currently known GG20 exploits, and at this stage are still assessing whether other GG20 implementations could also be at risk. The team will continue investigating this possibility and will coordinate with other affected teams as appropriate.
We would like to thank the many cryptographers and security researchers who assisted throughout this process, including members of the team that originally developed GG20.
The team currently expects to release version 3.18.1 tomorrow for node operators to adopt. We ask that all node operators upgrade to this release as soon as possible.
There is also an open question regarding the best approach for handling the lost funds within the network. This will need to be discussed and ultimately decided by the community through governance. To facilitate this discussion, there’s a new channel in Discord called adr-028-tss-exploit-recovery .
Before the network can return to a healthy state, nodes will need broad consensus on this ADR, after which the selected approach will be implemented as part of the 3.19 update. THORChads are encouraged to share well-structured and thoughtful proposals for the community to support or challenge. In the coming days, a vote will occur highlighting the most widely supported approaches for node operators to vote on.
Regarding the future direction of the cryptographic systems used to secure the vaults, that discussion is still ongoing and requires additional research before any long-term decisions are made. For the immediate future, the team is currently leaning toward remaining on GG20 in order to restore network health and stability as quickly and safely as possible. Longer-term discussions around the future of THORChain’s cryptographic security model will continue once the network has stabilized.
We are proud of how both the developer team and community have handled this situation. Everything will get running again as soon as possible, but the process will not be rushed. THORChain has a strong roadmap ahead, and devs are excited to return their focus to continuing to push the envelope of what this project can achieve.
Onwards
Alright Thorchads! Once again, here is my proposal on how to move forward after Friday’s TSS vault exploit. Looking forward to constructive feedback to make it better, and looking forward to read new and different proposals if you have one! It is important to participate actively during this time. Let’s go!! @THORChain
https://t.co/2gxyCV30aZ
Ok, I'm going to go ahead and say it. Silence Labs' DKLS implementation, and Vultisig's go wrapper of it, is not ready for primetime use on @THORChain.
The xAI Trading Agent for zkCLOB is LIVE.
Trade anonymously directly from your X feed with ZK privacy.
How it works:
• Connect your X to your zkCLOB account.
• Post your trade on X mentioning @zkCLOBAI
– @zkCLOBAI Buy 1 $ETH at market
– @zkCLOBAI Sell 1 $ETH at limit 2400
If valid, your order executes within seconds. If not, you receive an instant reply explaining why.
The agent reads your post, understands natural language, verifies securely with your account and executes directly on zkCLOB’s private on-chain order book.
This is just the beginning of AI-powered trading on zkCLOB. Stay tuned.
zkCLOB has matured significantly since its debut in November 2025.
Now live across Ethereum, BNB Chain, Base, Solana and soon expanding private on-chain markets to more ecosystems.
Latest platform stats:
• Token pairs: 80
• RWA assets: 11
• Total volume: $1.8M+
• Users: 1,200+
• Executed trades: 1,080+
Highest activity pools:
• $YEE/ETH
• $Z/ETH
• $ETH/USDC
• $Z/USD1
• $SOL/USDC
And with the upcoming xAI-powered trading, zkCLOB is pushing toward the most advanced private trading experience in the space.
Solana integration is now LIVE on @zkCLOB
You can deposit, trade and withdraw across ecosystems, bringing Solana liquidity into private on-chain markets.
Trade Solana assets like $SOL, $JUP, $RAY, $PUMP and meme favorites including $WHITEWHALE, $PENGUIN, $PIPPIN and more, all with full ZK-powered privacy.
@ethereum, @base, @BNBCHAIN + now @solana unified under one private execution layer.
What about a decentralised stablecoin that
1. Is a restaking token. Not trading or spending? Earn a share of its minting interest for staking
2. Comes for free with @RujiraNetwork 's perps v2 model
Over the weekend, an amazing jury of dedicated community members from @THORChain and Rujira reviewed every submission and selected their top four logo designs.
Now it’s up to you! Vote for the logo you think should become the official bRUNE logo.
@Timcast People are naive thinking that a statistical model that is trained to predict the next token is actually sentient. They're just producing text in a loop without any original thought, but ok