NEAR Intents Recovers All $3.8M Stolen in Separate Hack
The investigation is closed, turning a reported $3.8 million theft into a full recovery for NEAR Intents.
Every Zipp story tagged #Security, newest first.
The investigation is closed, turning a reported $3.8 million theft into a full recovery for NEAR Intents.
The dispute puts THORChain’s permissionless design against calls for targeted intervention after a major exchange breach.
The exchange's Oct. 2 reopening schedule lumps XRP into the final phase, while Bitquery traced 27.63M of the stolen 102.98M XRP flowing toward THORChain and swaps into Bitcoin.
The dispute puts a focus on whether decentralized protocols should intervene when publicly flagged addresses move funds linked to a major exploit.
A firmware bug Coinkite shipped in 2021 is still bleeding wallets nearly two months after the first drain.
The foundation called it 'upgraded, not halted,' but the emergency patch touched core protocol modules, jailed validators, and forced Coinbase and Coins.ph to pause transfers.
The pause stops block production at block 20,770,893 with no public restart timetable and no confirmed exploit, leaving ONT and ONG holders watching for the next technical update.
Stripping 10,000 lines of unused bridge code is housekeeping; the AI-only audit on lending V1.1 stress-tests whether specialised models can replace human reviewers.
The bug was structural rather than random: a feature flag treated as present let attackers reconstruct private keys from a single button press, and Coinkite says severe losses have occurred even…
Coldcard losses alone climbed past $100M as investigators widened the scope, proving a vendor-level flaw can drain thousands of cold wallets at once.
AI-assisted cryptanalysis hit a long-trusted digital signature scheme and a well-known symmetric cipher, signalling the model's research utility is widening beyond code and prose.
The $31.7M drained from two bridges is the headline; the third protocol pulling staking is the broader signal that DeFi is treating post-exploit contagion as the real threat.
Polosukhin argues formal verification is the only path left as AI collapses the timeline from vulnerability discovery to exploit, and from manual audit to proof generation.
The onchain investigator argues current hardware wallets aren't fit for signing critical transactions or storing large balances, and floated a dedicated iPhone as a stronger alternative.
Incidents are up but median loss per hack keeps falling, signalling attackers are shifting toward smaller or abandoned protocols while larger venues harden against AI-enabled exploits.
The Foundation frames AI-driven auditing as a force multiplier for human reviewers, not a replacement, and the false-positive ratio is the reason that distinction still matters.
The platform's wallet-to-wallet model sidesteps the pooled-custody attack surface that drained KelpDAO, Drift, and Grinex in a single quarter.
Treasury's $10B scam warning and a new DeFi coalition show the industry is finally treating social engineering and state-linked hackers as the primary attack surface, not smart-contract bugs.
The builder cannot trace the perpetrator, and recovery work is still running through parallel approaches two weeks after the breach first surfaced.
The flaw sat in SecondFi's address-generation layer, so moving a seed phrase to a new wallet offers zero protection, and SlowMist's wider loss estimate is the number every ADA holder is reading now.