Binance Square
#securityalert

securityalert

502,059 views
985 Discussing
Breakout_Bulls
·
--
Article
Microsoft's USB Crypto-Malware Alert📊 The Threat Landscape The Attack: Microsoft Threat Intelligence has identified a Windows-based cryptocurrency clipper and stealer campaign—dubbed "CryptoBandits"—that has been actively compromising users since February 2026.The Vector: The infection propagates via physical USB storage devices by hiding legitimate documents and replacing them with malicious Windows shortcut (.lnk) files that share the same names.The Mechanics: Upon execution, the malware deploys a worm to infect other connected removable drives and relies on Windows Script Host to launch a bundled Tor proxy, which it uses to communicate stealthily with a hidden command-and-control server. 🧱 What It Steals & How Address Swapping: The clipper component continuously monitors the system clipboard, polling it approximately every 500 milliseconds. It silently replaces copied Bitcoin (BTC), Monero (XMR), and Tron (TRX) wallet addresses with attacker-controlled equivalents crafted to partially match the original characters.Seed Phrase Hunting: The stealer aggressively scans clipboard data to detect and extract 12-word or 24-word BIP39 recovery seed phrases, Bitcoin Wallet Import Format (WIF) private keys, and Ethereum private keys.Visual Reconnaissance: To gain further context on the victim's wallet balances and hardware setups, the malware captures clusters of five screenshots (spaced ten seconds apart) and asynchronously exfiltrates them via the Tor network. Defensive Outlook: Because this malware also establishes a lightweight backdoor capable of remote code execution, Microsoft strongly advises disabling AutoRun and AutoPlay on all removable media. Users should restrict the execution of .lnk files from USB drives and monitor networks for unauthorized local Tor proxy activity. $SYN {future}(SYNUSDT) $BEL {future}(BELUSDT) $LAB {future}(LABUSDT) #SecurityAlert #Warning #BTC #Tron #XMRUSD

Microsoft's USB Crypto-Malware Alert

📊 The Threat Landscape
The Attack: Microsoft Threat Intelligence has identified a Windows-based cryptocurrency clipper and stealer campaign—dubbed "CryptoBandits"—that has been actively compromising users since February 2026.The Vector: The infection propagates via physical USB storage devices by hiding legitimate documents and replacing them with malicious Windows shortcut (.lnk) files that share the same names.The Mechanics: Upon execution, the malware deploys a worm to infect other connected removable drives and relies on Windows Script Host to launch a bundled Tor proxy, which it uses to communicate stealthily with a hidden command-and-control server.
🧱 What It Steals & How
Address Swapping: The clipper component continuously monitors the system clipboard, polling it approximately every 500 milliseconds. It silently replaces copied Bitcoin (BTC), Monero (XMR), and Tron (TRX) wallet addresses with attacker-controlled equivalents crafted to partially match the original characters.Seed Phrase Hunting: The stealer aggressively scans clipboard data to detect and extract 12-word or 24-word BIP39 recovery seed phrases, Bitcoin Wallet Import Format (WIF) private keys, and Ethereum private keys.Visual Reconnaissance: To gain further context on the victim's wallet balances and hardware setups, the malware captures clusters of five screenshots (spaced ten seconds apart) and asynchronously exfiltrates them via the Tor network.
Defensive Outlook: Because this malware also establishes a lightweight backdoor capable of remote code execution, Microsoft strongly advises disabling AutoRun and AutoPlay on all removable media. Users should restrict the execution of .lnk files from USB drives and monitor networks for unauthorized local Tor proxy activity.
$SYN
$BEL
$LAB
#SecurityAlert #Warning #BTC #Tron #XMRUSD
Article
"Why plugging in any removable media on Windows puts your cryptos at risk 🧠"USB propagation: The physical weapon of the CryptoBandits malware to raid wallets. Thinking that cryptocurrency hacks only happen online is a rookie mistake. The poverty mindset underestimates physical threats and connects unverified USB drives to the computer that hosts their trading apps or browser extensions (MetaMask, Coinbase Wallet). Microsoft Threat Intelligence researchers have revealed that this new malware spreads like a computer worm by replacing legitimate files with malicious shortcuts carrying the .lnk extension. As soon as the victim clicks on the fake document, the worm installs in the background, starts taking screenshots of your balances, and scans your hard drive for files containing recovery phrases (Seed phrases).

"Why plugging in any removable media on Windows puts your cryptos at risk 🧠"

USB propagation: The physical weapon of the CryptoBandits malware to raid wallets.
Thinking that cryptocurrency hacks only happen online is a rookie mistake.
The poverty mindset underestimates physical threats and connects unverified USB drives to the computer that hosts their trading apps or browser extensions (MetaMask, Coinbase Wallet). Microsoft Threat Intelligence researchers have revealed that this new malware spreads like a computer worm by replacing legitimate files with malicious shortcuts carrying the .lnk extension. As soon as the victim clicks on the fake document, the worm installs in the background, starts taking screenshots of your balances, and scans your hard drive for files containing recovery phrases (Seed phrases).
$ETH IS FACING A POTENTIAL SECURITY THREAT 🔒 The recent announcement from Blockaid about a potential front-end attack on the Gitcoin subdomain has raised concerns about the security of user assets, and this news could impact $ETH price levels. This window of uncertainty is narrowing fast, and volume is surging right now, will $ETH hold its current level or see a significant drop? Not financial advice. Manage your risk. #ETH #SecurityAlert #CryptoNews ⚠️
$ETH IS FACING A POTENTIAL SECURITY THREAT
🔒

The recent announcement from Blockaid about a potential front-end attack on the Gitcoin subdomain has raised concerns about the security of user assets, and this news could impact $ETH price levels.

This window of uncertainty is narrowing fast, and volume is surging right now, will $ETH hold its current level or see a significant drop?

Not financial advice. Manage your risk.

#ETH #SecurityAlert #CryptoNews
⚠️
⚠️ Security Alert for the Crypto Community! Axelar's private bridge has reportedly been exploited, resulting in approximately $4.67 million in losses. This incident serves as another reminder that even established blockchain infrastructure can become a target for sophisticated attacks. As the industry continues to grow, security remains one of the biggest challenges facing DeFi and cross-chain ecosystems. Investors and traders should stay vigilant, monitor official updates, and manage risk accordingly.$BTW $RE Events like this can create uncertainty, but they also highlight the importance of transparency, audits, and stronger security frameworks across the crypto space. Stay informed. Stay protected. The market rewards those who react with knowledge—not emotion. 🔍📊 $AXL {spot}(AXLUSDT) #AxelarNetwork #SecurityAlert #Axelar #AXL
⚠️ Security Alert for the Crypto Community!

Axelar's private bridge has reportedly been exploited, resulting in approximately $4.67 million in losses. This incident serves as another reminder that even established blockchain infrastructure can become a target for sophisticated attacks.

As the industry continues to grow, security remains one of the biggest challenges facing DeFi and cross-chain ecosystems. Investors and traders should stay vigilant, monitor official updates, and manage risk accordingly.$BTW $RE

Events like this can create uncertainty, but they also highlight the importance of transparency, audits, and stronger security frameworks across the crypto space.

Stay informed. Stay protected. The market rewards those who react with knowledge—not emotion. 🔍📊

$AXL
#AxelarNetwork #SecurityAlert #Axelar #AXL
Plugging in a USB might just wipe your wallet. Microsoft just uncovered the CryptoBandits worm that’s specifically targeting the clipboard, scanning for seed phrases and private keys every 0.5 seconds. You copy a receiving address, and it slyly swaps it for theirs; by the time you transfer the funds, you realize you’ve been played by the hackers 🤡 Clipboard hijacking + USB infection, this old script gets a fresh reboot every now and then, and there are still folks out there going in bare. Before you push that transfer button, please double-check the address – match the first 4 and last 4 characters, keep your eyes sharp. #SecurityAlert $BTC $ETH {future}(ETHUSDT) {future}(BTCUSDT)
Plugging in a USB might just wipe your wallet. Microsoft just uncovered the CryptoBandits worm that’s specifically targeting the clipboard, scanning for seed phrases and private keys every 0.5 seconds. You copy a receiving address, and it slyly swaps it for theirs; by the time you transfer the funds, you realize you’ve been played by the hackers 🤡
Clipboard hijacking + USB infection, this old script gets a fresh reboot every now and then, and there are still folks out there going in bare. Before you push that transfer button, please double-check the address – match the first 4 and last 4 characters, keep your eyes sharp. #SecurityAlert $BTC $ETH
$ETH alert as Aztec Router sees suspicious outflow ⚠️ CertiK flagged a suspicious transaction after roughly $2.19M in assets moved out of the Aztec Router contract on Ethereum. Guys, this is the kind of headline that wakes the whole market up fast, especially when weak hands start panicking and fudders pile in. Stay sharp, bros. Security alerts like this can hit sentiment hard in the short term, and early awareness matters more than chasing after the damage is done. Not financial advice. Manage your risk. #ETH #CryptoNews #Ethereum #SecurityAlert ⚡
$ETH alert as Aztec Router sees suspicious outflow ⚠️

CertiK flagged a suspicious transaction after roughly $2.19M in assets moved out of the Aztec Router contract on Ethereum. Guys, this is the kind of headline that wakes the whole market up fast, especially when weak hands start panicking and fudders pile in.

Stay sharp, bros. Security alerts like this can hit sentiment hard in the short term, and early awareness matters more than chasing after the damage is done.

Not financial advice. Manage your risk.

#ETH #CryptoNews #Ethereum #SecurityAlert

🚨 Humanity Protocol Plunges 80% After Reported $32M Private Key Hack. Is the Worst Over or Is More Pain Ahead? 📉🔥 📊 Humanity Protocol is facing intense selling pressure after a reported private key compromise linked to approximately $32 million in assets, triggering a sharp market reaction and raising fresh concerns about project security and investor confidence. 💰 What investors are watching: • Token price collapsed more than 80% in a short period • Security concerns are dominating market sentiment • Liquidity and recovery prospects remain under scrutiny • Investors are closely monitoring the team's response and remediation efforts ⚡ Events like this highlight the critical importance of wallet security, treasury management, and transparent crisis communication in the crypto industry. 👀 The next phase will depend on how quickly confidence can be restored and whether the project can effectively address security risks. 🔥 Is this a capitulation event that creates opportunity, or the start of a deeper decline? Share your outlook below. #CryptoNews #blockchain #altcoins #CryptoMarket #SecurityAlert
🚨 Humanity Protocol Plunges 80% After Reported $32M Private Key Hack. Is the Worst Over or Is More Pain Ahead? 📉🔥
📊 Humanity Protocol is facing intense selling pressure after a reported private key compromise linked to approximately $32 million in assets, triggering a sharp market reaction and raising fresh concerns about project security and investor confidence.
💰 What investors are watching:
• Token price collapsed more than 80% in a short period
• Security concerns are dominating market sentiment
• Liquidity and recovery prospects remain under scrutiny
• Investors are closely monitoring the team's response and remediation efforts
⚡ Events like this highlight the critical importance of wallet security, treasury management, and transparent crisis communication in the crypto industry.
👀 The next phase will depend on how quickly confidence can be restored and whether the project can effectively address security risks.
🔥 Is this a capitulation event that creates opportunity, or the start of a deeper decline? Share your outlook below.
#CryptoNews #blockchain #altcoins #CryptoMarket #SecurityAlert
·
--
Security Alert: Analysis of the Humanity Protocol ($H) Hack ⚠️ The Web3 ecosystem is facing another security lesson. The recent incident with Humanity Protocol wasn't a smart contract failure but a critical vulnerability in private key management. ​Technical details of the incident: Attack vector: Compromise of the Foundation's private keys, allowing direct access to funds. Impact: Drain of over $30M in assets and unauthorized minting of around 100M $H tokens. Market reaction: Extreme volatility with a drop of over 85% in the hours following the announcement. ​Lessons for our trading: The weakest link: Even high-tech protocols fail if the custody of admin keys doesn't follow institutional-grade security protocols. Don't trade in uncertainty: In the face of such breaches, the technical recommendation is total isolation. If you have exposed funds or liquidity in pools, the priority should be capital preservation, not position recovery. Risk management: This event reaffirms that counterparty risk in infrastructure projects is real and direct. ​Security isn't just about the code; it's about how access is managed. Stay away from bridges and pools of $H until the security team confirms that the breach has been sealed and the network is intact. ​How do you manage the security of your assets when a project you follow gets hacked? Immediate liquidation or wait for resolution? 👇 ​#BinanceSquare #SecurityAlert #HumanityProtocol #CryptoTrading #RiskManagement #writetoearn
Security Alert: Analysis of the Humanity Protocol ($H) Hack ⚠️

The Web3 ecosystem is facing another security lesson. The recent incident with Humanity Protocol wasn't a smart contract failure but a critical vulnerability in private key management.

​Technical details of the incident:

Attack vector: Compromise of the Foundation's private keys, allowing direct access to funds.

Impact: Drain of over $30M in assets and unauthorized minting of around 100M $H tokens.

Market reaction: Extreme volatility with a drop of over 85% in the hours following the announcement.

​Lessons for our trading:

The weakest link: Even high-tech protocols fail if the custody of admin keys doesn't follow institutional-grade security protocols.

Don't trade in uncertainty: In the face of such breaches, the technical recommendation is total isolation. If you have exposed funds or liquidity in pools, the priority should be capital preservation, not position recovery.

Risk management: This event reaffirms that counterparty risk in infrastructure projects is real and direct.

​Security isn't just about the code; it's about how access is managed. Stay away from bridges and pools of $H until the security team confirms that the breach has been sealed and the network is intact.

​How do you manage the security of your assets when a project you follow gets hacked? Immediate liquidation or wait for resolution? 👇

#BinanceSquare #SecurityAlert #HumanityProtocol #CryptoTrading #RiskManagement #writetoearn
·
--
Bearish
Verified
Humanity Protocol disclosed a major security breach after an employee's laptop was compromised, allowing an attacker to obtain administrative keys controlling the project's bridge infrastructure on Ethereum and BNB Chain. According to the team, the attacker gained control of 3 of 6 Gnosis Safe owner keys used for the Ethereum bridge ProxyAdmin. This allowed them to transfer ownership of the bridge administration contract, deploy a malicious implementation, and move 141.2 million H tokens in a single transaction. Humanity Protocol said the attacker also compromised 3 of 5 Safe owner keys controlling the BNB Chain bridge. After taking over the bridge administration contract, the attacker deployed another malicious implementation containing an unlimited mint function. Using that contract, the attacker minted 200,000,005 H tokens in two transactions and transferred the newly created tokens to their own wallet. Blockchain investigator Specter initially reported that more than 17 wallets holding H tokens had been drained. As the hack progressed, the number of affected wallets grew into the hundreds. Specter later estimated losses had exceeded $30 million and reported that millions of dollars worth of stolen H tokens had already been sold for ETH. Humanity Protocol later estimated total losses at more than $36 million across Ethereum and BNB Chain. The project has halted deposits and withdrawals on affected bridges and says it is working with exchanges, security firms, and law enforcement to track funds and investigate the breach. #HumanityProtocol #Hack #cryptohacks #SecurityAlert
Humanity Protocol disclosed a major security breach after an employee's laptop was compromised, allowing an attacker to obtain administrative keys controlling the project's bridge infrastructure on Ethereum and BNB Chain.
According to the team, the attacker gained control of 3 of 6 Gnosis Safe owner keys used for the Ethereum bridge ProxyAdmin. This allowed them to transfer ownership of the bridge administration contract, deploy a malicious implementation, and move 141.2 million H tokens in a single transaction.
Humanity Protocol said the attacker also compromised 3 of 5 Safe owner keys controlling the BNB Chain bridge. After taking over the bridge administration contract, the attacker deployed another malicious implementation containing an unlimited mint function.
Using that contract, the attacker minted 200,000,005 H tokens in two transactions and transferred the newly created tokens to their own wallet.
Blockchain investigator Specter initially reported that more than 17 wallets holding H tokens had been drained. As the hack progressed, the number of affected wallets grew into the hundreds. Specter later estimated losses had exceeded $30 million and reported that millions of dollars worth of stolen H tokens had already been sold for ETH.
Humanity Protocol later estimated total losses at more than $36 million across Ethereum and BNB Chain.
The project has halted deposits and withdrawals on affected bridges and says it is working with exchanges, security firms, and law enforcement to track funds and investigate the breach.

#HumanityProtocol #Hack #cryptohacks #SecurityAlert
HUMANITY $H PRIVATE KEY HIT WRECKS THE CHART ⚠️ A private key hack tied to Humanity is sending shockwaves through the chart. The market is reading this as a trust and security event first, with traders watching for follow-through pressure and sentiment spillover. Not financial advice. Manage your risk. #Crypto #Altcoins #SecurityAlert #BinanceSquare ⚡ {future}(HBARUSDT)
HUMANITY $H PRIVATE KEY HIT WRECKS THE CHART ⚠️

A private key hack tied to Humanity is sending shockwaves through the chart. The market is reading this as a trust and security event first, with traders watching for follow-through pressure and sentiment spillover.

Not financial advice. Manage your risk.

#Crypto #Altcoins #SecurityAlert #BinanceSquare

Humanity Protocol reports $36M bridge attack caused by compromised laptop. Multisig keys backup error under scrutiny. Security reminder for protocols. #HumanityProtocol #BridgeAttack #SecurityAlert
Humanity Protocol reports $36M bridge attack caused by compromised laptop. Multisig keys backup error under scrutiny. Security reminder for protocols. #HumanityProtocol #BridgeAttack #SecurityAlert
🚨 AI exposed a massive flaw in top crypto network and experts warn banks could be next After an AI model helped uncover a four-year-old flaw in Zcash, security researchers warn that similar bugs may be hiding across crypto and traditional financial systems.#hackattack #SecurityAlert $ZEC
🚨 AI exposed a massive flaw in top crypto network and experts warn banks could be next

After an AI model helped uncover a four-year-old flaw in Zcash, security researchers warn that similar bugs may be hiding across crypto and traditional financial systems.#hackattack #SecurityAlert $ZEC
$ZEC Major Zcash Security Update A critical soundness bug was discovered in the Orchard Shielded Pool on May 29 by auditor Taylor Hornby (using Claude Opus). The flaw could have allowed undetectable counterfeit ZEC.No exploitation detected. Emergency fix deployed via NU6.2 on June 3. Total supply remains secure thanks to the Turnstile mechanism. Price dropped ~25-30% but is stabilizing.Zooko Wilcox, Founder of Zcash, has been highly active and transparent. The official pages (@Zcash & @ZcashFoundation ) remained very active, continuously explaining the situation and updates to the community. #zec ZECFallsBelow$515Down16Pct #crypto #Privacy #SecurityAlert
$ZEC Major Zcash Security Update A critical soundness bug was discovered in the Orchard Shielded Pool on May 29 by auditor Taylor Hornby (using Claude Opus). The flaw could have allowed undetectable counterfeit ZEC.No exploitation detected. Emergency fix deployed via NU6.2 on June 3.

Total supply remains secure thanks to the Turnstile mechanism. Price dropped ~25-30% but is stabilizing.Zooko Wilcox, Founder of Zcash, has been highly active and transparent.

The official pages (@Zcash
& @ZcashFoundation
) remained very active, continuously explaining the situation and updates to the community.
#zec ZECFallsBelow$515Down16Pct #crypto #Privacy #SecurityAlert
🚨 Security Alert: AROS Project on BSC Possibly Hacked, Estimated Loss Near $300,000 TenArmor's monitoring system has detected a suspicious attack related to AROS on the BSC network, with estimated losses around $295,300. 📊 Initial Information: • Affected Project: AROS • Network: BSC • Estimated Loss: $295,300 • Attack transactions have been recorded and are being monitored 👀 The specific cause of the incident has not yet been disclosed. However, this incident once again highlights that DeFi projects and tokens on BSC are still facing significant security risks, from smart contract vulnerabilities to liquidity mining exploits. ⚠️ Investors holding or interacting with AROS should keep an eye on official announcements from the project for updates and risk assessment. #SecurityAlert #AROS #BSC
🚨 Security Alert: AROS Project on BSC Possibly Hacked, Estimated Loss Near $300,000

TenArmor's monitoring system has detected a suspicious attack related to AROS on the BSC network, with estimated losses around $295,300.

📊 Initial Information:
• Affected Project: AROS
• Network: BSC
• Estimated Loss: $295,300
• Attack transactions have been recorded and are being monitored

👀 The specific cause of the incident has not yet been disclosed. However, this incident once again highlights that DeFi projects and tokens on BSC are still facing significant security risks, from smart contract vulnerabilities to liquidity mining exploits.

⚠️ Investors holding or interacting with AROS should keep an eye on official announcements from the project for updates and risk assessment.
#SecurityAlert #AROS #BSC
🚨Big Reality Check: Crypto Safety Isn’t Optional — It’s Survival 🚨 Most beginners lose crypto for one simple reason… they don’t protect this Your seed phrase is NOT a password. It is your entire wallet. A seed phrase is just simply the set of 12–24 words that acts as the master key to your crypto wallet, allowing you to restore access to your funds if you lose your device or password. If someone gets it: 👉 your funds are gone instantly 👉 no support can help you 👉 no recovery exists Never do this: ❌ Store it online ❌ Share it with anyone ❌ Enter it on random websites If someone asks for it, it is ALWAYS a scam. Even holding $BTC won’t save you if your seed phrase is exposed. #SecurityAlert #CryptoSafetyMatters
🚨Big Reality Check: Crypto Safety Isn’t Optional — It’s Survival 🚨

Most beginners lose crypto for one simple reason… they don’t protect this

Your seed phrase is NOT a password.
It is your entire wallet.

A seed phrase is just simply the set of 12–24 words that acts as the master key to your crypto wallet, allowing you to restore access to your funds if you lose your device or password.

If someone gets it:
👉 your funds are gone instantly
👉 no support can help you
👉 no recovery exists

Never do this:
❌ Store it online
❌ Share it with anyone
❌ Enter it on random websites

If someone asks for it, it is ALWAYS a scam.

Even holding $BTC won’t save you if your seed phrase is exposed.

#SecurityAlert #CryptoSafetyMatters
🚨 POLYMARKET HACK UPDATE: $520K+ STOLEN 🚨 $BEAT $ZEC Security alert! On-chain expert ZachXBT reveals a Polymarket-linked UMA adapter contract on Polygon has been exploited. The attacker is actively draining funds, with at least $520,000 already stolen. Protect your assets! 🛑💸 $AGT #Polymarket #CryptoHack #Polygon #SecurityAlert
🚨 POLYMARKET HACK UPDATE: $520K+ STOLEN 🚨 $BEAT $ZEC
Security alert! On-chain expert ZachXBT reveals a Polymarket-linked UMA adapter contract on Polygon has been exploited.
The attacker is actively draining funds, with at least $520,000 already stolen. Protect your assets! 🛑💸 $AGT
#Polymarket #CryptoHack #Polygon #SecurityAlert
Woah, another day, another crypto exploit. 🚨 ZachXBT just flagged that a Polymarket-linked UMA adapter on Polygon might be down roughly $520K. Definitely keep an eye on your assets and stay cautious out there, folks. It's getting wild. #Crypto #rsshanto #Polymarket #SecurityAlert
Woah, another day, another crypto exploit. 🚨

ZachXBT just flagged that a Polymarket-linked UMA adapter on Polygon might be down roughly $520K.

Definitely keep an eye on your assets and stay cautious out there, folks.

It's getting wild.

#Crypto #rsshanto #Polymarket #SecurityAlert
·
--
Bullish
#thorchainrecoveryentersfinalphase 🛡️ $RUNE Network Update: Following the security incident in May, the THORChain network is officially executing the final stages of its 11-step recovery plan. The team is prioritizing strict security and stability over speed to ensure a safe, sustainable reboot. KeyVerify Validation: The network is currently utilizing the new KeyVerify protocol to confirm the integrity of every node's keyshare. This guarantees that all vaults are fully secure before any further action is taken. The Vault Churn: Once verification is complete, the network will trigger a massive "churn," transferring all protocol-controlled funds into fresh, secure vaults. This is the primary time variable and may take several hours to a few days to conclude. Sequential Reopening: Upon a successful churn, the network will rapidly unpause in phases. Expect Secured and Trade assets to come online first, followed by Liquidity Provider (LP) operations, and ultimately the full resumption of trading. Bottom Line: THORChain's governance has handled the May exploit decisively, patching the vulnerability and opting for a structured recovery rather than diluting token holders. A successful vault churn will be the ultimate green light for the network, paving the way for highly anticipated cross-chain integrations like Monero and Zcash. #Rune #runecoin #SecurityAlert #IranMandatesHormuzShipInsurance {future}(RUNEUSDT) {spot}(RUNEUSDT) {future}(VELVETUSDT)
#thorchainrecoveryentersfinalphase 🛡️ $RUNE Network Update: Following the security incident in May, the THORChain network is officially executing the final stages of its 11-step recovery plan.

The team is prioritizing strict security and stability over speed to ensure a safe, sustainable reboot.
KeyVerify Validation:
The network is currently utilizing the new KeyVerify protocol to confirm the integrity of every node's keyshare. This guarantees that all vaults are fully secure before any further action is taken.
The Vault Churn:
Once verification is complete, the network will trigger a massive "churn," transferring all protocol-controlled funds into fresh, secure vaults. This is the primary time variable and may take several hours to a few days to conclude.
Sequential Reopening:
Upon a successful churn, the network will rapidly unpause in phases. Expect Secured and Trade assets to come online first, followed by Liquidity Provider (LP) operations, and ultimately the full resumption of trading.
Bottom Line: THORChain's governance has handled the May exploit decisively, patching the vulnerability and opting for a structured recovery rather than diluting token holders. A successful vault churn will be the ultimate green light for the network, paving the way for highly anticipated cross-chain integrations like Monero and Zcash.
#Rune #runecoin #SecurityAlert #IranMandatesHormuzShipInsurance
Crypto With Faisal:
$RUNE 🔥🔥
*$RUNE — Recovery Steps* 🛡️ May hack hurt. Now fix time. *Plan now* 1. *KeyVerify*: Check all nodes. Make sure keys safe. 2. *Vault Churn*: Move all money to new safe vaults. Takes hours or days. 3. *Open Slow*: First, safe trades. Next, LP. Last, full trade. *Why it matters* No new tokens made. Team fixed bug. Goal: safe, strong, not fast. Next: Monero + Zcash links. Price: 0.4027, +2.44% Green light = churn done. Watch steps, not hype. #Rune #runecoin #SecurityAlert
*$RUNE — Recovery Steps* 🛡️

May hack hurt. Now fix time.

*Plan now*
1. *KeyVerify*: Check all nodes. Make sure keys safe.
2. *Vault Churn*: Move all money to new safe vaults. Takes hours or days.
3. *Open Slow*: First, safe trades. Next, LP. Last, full trade.

*Why it matters*
No new tokens made. Team fixed bug.
Goal: safe, strong, not fast.
Next: Monero + Zcash links.

Price: 0.4027, +2.44%

Green light = churn done.
Watch steps, not hype.

#Rune #runecoin #SecurityAlert
Thetanuts Finance was exploited on June 15 after an attacker targeted a legacy Ethereum vault and drained assets valued at about $2.1 million. According to Blockaid, ExVul, and PeckShield, the attack exploited a low-supply accounting flaw in the vault's minting and redemption calculations. The attacker used flash-loaned capital to reduce token supply to an extremely low level, then reminted tokens at a discounted rate due to rounding behavior in the contract logic. ExVul's analysis found that the vault's redemption formula became vulnerable when the total supply approached near-zero levels. This allowed the attacker to generate inflated redemption values and repeatedly execute mint-and-claim transactions that withdrew more assets than were deposited. Initial estimates placed losses near $105,500 in USDC. A later analysis by PeckShield reported a total impact of $2.1 million. PeckShield also stated that about $2 million worth of option tokens were secured by whitehat actors. The attacker converted about $105,000 in USDC into ETH and continued to hold additional assets linked to the exploit. Thetanuts Finance said the affected vault was a deprecated product that had been migrated years ago and was not connected to any current contracts or active products. The team plans to release a full post-mortem after completing its investigation. The incident serves as another reminder that legacy DeFi infrastructure can remain vulnerable even after protocols migrate users to newer systems. #exploit #SecurityAlert #Thetanuts #CryptoNews #CryptocurrencyNews
Thetanuts Finance was exploited on June 15 after an attacker targeted a legacy Ethereum vault and drained assets valued at about $2.1 million.
According to Blockaid, ExVul, and PeckShield, the attack exploited a low-supply accounting flaw in the vault's minting and redemption calculations. The attacker used flash-loaned capital to reduce token supply to an extremely low level, then reminted tokens at a discounted rate due to rounding behavior in the contract logic.
ExVul's analysis found that the vault's redemption formula became vulnerable when the total supply approached near-zero levels. This allowed the attacker to generate inflated redemption values and repeatedly execute mint-and-claim transactions that withdrew more assets than were deposited.
Initial estimates placed losses near $105,500 in USDC. A later analysis by PeckShield reported a total impact of $2.1 million.
PeckShield also stated that about $2 million worth of option tokens were secured by whitehat actors. The attacker converted about $105,000 in USDC into ETH and continued to hold additional assets linked to the exploit.
Thetanuts Finance said the affected vault was a deprecated product that had been migrated years ago and was not connected to any current contracts or active products. The team plans to release a full post-mortem after completing its investigation.
The incident serves as another reminder that legacy DeFi infrastructure can remain vulnerable even after protocols migrate users to newer systems.

#exploit #SecurityAlert #Thetanuts #CryptoNews #CryptocurrencyNews
Log in to explore more content
Join global crypto users on Binance Square
⚡️ Get latest and useful information about crypto.
💬 Trusted by the world’s largest crypto exchange.
👍 Discover real insights from verified creators.
Email / Phone number