Parked Coldcard loot begins moving as attacker routes $1.6M in stolen Bitcoin to Ethereum
Bitcoin flagged by blockchain data provider Bitquery as linked to the 2026 Coldcard hardware-wallet theft crossed into Ethereum this week after a tracked 20.5 BTC stash began moving. The route shifted the case from a largely parked stash to an active…
Leaked compliance records shatter anonymity of 291 crypto users by matching names directly to wallet activity
The Pocket Bitcoin breach exposed more than email addresses and support conversations for 291 customers, the company said. Some copied records linked real-world identities to public Bitcoin activity. The finding expands the scope described in the Swiss…
Stopping a blockchain doesn’t always recover stolen funds – What actually happened when 3 networks pulled the plug
Three blockchain networks stopped producing blocks within four days. Each blockchain halt used different emergency powers, and Cronos alone also replaced part of its canonical history. Cronos said validators halted the network by consensus after an…
Cosmos misjudged a critical bug for 4 months before hackers stole nearly $6 million across 6 chains
A Cosmos EVM vulnerability exploited across six networks, including MANTRA, exposed a security gap spanning around 40 blockchains. On Aug. 28, Cosmos Labs said the same accounting flaw was exploited on six networks, including MANTRA, TAC, and KiiChain,…
AI scammers no longer need to hack your wallet if they can convince you to use it for them
Reported losses from deepfake scams in 2026 have already exceeded last year’s total by 263%, according to TRM Labs, highlighting a growing crypto security problem in which attackers increasingly manipulate authorized users rather than break…
Ethereum researchers are racing to close a zkEVM security gap before December
Ethereum’s better.codes contest now measures a cryptographic proof gap that researchers can attack from both sides. At 15:44:47 UTC on Aug. 21, the live leaderboard showed a 63.99-bit lower certificate and a 116.13-bit upper certificate for koalaIRS12.…
MANTRA Chain stays offline after exploit as Aug. 21 restart hinges on patch test
MANTRA Chain remained halted on Aug. 21 after the team said an attacker exploited a vulnerability in an upstream dependency. Transactions, transfers, and staking are unavailable while the mainnet is paused. MANTRA identified the vulnerable software only…
Unresolved $11 million liquidity crash leaves pools exposed as attacker still holds 20.83 BTC on Maya Protocol
The suspected Bitcoin address at the center of Maya Protocol’s Aug. 18 exploit still held about 20.8273 BTC with no outgoing spend on Aug. 21, while no published recovery plan accounted for the much larger estimated impact across the cross-chain…
Solana’s 50,000 SOL security contest did not cover a clock attack disclosed months earlier
At USENIX Security on Aug. 12, researchers presented a Solana Proof-of-History clock attack they had disclosed privately to Solana developers in December 2025. Anza’s 50,000 SOL Alpenglow competition closed seven days later, and its rules appear to…