BTC $77,945.53 -1.32%
ETH $2,468.86 -0.84%
BNB $717.70 -4.41%
XRP $1.38 -3.13%
SOL $101.15 -2.62%
TRX $0.3404 +0.43%
DOGE $0.0850 -5.92%
ADA $0.2135 -2.17%
BCH $247.44 -3.83%
LINK $11.82 -1.87%
HYPE $82.98 -3.39%
AAVE $123.64 -3.94%
SUI $0.7614 -5.92%
XLM $0.1794 -4.48%
ZEC $1,226.75 -1.12%
BTC $77,945.53 -1.32%
ETH $2,468.86 -0.84%
BNB $717.70 -4.41%
XRP $1.38 -3.13%
SOL $101.15 -2.62%
TRX $0.3404 +0.43%
DOGE $0.0850 -5.92%
ADA $0.2135 -2.17%
BCH $247.44 -3.83%
LINK $11.82 -1.87%
HYPE $82.98 -3.39%
AAVE $123.64 -3.94%
SUI $0.7614 -5.92%
XLM $0.1794 -4.48%
ZEC $1,226.75 -1.12%

hacker

All
Article
Flash

first_img North Korean hackers transfer tens of millions of dollars at Hyperliquid, Trump promotes platform's entry into the U.S

According to Arkham blockchain data, wallets associated with the North Korean state-sponsored hacking organization Lazarus Group have sold over $30 million in Bitcoin on the decentralized perpetual contract trading platform Hyperliquid in the past three weeks, using the proceeds to purchase Ethereum and Solana, which were then transferred to centralized exchanges such as Kraken, LBank, and KuCoin. Kraken responded that it maintains an industry-leading compliance program, continuously monitoring on-chain activities to identify and block assets related to sanctioned wallets; LBank and KuCoin stated that the associated risks are a continuing challenge faced by the industry as a whole and emphasized that publicly available on-chain data may not reflect compliance measures at the platform level.At this time, the Trump administration is exploring ways to incorporate Hyperliquid into the regulated U.S. financial system. Trump stated earlier this month at a White House event that the chairman of the Commodity Futures Trading Commission, Mike Selig, is developing a path to bring Hyperliquid into the U.S. in a fully compliant and legal manner. According to Bloomberg, Kraken's parent company Payward is in deep negotiations with Hyperliquid Labs to offer perpetual contracts to U.S. traders.Hyperliquid is the leading platform in the decentralized perpetual contract space, allowing users to trade directly from their crypto wallets without the need for traditional brokerage accounts or KYC checks. According to DefiLlama data, its cumulative perpetual contract trading volume has exceeded $5 trillion, with current open contracts of approximately $13.3 billion.

first_img Attackers stole over $1 million in user funds from the new Solana bank Avici

Solana's new bank Avici is facing ongoing attacks, with attackers having stolen over $1 million from users. The attackers' wallet holds 10,005.03 SOL (approximately $1.07 million) and about $11,600 in USDC and USDT. The attack method involves first calling the SubmitSignatures of the Avici authorization program, then calling the AddCollateralAdmin of the collateral program, and finally executing WithdrawCollateralAsset to withdraw the balance. Both of Avici's programs are upgradable and share the same standard Solana account instead of multi-signature upgrade permissions.Avici confirmed the incident 1 hour and 53 minutes after the first theft transaction, stating, "We are aware of the issue affecting card balance withdrawals and are working directly with all relevant partners to resolve it." Prior to this, users had reported stolen balances on social media. A real-time tracker established by anonymous on-chain analyst STACC recorded 125 different sending accounts, with transfer amounts ranging from approximately 9 USDC to over 26,000 USDT.As a result, the AVICI token fell 49.4% in 24 hours to $0.2175, with a market cap of approximately $2.84 million, hitting an all-time low. Avici raised funds through MetaDAO in October 2025, with an original cap of $3.5 million, but the final committed amount reached $34.2 million, and the team refunded 89.8% of the committed USDC.

Keeta sent a letter to the hacker after the attack: Return the funds within 72 hours to avoid accountability

Regarding the recent attack on the payment public chain Keeta, Keeta Network CEO Ty sent a letter to the attackers stating that the investigation has made substantial progress and evidence has been collected that can identify the attackers. This includes information on the IP addresses related to the attack, the VPN and VPS infrastructure used, the user agents and technical environment that initiated unauthorized requests, relevant email addresses, the software used, and the infrastructure service providers. The relevant evidence has been preserved and submitted to the authorities.The attackers are required to return all funds obtained from this attack within 72 hours, with repayment acceptable in KTA, ETH, or USDC. If the full amount is returned, a certain reward will be offered, and the matter will be resolved without pursuing legal responsibility. If the deadline is exceeded and the funds are not returned, all rights to pursue legal action and fund recovery will be reserved. Ty previously stated that the root cause of the security incident has been confirmed and patches are being tested. The issue is an isolated problem with the affected components and does not impact Keeta's anchor system or any external connection systems. All KTA on Base has not been affected. The Keeta mainnet will remain in read-only status until the patches are fully tested and appropriate additional safeguards are implemented before resuming full operation. The team is actively assessing the best way to fully compensate all affected users.
app_icon
ChainCatcher Building the Web3 world with innovations.