Radiant Capital Signing Compromise, October 2024: What Happened & What to Check
Malware on three developers' devices produced hardware-wallet approvals that looked legitimate, taking roughly $50m.
Searches every incident record, jurisdiction page, glossary term and guide.
Malware on three developers' devices produced hardware-wallet approvals that looked legitimate, taking roughly $50m.
Approximately $234.9m was taken from a WazirX multi-signature wallet held under a third-party custody arrangement.
Japanese exchange DMM Bitcoin lost 4,502.9 BTC in an unauthorised outflow. The company later announced it would wind down and transfer accounts.
Roughly $81.5m left Orbit Bridge on New Year's Eve 2023 in transactions that carried valid signatures.
Mixin reported roughly $200m lost after the database of its cloud service provider was attacked, and suspended deposits and withdrawals.
Assets left Multichain bridge contracts with no exploit visible on-chain, amid the reported detention of the project's chief executive.
Funds were drained from Atomic Wallet users across multiple chains. The root cause has never been conclusively published.
A weakness in the Profanity vanity-address generator made the private key for Wintermute's DeFi operations recoverable. About $160m was taken.
Compromise of two of five multi-signature keys was enough to authorise withdrawals from Harmony's Horizon bridge, taking roughly $100m.
Attackers obtained enough Ronin validator signatures to forge withdrawals, draining 173,600 ETH and 25.5m USDC. The theft went unnoticed for six days.