Security news

Showing 101–150 of 170
Clear filters

July 28, 2026

Security

Hong Kong sets 2030 quantum-security goal for banks as tokenization grows

HKMA sets 2030 quantum-security target for Hong Kong banks Hong Kong’s banking regulator has launched a quantum-risk framework and its first Quantum Preparedness Index as tokenized finance expands, with the sector scoring just 2.3 out of 10 and about half of surveyed institutions reporting no formal post-quantum plan. The HKMA wants full readiness by 2030, warning that tokenized deposits, digital assets and blockchain settlement rely on cryptography that could be broken by future quantum computers.

July 27, 2026

Security

Zcash’s Ironwood Upgrade to Lock Orchard Pool at Block 3,428,143

Zcash to lock Orchard pool in Ironwood upgrade on Tuesday Zcash’s Ironwood upgrade will lock the Orchard shielded pool at block 3,428,143 on Tuesday, preventing any new funds from entering a pool that holds 3.76 million ZEC, worth about $1.89 billion, or roughly 22% of supply. Holders’ coins remain safe and can only move out, as the change is designed to contain any undetected counterfeit ZEC after a May bug that could have allowed fake coin creation.

Security

SecondFi outlines ADA refund plan after 16.1 million token hack and shutdown

SecondFi to shut down after hack, launch ZK-based ADA refund tool SecondFi has published a recovery plan after hackers stole 16.1 million ADA from 374 wallets in June 2026 via an Android app vulnerability. The Cardano wallet said it is permanently ending normal operations and will focus on withdrawing remaining assets and compensating users, using what it calls Web3’s first zero-knowledge proof-based refund tool built with Input Output Group and the Cardano Foundation.

Security

SparkKitty malware found in App Store and Google Play apps targeting crypto users

SparkKitty malware found on Apple App Store and Google Play Check Point says the SparkKitty malware targeted crypto users through apps on Apple’s App Store, Google Play and third-party Android stores, using OCR to scan photos for wallet recovery phrases. It was embedded in the iOS app Bcoin and the Android app SOEX, which was downloaded more than 10,000 times before removal; stolen seed phrases, passwords and QR data were sent to hacker-controlled servers.

Security

BlueNoroff Uses Fake Video Meetings to Hunt Crypto Wallet Holders

BlueNoroff uses fake Zoom and Teams calls to target crypto wallet holders North Korean hacking group BlueNoroff is luring wealthy crypto users into fake Zoom and Microsoft Teams meetings, then checking their browsers for MetaMask and Solana wallets before selectively deploying malware, Cryptopoli reported. Victims are told their microphone is not working and prompted to install fake software, while hacked Telegram and LinkedIn accounts are also used as bait. Arctic Wolf estimated the campaign has hit more than 100 victims in over 20 countries.

Security

Triple-A says it can cover losses after treasury wallet breach and resumes normal operations

Triple-A confirms treasury wallet breach, says client funds were not affected Singapore-based payments firm Triple-A said unauthorized access to certain treasury wallets on July 25 led to the loss of company-owned digital assets, while client funds and payment operations were not affected. The company briefly put some services into maintenance mode for about three hours, said normal operations have resumed, and said the impact will be absorbed through treasury reserves; on-chain investigators had estimated the loss at about $11.8 million.

Security

Garden Finance takes app offline after Blockaid flags $450,000 HTLC exploit

Garden Finance takes app offline after $450,000 HTLC exploit alert Garden Finance temporarily took its app offline after Blockaid reported an ongoing exploit targeting the protocol’s hash time-locked contracts on Ethereum, Base, Arbitrum and BNB Smart Chain, with about $450,000 in USDT drained. Garden said it detected “unusual activity” and is conducting a full investigation, while Blockaid did not disclose the suspected vulnerability or whether user funds were affected.

July 26, 2026

Security

WEMIX suspends bridges and LP trading after $724,198 contract breach

WEMIX halts bridges and LP trading after stablecoin-linked contract exploit WEMIX suspended all WEMIX3.0-connected bridges, affected liquidity-pool trading and several services after an attacker took control of a contract linked to its WEMIX$ stablecoin and moved 724,198.27 USDC.e on Sunday at 9:17 UTC. WEMIX said the attacker minted about 5.23 million WEMIX$, swapped it into 30,736 WEMIX and USDC.e, then bridged funds to Ethereum and BNB Smart Chain; some exchange-linked addresses have already been frozen while the full impact remains under investigation.

Security

Zcash Eyes Key Resistance as Traders Watch Wedge Pattern Ahead of Ironwood Upgrade

Zcash set for Ironwood upgrade on July 28 after critical Orchard flaw Zcash is preparing the Ironwood network upgrade, or NU6.3, for July 28 at block 3,428,143 to retire the current Orchard shielded pool and launch a new pool with a corrected circuit after a critical vulnerability was found. The change is aimed at strengthening network security and helping determine whether the flaw was ever exploited.

Security

Coinbase launches Bitcoin consortium with $15M to prepare for future quantum risks

Coinbase forms Bitcoin quantum security consortium with $15M funding Coinbase unveiled a post-quantum security plan for Bitcoin and launched the Bitcoin Security Consortium with BlackRock, Fidelity Digital Assets, Block, Strategy, Anchorage Digital, ARK Invest, Blockstream and Galaxy, which committed $15 million over three years for developers and researchers. CEO Brian Armstrong said quantum computing is not an immediate threat, but Coinbase has already begun upgrading its custody and key management systems ahead of any migration.

Security

FBI alleges malware hidden in eight games led to theft from 80 crypto wallets

FBI says malware in eight video games stole at least $220,000 in crypto Federal investigators allege malware hidden in eight downloadable games infected about 8,000 devices, harvested credentials and led to at least $220,000 being taken from roughly 80 cryptocurrency wallets. Court filings say the campaign used Discord, Telegram, X and LinkedIn to target crypto holders, and the FBI is now seeking potential victims as the case against Wilkins moves forward.

July 25, 2026

Security

Across relayer loses less than $4M after fake Solana deposits trigger payouts

Across says a Risk Labs-operated relayer lost under $4 million in a July 17 Solana attack after an attacker forged 1,627 fake deposit events worth $41.7 million. The relayer paid out about $4.5 million across 581 requests before Solana operations were halted, while roughly $500,000 of the attacker’s funds remained trapped, cutting the net loss below $4 million. Across said user funds were unaffected and Solana transfers resumed via Circle’s CCTP.

Security

Optimism says critical pre-Lagoon refund bug was fixed before any production exploitation

Optimism discloses patched critical pre-Lagoon refund bug Optimism said a critical vulnerability in its pre-Lagoon SDM verify path could accept forged refund payloads without recomputation, creating a risk in refund verification. The issue was disclosed on the governance forum after being patched before the Lagoon upgrade reached any production chain, and Optimism says no funds were lost.

Security

Australian police say AI is fueling fake crypto investment scams as losses top $31.4 million

Australian police warn AI is powering fake crypto investment ecosystems The AFP-led JPC3 said transnational criminal networks are using AI to build end-to-end scam operations, including fake trading platforms, news articles, landing pages and chatbots, as losses from investment scams in Australia topped $31.4 million so far this year. The warning came as JPC3 expanded its national “Clickfit” campaign urging people to scrutinize online investment offers before sending money.

Security

OKX says crypto incidents jumped 50% in H1 2026 while disclosed losses fell to $956 million

OKX: Crypto security incidents rose 50% in H1 2026 as losses fell to $956M OKX’s H1 2026 Web3 security report, produced with SlowMist and OtterSec, logged 182 publicly disclosed incidents with $956 million in losses, up 50% in case count from H1 2025 but down about 60% in value. The report says attackers shifted from major smart contract exploits toward supply-chain breaches, social engineering, cloud key theft, single-point failures and AI-driven attacks, making users and AI agents the main targets.

July 24, 2026

Security

Kenya Freezes $888,030 in Cash and USDT in Expanding Alleged Laundering Probe

Kenya freezes $888,030 in cash and USDT in alleged laundering probe Kenya’s Assets Recovery Agency has frozen at least $888,030 in cash and USDT tied to two residents in an alleged money-laundering scheme that investigators say moved more than $2.32 million through shell firms, bank accounts, remittance services and crypto wallets. The ARA said the network used small transfers below reporting thresholds and multiple Binance accounts to obscure the funds’ origin; investigations are ongoing, and Kenya sent a mutual legal assistance request to the US in May 2026.

Security

Drift exploit wallet sends $44.4M in ETH to Tornado Cash after months of silence

Drift exploiter moves $44.4M in ETH into Tornado Cash after 3 months A wallet tied to the Drift Protocol exploit sent 23,095 ETH, worth about $44.4 million, into Tornado Cash after roughly three months of inactivity, with researcher JL saying the attacker resumed 100 ETH batch deposits several times per minute. ZachXBT said he would not continue solo tracking work, citing the resources needed to monitor and freeze a nine-figure theft linked to North Korea.

Security

Three DeFi Security Breaches Drain $35.5 Million in Six Hours

Three DeFi hacks drain $35.5M in six hours Three security incidents hit AFX Trade, Verus Ethereum Bridge and B² Network on July 23, draining about $35.5 million in six hours. The biggest loss was AFX Trade at $24.15 million, followed by Verus Ethereum Bridge at $7.54 million and B² Network at $3.86 million. The attacks targeted bridge and supporting infrastructure, not Bitcoin, Ethereum or Arbitrum themselves, underscoring growing risks in cross-chain and off-chain systems.

Security

Robinhood confirms CEO Vlad Tenev’s X account was hacked in fake VLAD token scam

Robinhood confirms breach of CEO Vlad Tenev’s X account Hackers used Vlad Tenev’s compromised X account to promote a fake VLAD memecoin and post a fraudulent contract address, falsely claiming the token would be listed on Robinhood. The post was removed in under 20 minutes after drawing more than 175,000 views, and on-chain monitors estimated wallets tied to the scam extracted about 650 ETH, or roughly $1.2 million-$1.3 million.

July 23, 2026

Security

Bitcoin Security Consortium launches with $15 million from Coinbase, BlackRock, Strategy

Bitcoin Security Consortium launches with $15M backing from Coinbase, BlackRock, Strategy A group of major financial institutions and Bitcoin companies including Strategy, Coinbase, BlackRock, ARK Invest, Anchorage Digital, Block, Blockstream, Fidelity Digital Assets and Galaxy has launched the Bitcoin Security Consortium, committing $15 million over three years to support Bitcoin’s long-term security. The group will focus on research and development aimed at future quantum computing threats while funding independent developers and researchers.

Security

NIGHT Drops 45% After Wanchain Bridge Exploit Hits Midnight Treasury

Wanchain bridge exploit sends NIGHT down 45% NIGHT, the Midnight ecosystem’s native token, fell about 45% on Monday after an attacker exploited a flaw in Wanchain’s Cardano-to-BNB Chain bridge and drained roughly $10 million from the Cardano-side treasury. The bug in Wanchain’s TreasuryCheck validator let the attacker turn an approved transfer of about 3,110 NIGHT into more than 203 million NIGHT, which was then dumped on Cardano DEXs.

Security

AFX Trade loses about $24.15 million after bridge validator keys were compromised

AFX Trade drained for $24.15M after bridge validator key compromise AFX Trade, a USDC-settled perpetuals DEX on Arbitrum, lost about $24.15 million after an attacker used enough compromised hot-validator signatures to approve a bridge withdrawal. Blockaid said the on-chain logic worked as designed and Arbitrum said its native bridge was not affected; after a 200-second dispute period, the stolen USDC was moved to Ethereum and swapped for roughly 12,467 ETH.

Security

CertiK says crypto wrench attacks hit 52 in H1 as exposure reaches $124.1 million

CertiK: Crypto wrench attacks hit 52 in H1 2026, exposure jumps to $124.1M CertiK recorded 52 verified crypto wrench attacks worldwide in H1 2026, up 33.3% from a year earlier, while recorded financial exposure surged 1,079% to $124.1 million. Europe accounted for 39 cases, with France alone at 33, and home invasions became the leading attack method, rising to 20 incidents from one in H1 2025. This exposure figure includes stolen funds, ransom demands and frozen assets, not just confirmed losses.

July 22, 2026

Security

Zilliqa halts native ZIL transfers after Ledger signing flaw exposes private keys

Zilliqa freezes native ZIL transfers over Ledger key-exposure flaw Zilliqa halted native ZIL transactions on July 22 after confirming a Ledger app bug dating to 2019 that can let attackers reconstruct private keys from public on-chain signatures. The flaw affects only native, non-EVM ZIL transfers signed on Ledger devices; Zilliqa said about five affected signatures may be enough, warned users not to move funds, and said Ledger is preparing a patch.

Security

Ostium to Resume Trading on July 23 After $23.8M LP Vault Exploit

Ostium to reopen trading after $23.8M LP vault exploit Arbitrum perpetuals protocol Ostium said it will reopen trading Thursday, a week after a July 15 exploit drained nearly 23.8 million USDC from its liquidity provider vault. The protocol said trader collateral was unaffected because it sits in a separate contract, while open positions and pending orders will carry over and be repriced to the live market at reopening.

Security

CertiK says France led 52 crypto wrench attacks in first half of 2026

CertiK reports 52 crypto wrench attacks in H1 2026, led by France CertiK said confirmed physical attacks on crypto holders rose 33.3% year over year to 52 in H1 2026, with estimated financial exposure jumping to about $124.1 million from $10.5 million. Europe accounted for 39 cases and France for 33 alone, while crypto-related home invasions surged from one to 20; CertiK said the $124.1 million figure reflects exposure, not confirmed stolen funds.

Security

Upbit places Zilliqa on delisting watch after critical Ledger wallet key exposure

Upbit puts Zilliqa on delisting watch after Ledger app flaw Upbit has placed Zilliqa (ZIL) on delisting watch and frozen deposits and withdrawals for ZIL/KRW and ZIL/BTC after Zilliqa disclosed a critical Ledger wallet flaw that exposed private keys. Zilliqa said every version of its Ledger app since launch carried the bug, and accounts with about five or more native transactions should be considered compromised; the review runs until the week of August 17.

Security

SecondFi to wind down after $2.6 million ADA theft tied to wallet software flaw

SecondFi to shut down after $2.6M ADA hack hit 374 wallets SecondFi said it will wind down after attackers exploited a cryptographic flaw in its Cardano wallet software, stealing about 16.1 million ADA, or roughly $2.6 million, from 374 wallets. An independent probe pointed to a sophisticated external actor with indicators potentially linked to North Korea’s Lazarus Group, while recovery and wallet migration tools once expected within weeks are now targeted for August, with no reimbursement plan announced.

Security

42DAO Oracle Glitch Triggers 99.8% Balance Coin Crash and $912,000 Drain

42DAO oracle glitch triggers 99.8% BLC collapse and $912,000 drain Balance Coin (BLC) lost its dollar peg and crashed 99.8% to about $0.0013 after a seconds-long oracle failure on 42DAO let an attacker exploit two smart contracts and drain roughly $912,000 in a single transaction. Analysts said the pricing module accepted an abnormally low BTCB oracle price without filters, while the liquidation module acted on it instantly; the attacker then dumped newly minted BLC on PancakeSwap, wiping out liquidity and leaving the protocol with heavy bad debt.

July 21, 2026

Security

NIGHT Drops After $13.2M Wanchain Bridge Exploit Hits Midnight Token Route

Wanchain bridge exploit drains $13.2M in NIGHT, token drops about 30% A Wanchain bridge exploit drained 515 million NIGHT tokens worth about $13.2 million, triggering a roughly 30% drop in Midnight’s token as the affected route was paused. The issue was tied to a signature reuse flaw in cross-chain bridge infrastructure, while Cardano’s base layer and Midnight validator infrastructure were not compromised.

Security

Ostium plans trading restart after $23.75M Arbitrum liquidity vault exploit

Ostium targets trading restart this week after $23.75M vault exploit Ostium said it plans to resume trading this week, about five days after an attacker drained 23,752,746 USDC from its liquidity pool on Arbitrum. The exchange said it will give at least 24 hours’ notice and is running final checks with auditors and outside cybersecurity experts; when trading reopens, frozen positions will resume at the prevailing market price. Trader margin was not taken, but liquidity providers absorbed the loss and Ostium has not yet detailed compensation.

Security

Allbridge Core says Solana pool exploit drained about $1.66 million

Allbridge Core exploit drains $1.66M from Solana liquidity pools Allbridge said a hacker used a flash loan to exploit swap logic in its Solana liquidity pools, draining about $1.66 million after skewing USDT pricing with five same-asset swaps and then trading 4,000 USDT for 2.24 million USDC. The bridge has resumed routes that do not rely on liquidity pools, plans to stop pool-based swaps, and said no user wallets, private keys or non-pool routes were affected.

Security

FBI arrests Florida man over malware hidden in Steam game updates

FBI arrests Florida man over malware hidden in eight Steam games Federal prosecutors say 21-year-old Zyaire Wilkins of North Lauderdale, Florida, paid for infostealer malware that was later pushed through updates to eight Steam games, infecting about 8,000 computers and stealing crypto over roughly two years. Investigators traced about $382,000 in crypto flows and more than 150 Bitrefill gift cards, many used for Uber Eats orders; Wilkins faces a charge that carries up to 10 years in prison.

Security

New Zealand police warn of crypto scam using fake detectives and spoofed calls

New Zealand warns of police impersonation scam targeting crypto wallets New Zealand police say scammers posing as detectives and crypto company staff have stolen millions from wallet holders in recent weeks. Detective Inspector Stuart Mills said callers claim a victim’s personal details were found on someone recently arrested, then a fake company representative pushes for passwords or seed phrases, sometimes via a spoofed app site. Police said real officers will never ask for wallet details, PINs or seed phrases.

July 20, 2026

Security

Zilliqa reports ZIL theft from exchange partner cold wallet as transfers are halted

ZIL transfers paused after exchange partner cold wallet theft Zilliqa said Monday that an unspecified amount of ZIL was stolen from the cold wallet of one of its exchange partners, prompting a call to temporarily pause deposits and withdrawals to stop the funds being moved through centralized platforms. Coinone and KuCoin halted ZIL transfers, while the token fell to an all-time low of $0.002441 as Zilliqa said its investigation is ongoing.

Security

Allbridge Core halts bridge after reported $1.65 million exploit on Solana

Allbridge Core pauses protocol after $1.65M Solana exploit Allbridge Core said it paused the protocol after a security incident that reportedly drained $1.65 million from its Solana deployment on Sunday. Onchain Lens said the attacker used a $1.12 million USDC flash loan from Kamino and rapid USDC/USDT swaps to distort the stablecoin pool’s exchange rate, then withdrew liquidity at manipulated rates, bridged the funds to Ethereum and moved them into privacy pools.

July 19, 2026

Security

Consensys says North Korea-linked contractor briefly accessed MetaMask systems

Consensys says it cut off North Korea-linked MetaMask contractor Consensys said it identified and removed a North Korea-linked developer who had worked on MetaMask code and had internal access for about a month in spring 2026. The consultant, described by Drop Site as using the alias Tyler Knapp and GitHub account imyugioh, worked on components including crypto-to-fiat modules; Consensys said its investigation found no data theft, malicious code, or impact on users, and that law enforcement was notified.

July 18, 2026

Security

Kaspersky says OkoBot crypto malware campaign has hit users in more than 25 countries

Kaspersky flags OkoBot malware campaign targeting crypto users in 25+ countries Kaspersky says the newly identified OkoBot framework has been active for more than a year, using over 20 modules to steal seed phrases, wallet credentials and browser data through ClickFix lures and fake GitHub downloads. One module, SeedHunter, replaces Ledger and Trezor recovery screens with phishing pages; researchers say hundreds of users have been targeted, with the most victims reported in Brazil, Vietnam, Canada, Mexico and Türkiye.

Security

Group-IB says RedHook Android malware uses Wireless Debugging to steal banking data

Group-IB warns RedHook malware is hijacking Android via Wireless Debugging Group-IB says a new RedHook variant is infecting Android devices by abusing Wireless Debugging to gain shell-level access, letting attackers steal passwords, stream screens, capture lock-screen codes and show fake banking prompts. Victims in Vietnam and Indonesia are being lured via calls and messages posing as banks or government agencies to fake Google Play pages serving malicious apps from GitHub and Amazon cloud servers.

Security

SlowMist says macOS malware can hijack Telegram sessions and swap wallet apps

SlowMist details macOS malware that hijacks Telegram sessions and swaps wallet apps SlowMist says a newly analyzed macOS malware sample can steal Telegram’s local “tdata” session files, letting attackers open an already authorized account on another Mac without a phone code or two-step verification. The malware, linked to a fake BuilDAO app campaign reported July 8, also copies data from at least 16 desktop wallets and can replace Ledger Live, Ledger Wallet, and Trezor Suite with phishing lookalikes that ask for recovery phrases, PINs, or passphrases.

Security

Trusted Volumes attacker returns 1,122 ETH after $5.9 million May exploit

Trusted Volumes attacker returns 1,122 ETH after May exploit A wallet tied to the May 7 Trusted Volumes hack sent 1,122 ETH back to the protocol’s inventory, partially recovering funds from an exploit that drained about $5.9 million via a signature-check bypass in its RFQ swap proxy. On-chain data indicates the attacker kept roughly $2 million in ETH, in what appears to be a bounty-style settlement rather than a full return.

Security

Consensys pauses releases after North Korea-linked consultant accessed MetaMask systems

Consensys pauses releases after North Korea-linked contractor accessed systems Consensys temporarily halted product releases after a consultant using the alias “Tyler Knapp” gained access to its systems for about a month and worked on core MetaMask code, including parts tied to third-party fiat onramps. The company said an internal investigation found no stolen assets, exposed data, malicious code, or user harm, and it is now reviewing contractor screening and third-party hiring controls.

July 17, 2026

Security

Protocol exploit losses reach $57M in July as attack methods broaden

July DeFi exploits hit $57M as attacks spread beyond Ethereum Protocol exploits caused $57 million in crypto losses so far in July after more than $75 million was stolen in June, with recent attacks increasingly tied to smart contract logic flaws, oracle manipulation, front-end bugs and governance abuse. DeFi Llama data cited in the report shows Solana lost over $21 million in July, Arbitrum over $18 million, Base more than $14 million and Ethereum about $7 million.

Security

SlowMist says macOS malware can hijack Telegram sessions and target crypto wallets

macOS malware can hijack Telegram Desktop and target crypto wallets SlowMist warned that a macOS info-stealer can copy authenticated Telegram Desktop session data and wallet files, letting attackers access Telegram without a phone code or two-step verification and try to decrypt stolen wallet databases offline. The malware also replaces Ledger and Trezor apps with fake versions to steal recovery phrases, and targets wallets including Exodus, Atomic, Electrum, Wasabi, Monero, and full-node clients like Bitcoin Core.

July 16, 2026

Security

Kaspersky says OkoBot malware is actively targeting crypto wallet users in 25 countries

Kaspersky warns OkoBot malware is actively targeting crypto wallet users Kaspersky’s GReAT team said OkoBot has entered an active phase, putting hundreds of users in 25 countries at risk by hijacking official Ledger Live, Ledger Wallet and Trezor Suite apps with fake verification windows to steal funds. The campaign is reportedly targeting IT specialists and developers via infected GitHub tools, and Kaspersky warned its 20-plus-module framework could spread further beyond current hotspots including Brazil, Vietnam, Canada, Mexico and Turkey.

Security

Dutch and Belgian police break up cross-border crypto fraud network

Dutch and Belgian police dismantle €100M-a-month crypto scam network Police in the Netherlands and Belgium said they broke up an international crypto investment fraud ring that had operated since at least 2021 and at its peak siphoned off more than €100 million a month. Investigators said the group ran about 20 call centers with 700+ staff posing as financial advisers; six suspects were detained in Poland, Belgium, Greece and Cyprus, and Dutch media linked a key organizer to Ehud (Udi) Tenenbaum, though police have not officially confirmed the identity.

Security

Florida Man Charged in Alleged Malware Game Scheme That Stole $220,000 in Crypto

Florida man charged over malware game scheme that stole $220,000 in crypto U.S. authorities charged 21-year-old North Lauderdale resident Zyaire Dontaevious Zamarion Wilkins with conspiracy to obtain information by computer for private financial gain after he allegedly helped launch eight malware-laced games, including BlockBlasters, Dashverse, Lunara and PirateFi. The FBI says the campaign infected about 8,000 devices, accessed 80 crypto wallets and drained at least $220,000; Wilkins faces up to 10 years in prison if convicted.

Security

Summer.fi to Wind Down After $6.04 Million Exploit Hit Lazy Summer Protocol

Summer.fi to shut down after $6.04M Lazy Summer exploit Summer.fi said it will wind down after a July 6 exploit drained $6.04 million from its Lazy Summer Protocol, wiping out capital the team said it needed to rebuild. The attacker manipulated share prices in two Ethereum USDC vaults, with about 5.64 million USDC lost from LazyVault_LowerRisk_USDC and 0.40 million USDC from LazyVault_HigherRisk_USDC; the app will stay live until Aug. 31 while the Lazy Summer DAO works to restore withdrawals and redemptions.

July 15, 2026

Security

OFAC Adds Four Iran Central Bank Crypto Wallets as Tether Freezes $131 Million

OFAC adds four Iran central bank crypto wallets to sanctions list The U.S. Treasury’s OFAC on Tuesday added four cryptocurrency addresses to its Central Bank of Iran designation, and Tether immediately froze $131 million in stablecoins held there. Chainalysis said the wallets had received $165 million in stablecoins in total; with this action, Tether has now frozen nearly $475 million tied to OFAC-identified Central Bank of Iran addresses.

Security

Ostium pauses trading after oracle key exploit drains up to $18 million in USDC

Ostium halts trading after oracle key exploit drains up to $18M USDC Ostium paused trading after an attacker used a compromised oracle signer key to drain between $11.86 million and $18 million USDC from its liquidity vault, Blockaid said. The attacker allegedly submitted future-dated price reports and ran about 20 trading loops via a registered PriceUpKeep forwarder, extracting up to 28% of the protocol’s $63 million TVL without taking real market risk.