The Fogo Foundation said an unidentified attacker compromised the organization and transferred out 400 million FOGO tokens, prompting a sharp market reaction and a broader response involving exchanges, law enforcement and blockchain forensics firms.

The disclosure was made in a post on the foundation’s official X account on Aug. 28. After the incident became public, FOGO traded around $0.00745, down roughly 20% over the previous 24 hours.

Scale of the loss

According to the foundation, the stolen amount represents 4% of FOGO’s initial supply of 10 billion tokens. It also accounts for more than 10% of the current circulating supply, which was described as about 3.88 billion tokens.

Using the post-incident price of $0.00745 per token, the loss is estimated at roughly $3 million. The foundation has previously been allocated 21.76% of the initial supply for ecosystem support and grants.

What the foundation disclosed

The organization said only that it had been compromised and that the 400 million tokens were sent to a malicious actor. It did not identify the attack vector, the wallet that was affected, or the route taken by the stolen tokens after the transfer.

The foundation also did not say whether additional losses remain possible or how it expects to address the missing tokens. Those unanswered points leave key operational details unresolved even as the investigation proceeds.

Containment and investigation efforts

Fogo Foundation said it moved quickly to alert major cryptocurrency exchanges and asked them to help block deposits, withdrawals and cash-outs linked to the stolen tokens.

It also said it is working with law enforcement authorities and blockchain forensics firms to trace the attacker and monitor the movement of funds. No recovery outcome or freeze action had been confirmed in the source report.

Blockchain operations continue

The foundation said the breach did not affect the Fogo blockchain itself. It stated that the network is still producing blocks normally and that transaction processing has not been disrupted.

That distinction matters because the incident, as described by the foundation, was tied to the organization rather than to a failure of the layer-1 network’s core operations.

What comes next

Based on the information released so far, the next confirmed steps are the exchange coordination effort and the tracing work being carried out with law enforcement and forensic investigators.

The foundation has not yet provided further detail on how the compromise happened, whether any other assets were exposed, or what longer-term measures it may take in response to the theft.

Source: en.bloomingbit.io