<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/" >

<channel>
	<title>Security Breach &#8211; Crypto Market Insights: Dive In with CryptoUpdate.io</title>
	<atom:link href="https://cryptoupdate.io/tag/security-breach/feed/" rel="self" type="application/rss+xml" />
	<link>https://cryptoupdate.io</link>
	<description>Latest cryptocurrency news, market updates and analysis</description>
	<lastBuildDate>Tue, 15 Jul 2025 12:00:48 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9</generator>
	<item>
		<title>DeFi Platform Arcadia Suffers $3.5 Million Security Breach</title>
		<link>https://cryptoupdate.io/2025/07/15/defi-platform-arcadia-suffers-3-5-million-security-breach/</link>
					<comments>https://cryptoupdate.io/2025/07/15/defi-platform-arcadia-suffers-3-5-million-security-breach/#respond</comments>
		
		<dc:creator><![CDATA[Archire Tectre]]></dc:creator>
		<pubDate>Tue, 15 Jul 2025 12:00:48 +0000</pubDate>
				<category><![CDATA[Cryptocurrency News]]></category>
		<category><![CDATA[Cryptocurrency Regulations]]></category>
		<category><![CDATA[DeFi]]></category>
		<category><![CDATA[Arcadia]]></category>
		<category><![CDATA[certik]]></category>
		<category><![CDATA[Coinbase Ventures]]></category>
		<category><![CDATA[Goldman Sachs]]></category>
		<category><![CDATA[Security Breach]]></category>
		<category><![CDATA[Sequoia Capital]]></category>
		<category><![CDATA[Tiger Global]]></category>
		<guid isPermaLink="false">https://cryptoupdate.io/2025/07/15/defi-platform-arcadia-suffers-3-5-million-security-breach/</guid>

					<description><![CDATA[<p>DeFi platform Arcadia Finance has experienced a security breach, with the estimated losses amounting to roughly $3.5 million as of Tuesday. This alarming development was reported by the blockchain security company, Certik. Early on Tuesday, Certik was the first to identify the suspicious activity, announcing on platform X: &#8220;We have identified several dubious transactions on [&#8230;]</p>
<p>The post <a rel="nofollow" href="https://cryptoupdate.io/2025/07/15/defi-platform-arcadia-suffers-3-5-million-security-breach/">DeFi Platform Arcadia Suffers $3.5 Million Security Breach</a> appeared first on <a rel="nofollow" href="https://cryptoupdate.io">Crypto Market Insights: Dive In with CryptoUpdate.io</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>DeFi platform Arcadia Finance has experienced a security breach, with the estimated losses amounting to roughly $3.5 million as of Tuesday. This alarming development was reported by the blockchain security company, Certik.</p>
<p>Early on Tuesday, Certik was the first to identify the suspicious activity, announcing on platform X: &ldquo;<em>We have identified several dubious transactions on Base&hellip; The perpetrator has siphoned approximately $1.6 million from Arcadia Finance, probably via random &lsquo;swapdata&rsquo; on its rebalancer contract.</em>&ldquo;</p>
<p>After a few hours, Certik updated their initial report stating that the &ldquo;attack&rdquo; had continued and the total losses had now escalated to around $3.5 million.</p>
<p>Arcadia&rsquo;s team responded to the breach quickly, posting on X: &ldquo;<em>We are mindful of unauthorized transactions via a Rebalancer. All asset managers should revoke all permissions immediately.</em>&rdquo; In addition, the company cautioned its users on its official website to &ldquo;disconnect rebalancers and compounders&rdquo; from their accounts.</p>
<p>Arcadia, a platform and margin protocol backed by Coinbase Ventures, provides users the ability to lend, borrow, and trade assets without needing permission.</p>
<p>Certik, a prominent web3 security firm in the digital assets industry, reported last month that <a class="lar-automated-link" href="https://accounts.binance.com/register?ref=42224911" rel="nofollow noopener" target="_blank" 4536>crypto</a> users and DeFi protocols suffered losses amounting to $302 million due to hacks and scams in May, marking a 16.9% decrease compared to the previous month.</p>
<p>Supported by dominant firms like Sequoia Capital, Tiger Global and Goldman Sachs, Certik&rsquo;s valuation stood at $2 billion as of last year.</p>

<p>The post <a rel="nofollow" href="https://cryptoupdate.io/2025/07/15/defi-platform-arcadia-suffers-3-5-million-security-breach/">DeFi Platform Arcadia Suffers $3.5 Million Security Breach</a> appeared first on <a rel="nofollow" href="https://cryptoupdate.io">Crypto Market Insights: Dive In with CryptoUpdate.io</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://cryptoupdate.io/2025/07/15/defi-platform-arcadia-suffers-3-5-million-security-breach/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Ledger Reinstates Security on Discord Following Attempted Seed Phrase Theft by Hacker Bot</title>
		<link>https://cryptoupdate.io/2025/05/12/ledger-reinstates-security-on-discord-following-attempted-seed-phrase-theft-by-hacker-bot/</link>
					<comments>https://cryptoupdate.io/2025/05/12/ledger-reinstates-security-on-discord-following-attempted-seed-phrase-theft-by-hacker-bot/#respond</comments>
		
		<dc:creator><![CDATA[Archire Tectre]]></dc:creator>
		<pubDate>Mon, 12 May 2025 02:00:44 +0000</pubDate>
				<category><![CDATA[Cryptocurrency Crime]]></category>
		<category><![CDATA[Cryptocurrency News]]></category>
		<category><![CDATA[Cryptocurrency Regulations]]></category>
		<category><![CDATA[Discord]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Ledger]]></category>
		<category><![CDATA[scam]]></category>
		<category><![CDATA[Security Breach]]></category>
		<category><![CDATA[Seed Phrases]]></category>
		<guid isPermaLink="false">https://cryptoupdate.io/2025/05/12/ledger-reinstates-security-on-discord-following-attempted-seed-phrase-theft-by-hacker-bot/</guid>

					<description><![CDATA[<p>Hardware wallet manufacturer Ledger, has reestablished secure operations on its Discord server following an incident where a hacker attempted to extract seed phrases by exploiting a compromised moderator account. This incident occurred on May 11th, with the attacker utilizing the breached account to disseminate scam links, tricking users into unveiling their seed phrases on a [&#8230;]</p>
<p>The post <a rel="nofollow" href="https://cryptoupdate.io/2025/05/12/ledger-reinstates-security-on-discord-following-attempted-seed-phrase-theft-by-hacker-bot/">Ledger Reinstates Security on Discord Following Attempted Seed Phrase Theft by Hacker Bot</a> appeared first on <a rel="nofollow" href="https://cryptoupdate.io">Crypto Market Insights: Dive In with CryptoUpdate.io</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hardware wallet manufacturer Ledger, has reestablished secure operations on its Discord server following an incident where a hacker attempted to extract seed phrases by exploiting a compromised moderator account. This incident occurred on May 11th, with the attacker utilizing the breached account to disseminate scam links, tricking users into unveiling their seed phrases on a third-party site. </p>
<p>&#8220;A moderator under contract had their account hacked, which enabled a malicious bot to post scam links in one of our channels,&#8221; Ledger associate, Quintin Boatwright, shared on the Ledger Discord server. &#8220;The issue was swiftly addressed: the breached account was deleted, the bot was eliminated, the website was reported, and all requisite permissions were scrutinized and safeguarded.&#8221;</p>
<p>Some members of Ledger&#8217;s Discord channel reported that the attacker, exploiting moderator privileges, banned and silenced them when they tried to report the breach. This may have delayed Ledger&#8217;s response. However, Boatwright reassured that this security breach was a singular occurrence and that Ledger has implemented additional measures to fortify its Discord server security.</p>
<p>Using the compromised Ledger community manager account, the hacker informed Ledger Discord members of a recently discovered flaw in the company&#8217;s security systems. He then strongly encouraged all users to validate their recovery phrases using a fraudulent link. Screenshots of this activity were shared on X. Ledger users were instructed to connect their wallets and follow the instructions provided on-screen. The impact of this security breach remains unclear.</p>
<p>In a related event last month, scammers sent physical letters to Ledger hardware wallet owners, requesting them to authenticate their private seed phrases in an attempt to gain access and drain the wallets. These letters, bearing the Ledger logo, business address, and a reference number, were intended to appear legitimate and instructed users to scan a QR code and input their wallet&#8217;s recovery phrase.</p>
<p>Following a data leak in July 2020, where a hacker breached Ledger&#8217;s database exposing the personal information of over 270,000 customers, there were speculations that the scammers might be targeting the affected Ledger customers. The leaked data included names, phone numbers, and residential addresses. The subsequent year, several Ledger users reported receiving tampered Ledger devices in the mail that were designed to install malware upon usage.</p>
<p>The post <a rel="nofollow" href="https://cryptoupdate.io/2025/05/12/ledger-reinstates-security-on-discord-following-attempted-seed-phrase-theft-by-hacker-bot/">Ledger Reinstates Security on Discord Following Attempted Seed Phrase Theft by Hacker Bot</a> appeared first on <a rel="nofollow" href="https://cryptoupdate.io">Crypto Market Insights: Dive In with CryptoUpdate.io</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://cryptoupdate.io/2025/05/12/ledger-reinstates-security-on-discord-following-attempted-seed-phrase-theft-by-hacker-bot/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>DeFi Platform Sturdy Finance Suffers 442 ETH Loss in an Exploit</title>
		<link>https://cryptoupdate.io/2023/06/12/defi-platform-sturdy-finance-suffers-442-eth-loss-in-an-exploit/</link>
					<comments>https://cryptoupdate.io/2023/06/12/defi-platform-sturdy-finance-suffers-442-eth-loss-in-an-exploit/#respond</comments>
		
		<dc:creator><![CDATA[Archire Tectre]]></dc:creator>
		<pubDate>Mon, 12 Jun 2023 08:01:45 +0000</pubDate>
				<category><![CDATA[Altcoins]]></category>
		<category><![CDATA[Cryptocrash]]></category>
		<category><![CDATA[Cryptocurrency News]]></category>
		<category><![CDATA[Cryptocurrency Trading]]></category>
		<category><![CDATA[DeFi]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Blockchain Analytics]]></category>
		<category><![CDATA[blocksec]]></category>
		<category><![CDATA[Crypto Tumbler]]></category>
		<category><![CDATA[DeFi Attacks]]></category>
		<category><![CDATA[ETH Loss]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[PeckShield]]></category>
		<category><![CDATA[Price Manipulation]]></category>
		<category><![CDATA[Security Breach]]></category>
		<category><![CDATA[Sturdy Finance]]></category>
		<category><![CDATA[Tornado Cash]]></category>
		<guid isPermaLink="false">https://cryptoupdate.io/?p=7126</guid>

					<description><![CDATA[<p>Sturdy Finance, a DeFi lending protocol, experiences a significant loss of 442 ETH (~$800,000) due to an exploitation.</p>
<p>The post <a rel="nofollow" href="https://cryptoupdate.io/2023/06/12/defi-platform-sturdy-finance-suffers-442-eth-loss-in-an-exploit/">DeFi Platform Sturdy Finance Suffers 442 ETH Loss in an Exploit</a> appeared first on <a rel="nofollow" href="https://cryptoupdate.io">Crypto Market Insights: Dive In with CryptoUpdate.io</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p><strong>Evolving Security Incident: Sturdy Finance&rsquo;s Exploitation</strong></p>



<p>Sturdy Finance, a well-known DeFi lending protocol, recently faced an unfortunate incident &ndash; a security attack by an anonymous hacker, resulting in a loss of 442 ETH, equivalent to around $800,000. The alleged hacker took advantage of the protocol&rsquo;s re-entrancy vulnerability to manipulate a price oracle incorrectly.</p>



<p>PeckShield, a reputable blockchain analytics company, publicized the incident on Twitter, highlighting the exploitation Sturdy Finance had undergone. According to PeckShield&rsquo;s analysis, the exploit didn&rsquo;t reveal any classic signs of a smart contract hack or security breach. Instead, it appears that price manipulation was the issue. Additionally, the analysis identified the hacker&rsquo;s address and noted that the offender had transferred the 442.6 ETH to Tornado Cash, a decentralized <a class="lar-automated-link" href="https://accounts.binance.com/register?ref=42224911" rel="nofollow noopener" target="_blank" 4536>crypto</a> mixer, effectively obscuring the transaction details.</p>



<p><strong>Sturdy Finance Responds to the Security Incident</strong></p>



<p>In response to the unfortunate event, Sturdy Finance promptly halted its trading services to prevent any additional losses. The platform reassured its community, stating &ldquo;no additional funds are at risk,&rdquo; and promised to provide more information once they resolved the issue. Furthermore, the team comforted its users by assuring them that no immediate action was required from their end.</p>



<p><strong>Analysis of the Security Breach and the Broader DeFi Landscape</strong></p>



<p>BlockSec, a security firm, identified the root cause of the exploit as the typical Balancer&rsquo;s read-only re-entrancy, alongside manipulation of the B-stETH-STABLE price. They stated that the exploiter managed to steal the ETHs through this manipulation.</p>



<p>In a broader context, DeFi REKT Database&rsquo;s recent analysis highlighted that there have been almost nine DeFi attacks this month alone. Among these, the most devastating was the Atomic Wallet exploit on June 4, one of the most significant <a class="lar-automated-link" href="https://accounts.binance.com/register?ref=42224911" rel="nofollow noopener" target="_blank" 4536>crypto</a> exploits in history, leading to a loss of over $35 million.</p>

<p>The post <a rel="nofollow" href="https://cryptoupdate.io/2023/06/12/defi-platform-sturdy-finance-suffers-442-eth-loss-in-an-exploit/">DeFi Platform Sturdy Finance Suffers 442 ETH Loss in an Exploit</a> appeared first on <a rel="nofollow" href="https://cryptoupdate.io">Crypto Market Insights: Dive In with CryptoUpdate.io</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://cryptoupdate.io/2023/06/12/defi-platform-sturdy-finance-suffers-442-eth-loss-in-an-exploit/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
