#CertiKInsight# ๐จ
On 6 September, @Liquid_BTC was exploited, resulting in an initial loss of ~$318M before ~$268M was returned.
To learn more about what happened, read our full analysis here ๐
#CertiKInsight# ๐จ
We have seen an exploit of @MoonwellDeFi lending market on Base.
Attacker manipulated relatively illiquid MAMOโs collateral price, then borrowed real cbBTC
eg.
~$8.7M has now been aggregated at
Stay Vigilant!
#CertiKInsight# ๐จ
A few weeks ago, we published our CertiK Intel3D H1 2026 Wrench Attacks report.
The recent @Trezor data leak incident highlights the need for heightened vigilance against potential Wrench Attacks.
Read our full report here ๐
#CertiKInsight# ๐จ
@Trezor is warning users about a security incident involving one of its shipping providers, which exposed personal data.
Trezor says its systems and devices remain secure.
Stay vigilant!
We have some difficult news to share. Unfortunately, one of our shipping providers has experienced a data breach that exposed sensitive order data. This affects new customers in the US, UK, Sweden, Colombia, Brazil, Italy, and Portugal who received an order within the 90 days prior to August 8th, 2026.
The data exposed:
- Full names
- Shipping addresses
- Phone numbers
- Email addresses
The incident affects 11,742 customers with full exposure (name, email, phone number, shipping address) and 1,947 customers with partial exposure (name, city, email). The breach is limited due to Trezorโs strict 90-day data storage policy (we were also able to negotiate the same terms with fulfillment partners, who follow the same policy).
All affected customers have been contacted separately by email.
Our systems and devices remain secure, but affected customers could experience an increase in phishing attempts.
NEVER enter your wallet backup on a website or share it with anyone, and only check for updates on official Trezor channels.
We are deeply sorry to the community and those affected.
We are investigating this situation and will post updates on our blog:
#CertiKInsight# ๐จ
Victim address 0x13e382dfe53207E9ce2eeEab330F69da2794179E has been drained of ~$25M in assets, a second time since 2023.
Much of the assets have been swapped for DAI and are now at
Stay Vigilant!
An unknown victim was just drained of $25.6M in assets.
The attacker swapped all the assets, including WBTC, cbBTC, LDO, USDS, and CRV, for DAI and ETH.
Interestingly, the same wallet was drained of $24.23M in September 2023 due to malicious token approvals. The attacker eventually returned approximately 90% of the stolen funds.
Theft address: 0x8fEB0c6eF08B20bA19C04F951d4408bB5A1F95Ae
Stay Smart.
#CertiKInsight# ๐จ
We have seen an exploit on @harmonyprotocol where billions of $ONE were falsely minted to several addresses.
The team is taking active measures to freeze funds.
Stay Vigilant!
#CertiKInsight# ๐จ
We have seen a ~$136K exploit on @usmfum.
Attacker fund() flashloaned ETHs to manipulate internal pricing, then defund() in 64 pieces. Profit comes from asymmetric average price calculation of geometric vs arithmetic.
Stay Vigilant!
#CertiKInsight# ๐จ
From January through July, we recorded 354 incidents, excluding phishing.
At the current pace, 2026 could surpass 2025โs full-year total of 397 incidents before the end of August.
#CertiKInsight# ๐จ
Our alert system detected two 200 ETH transactions sent to Tornado Cash linked to the ongoing @COLDCARDwallet attack.
The funds were bridged from BTC to ETH address 0x41B7529a411EeA979a8d468bdEBd36b0ad703268 via THORChain before being sent to Tornado Cash.
#CertiKInsight# ๐จ
On 23 July, @VerusCoin was exploited, resulting in a loss of ~$7.4M.
To learn more about what happened, read our full analysis here ๐
#CertiKInsight# ๐จ
We have seen a ~$578K exploit on $LULA.
Attacker deployed helpers to accumulate referral/team rewards 12 days ago, flashloaned ~$237M to swap out LULA in DEX, to maximize the deflation by claimReward() -> recycle().
Stay Vigilant!
Your security team should focus on vulnerabilities that matter.
CertiK Hunt connects projects with elite, vetted researchers.
Cut through the noise. Focus on what matters.
Join the Hunt now๐
#CertiKInsight# ๐จ
The @CodexField X account and website are gone amid concerns of a potential rug pull from suspicious fund movement.
Stay Vigilant!