Near Intents halted its cross-chain swap service after a bug in its Omni deposit layer let an attacker take about $3.8 million. Crypto balances carry no deposit insurance, so affected users are relying on the operator's promise to repay them in full.
Perspective Coverage
5 publishers
- Builder
- Builder 23%
- Operator
- Operator 44%
- Investor
- Investor 33%
Reality
- Evidence70
- Adoption55
- Hype gap+15
- Incentives60
- Confidence65
Dell patched six critical flaws in its Kubernetes storage modules, one letting unauthenticated attackers pull admin credentials for every registered array. The Authorization module holds those keys for each array it fronts, so one reachable deployment exposes all the storage registered behind it.
Perspective Coverage
3 publishers
- Builder
- Builder 27%
- Operator
- Operator 65%
- Investor
- Investor 8%
Reality
- Evidence70
- Adoption
- Insufficient
- Hype gap+10
- Incentives
- Insufficient
- Confidence72
Bitget CEO Gracy Chen expects to recover little of the $388 million stolen from the exchange, citing Bybit's 3.5% freeze rate. On that benchmark about $13.6 million is frozen within a year and roughly $374 million stays with whoever carries the loss.
Reality
- Evidence55
- Adoption
- Insufficient
- Hype gap+15
- Incentives40
- Confidence50
Kelp DAO has sued LayerZero Labs and co-founder Bryan Pellegrino for negligence and misrepresentation over April's $292 million rsETH bridge exploit. The forged message cleared a bridge that trusted one LayerZero-run verifier, so the case tests who answers for that setup.
Reality
- Evidence35
- Adoption
- Insufficient
- Hype gap+15
- Incentives60
- Confidence35
Chainlink's CCIP 2.0 cuts a transfer's default checks from two networks to one and lets institutions add their own verifiers back. Paying for the second check now falls to the bank or issuer, five months after a single-verifier bridge setup cost Kelp DAO $292 million.
Reality
- Evidence55
- Adoption35
- Hype gap+30
- Incentives65
- Confidence50
Bitget says suspected North Korean attackers took $351.6 million from its hot and warm wallets by spoofing the transaction data that triggers its signing process. Its $464 million user protection fund, held in bitcoin, covers the loss.
Perspective Coverage
10 publishers
- Builder
- Builder 27%
- Operator
- Operator 42%
- Investor
- Investor 31%
Reality
- Evidence55
- Adoption
- Insufficient
- Hype gap+25
- Incentives70
- Confidence60
Bitget CEO Gracy Chen publicly asked THORChain to refuse service to the wallets that took $387.5 million, after Circle and Tether stopped nearly $318,000. Much of the rest now depends on a no-KYC swap protocol that has declined to block stolen funds in earlier hacks, including its own.
Perspective Coverage
3 publishers
- Builder
- Builder 38%
- Operator
- Operator 40%
- Investor
- Investor 22%
Reality
- Evidence57
- Adoption44
- Hype gap+12
- Incentives68
- Confidence55
Bitget now puts its September breach at $387.5 million, and AMLBot estimates $343 million of it sat untouched in 13 attacker wallets on Sept. 25. The phased withdrawals due from Sept. 28 are the better guide to whether customer money is safe.
Perspective Coverage
15 publishers
- Builder
- Builder 25%
- Operator
- Operator 43%
- Investor
- Investor 32%
Reality
- Evidence66
- Adoption
- Insufficient
- Hype gap+20
- Incentives60
- Confidence62
Bitget CEO Gracy Chen asked Thorchain to refuse service to the hackers behind a theft the exchange now puts at $387.5 million. After the Bybit breach, Thorchain's validators reversed a trading halt within 30 minutes, so recovery plans have little reason to count on the protocol's help.
Reality
- Evidence55
- Adoption
- Insufficient
- Hype gap+10
- Incentives65
- Confidence55
Bitget says attackers took over a wallet backend system and fed its authorization process spoofed data, moving out $387.5 million without stolen keys. For teams running payouts, the data an approver trusts now belongs on the same review list as the keys.
Perspective Coverage
3 publishers
- Builder
- Builder 23%
- Operator
- Operator 40%
- Investor
- Investor 37%
Reality
- Evidence58
- Adoption
- Insufficient
- Hype gap+18
- Incentives62
- Confidence60
Check Point says the Operation Dream Job chain now escalates through CVE-2026-68820 to install FudModule v3.1. CISA has told federal agencies to patch by August 25.
Perspective Coverage
4 publishers
- Builder
- Builder 34%
- Operator
- Operator 61%
- Investor
- Investor 5%
Reality
- Evidence70
- Adoption
- Insufficient
- Hype gap+15
- Incentives50
- Confidence72
The layer-1 will rewind both shards to an Aug. 11 checkpoint and ship a client that rejects the exploit's blocks. Finality on Harmony is now whatever the team decides to keep.
Perspective Coverage
3 publishers
- Builder
- Builder 33%
- Operator
- Operator 35%
- Investor
- Investor 32%
Reality
- Evidence60
- Adoption
- Insufficient
- Hype gap+20
- Incentives60
- Confidence55
The rebate ladder that recruits big exchanges also shrinks the burn: 60 cents of every fee dollar at the bottom tier, 26.25 cents at the top.
Reality
- Evidence55
- Adoption15
- Hype gap+40
- Incentives70
- Confidence55
A Northern California freelance marketplace's own messaging system carried Excel macro lures to 80,000 of its users across 18 months. Microsoft closed that delivery step in 2022. The same platform lure now shows up in North Korean operations.
Perspective Coverage
6 publishers
- Builder
- Builder 17%
- Operator
- Operator 78%
- Investor
- Investor 5%
Reality
- Evidence70
- Adoption
- Insufficient
- Hype gap+20
- Incentives
- Insufficient
- Confidence68
Rapid7 says the ted backdoor is built into the victim's existing HAProxy 2.8.12 and hooks its filter API, so the load balancer keeps balancing normally while it logs cookies and injects scripts for selected clients.
Perspective Coverage
5 publishers
- Builder
- Builder 42%
- Operator
- Operator 53%
- Investor
- Investor 5%
Reality
- Evidence70
- Adoption10
- Hype gap+20
- Incentives35
- Confidence66
Bitget lost about $351.6 million from its hot and warm wallets after attackers spoofed transaction data in a backend system, the exchange said. Cold storage held and a $464 million fund covers the loss, while about 45% of the haul is native XRP that no one can freeze.
Reality
- Evidence60
- Adoption
- Insufficient
- Hype gap+15
- Incentives65
- Confidence58
SentinelOne has documented North Korea's Jade Sleet inside a small Indian IT services provider, using Rust backdoors built for Apple Silicon and a Terraform lock file that points developers at a fake HashiCorp registry.
Reality
- Evidence55
- Adoption
- Insufficient
- Hype gap+15
- Incentives40
- Confidence55
Bitget CEO Gracy Chen ties a $351 million breach of the exchange's online wallets to North Korean hackers and says a $464 million user fund covers it. Paying it out could leave about $113 million in reserve while withdrawals stay frozen and Bitget still cannot say how the attackers got in.
Reality
- Evidence35
- Adoption
- Insufficient
- Hype gap+30
- Incentives70
- Confidence35
Harmony blames state actors and AI agents for shutting the layer-1 it launched in 2019, and the money set aside to pay validators to power down is worth more than everything left locked on the chain it closes.
Perspective Coverage
3 publishers
- Builder
- Builder 30%
- Operator
- Operator 38%
- Investor
- Investor 32%
Reality
- Evidence55
- Adoption20
- Hype gap+45
- Incentives75
- Confidence60
Intel 471's 18-month sweep of the underground counted 340 financial-sector extortion victims across 74 countries, 159 firms with access for sale and 562 claimed DDoS attacks. The dated intrusions came in through vendors and help-desk calls.
Reality
- Evidence40
- Adoption55
- Hype gap+22
- Incentives78
- Confidence47