Ethereum: Multiple cross-chain protocols attacked within 6 hours, resulting in losses exceeding $35 million.
CoinDesk
07-23 14:47
Ai Focus
Cross-chain protocols such as Verus and B² Network were attacked within hours, resulting in a total loss of over $35 million and exposing risks related to bridging verification and access control.
Helpful
No.Help

Several encrypted cross-chain protocols were compromised in quick succession. According to CoinDesk's analysis of on-chain data and information from security agencies such as BlockAid and PeckShield, at least three bridging or cross-chain systems were hacked within six hours, resulting in a total loss of over $35 million.

Verus Bridge is being used again.

Verus's Ethereum bridge suffered a loss of approximately $7.54 million. Security agencies stated that the attackers used the same contract path and similar vulnerability as in the May incident, triggering withdrawals on the Ethereum side that were not adequately backed by assets, resulting in the transfer of reserves from the bridge.

Cross-chain bridges operate by locking real assets on one blockchain and issuing corresponding credentials on another. If the verification process goes awry, the system could potentially disburse loans without sufficient collateral. Verus's problem stemmed from this very issue.

In May of this year, Verus lost approximately $11.5 million due to a similar issue. The attacker subsequently returned most of the funds in exchange for a bounty. On-chain records show that the project team re-deposited the recovered funds into the same bridging system on July 8, only to have them emptied again two weeks later.

According to DefiLlama data, Verus's total locked value was close to $100 million at the beginning of 2025, but had dropped to approximately $9 million by this Thursday. Following the latest attack, the platform's funds have declined further.

B² Network upgrade privileges were revoked.

Another confirmed incident occurred at B² Network. This project positions itself as a Bitcoin scaling network, aiming to reduce Bitcoin transaction costs and increase processing speed. The project stated on Thursday during Asian trading hours that attackers gained unauthorized access to upgrade their token staking contract.

Lookonchain's tracking shows that approximately $3.86 million worth of B2 tokens were sold off, subsequently converted into Ethereum and stablecoins, and then transferred. B² Network stated that the incident has been contained, the staking function has been suspended, and affected users will receive full compensation.

The issues are concentrated on permissions and authentication.

These types of incidents do not necessarily stem from underlying cryptographic failures. More commonly, attackers gain critical access or control keys and then directly rewrite contract behavior or bypass existing restrictions to transfer assets.

CoinDesk noted that in this round of attacks, teams such as Verus, B², AFX, and Balance were attacked, and the common problem exposed was not that the encryption algorithm was cracked, but that bridging verification, upgrade permissions, and key control were compromised.

The article also mentions that an internal test disclosed by OpenAI this week showed that an AI model with relaxed security restrictions was able to combine stolen credentials and unknown software vulnerabilities to breach the test environment and compromise the server. While this does not equate to the system launching an attack autonomously, it demonstrates that automated, multi-step intrusion capabilities are increasing.

For cryptographic protocols, this type of risk is even more difficult to bear. When traditional industries are hacked, they can often mitigate their losses by freezing, revoking, or recovering funds; however, once an on-chain contract is emptied, the funds are usually difficult to recover, and the protocol's reputation and user deposits will also be lost.

Tip
$0
Like
0
Save
0
Views 744
CoinMeta reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
Ethereum: Verus Ethereum cross-chain bridge suffers another attack, resulting in losses of approximately $7.54 million.
Verus' Ethereum cross-chain bridge was attacked again, with approximately $7.54 million in assets transferred out. The attack method was similar to the one in May.
crypto.news
·2026-07-23 14:27:46
373
Web3: Across discloses attack on Solana repeaters, resulting in approximately $4.5 million in losses.
Risk Labs, the operator of Across, stated that the Solana repeater was attacked due to a lack of off-chain event verification, resulting in a loss of approximately $4.5 million, but user funds were not affected.
The Cryptonomist
·2026-07-25 03:19:19
713
web3: Injective advances cross-chain upgrades, INJ price remains range-bound.
Injective passed IIP-677, a mainnet upgrade proposal, while another proposal, IIP-678, is still under voting. While INJ prices are consolidating, protocol governance and revenue data continue to grow.
Coinpedia
·2026-07-29 23:34:54
774
web3: Brale launches the ION protocol, targeting the cross-chain liquidity bottleneck of stablecoins.
Brale launched the ION Protocol testnet, hoping to alleviate the fragmentation problem of cross-chain liquidity for stablecoins through a burn and mint model.
CoinDesk
·2026-07-29 23:34:52
683
Ethereum: Triple-A hot wallet attacked, over $9.7 million stolen.
Triple-A's hot wallet is suspected of being hacked, with over $9.7 million in assets being transferred across multiple blockchains and ultimately converged to an Ethereum address.
Coinpedia
·2026-07-25 14:30:08
956