Ethereum: Arbitrum perpetual DEX AFX Trade suffers theft of approximately $24.15 million.
Decrypt
07-23 18:56
Ai Focus
Arbitrum's perpetual DEX AFX Trade was attacked, with approximately $24.15 million USDC transferred and converted into ETH. The platform suspended bridging and proposed a 30% white-hat bounty program.
Helpful
No.Help

AFX Trade, a decentralized exchange platform for perpetual contracts within the Arbitrum ecosystem, has experienced a security incident. Security firm Blockaid stated that the USDC escrow bridge operated by the platform was attacked, resulting in a loss of approximately $24.15 million. AFX subsequently suspended bridging services and initiated incident response procedures.

The stolen funds have been transferred to Ethereum.

AFX stated that the specific attack path is still under investigation. On-chain security firm PeckShield reported that the attackers transferred the stolen USDC across chains to Ethereum and exchanged it for 12,468 ETH; the funds are currently concentrated in a single address.

The platform stated that the impact is currently limited to AFX's self-operated custody bridges; the trading infrastructure, mainnet system, and the Arbitrum network itself are unaffected. AFX also stated that it is working with ecosystem partners and security agencies to track asset flows.

Arbitrum clarifies that the native bridge is unaffected.

Following the incident, Arbitrum co-founder Steven Goldfeder stated that the Arbitrum native bridge "was not attacked or exploited in any way," and that the unusual transactions originated from a third-party protocol, not from the official network bridging infrastructure.

This statement aims to limit the scope of the incident to a single application layer protocol. If the native bridge malfunctions, the impact usually spreads to the entire Layer 2 network; however, the attack targeted an independent protocol built upon it, making the risk relatively localized.

AFX proposes a return plan to the attackers.

In its public communications, AFX proposed a solution: if the attacker returns 70% of the funds, the remaining 30% can be retained as a "white hat bounty." This practice has become increasingly common in recent crypto security incidents, with some protocols using this tactic to secure a higher percentage of recovered funds.

This incident also reflects the ongoing security pressures facing DeFi in 2026. The report mentions that losses due to attacks in the DeFi sector this year have exceeded $840 million. Just a week earlier, another perpetual contract platform on Arbitrum, Ostium, also lost approximately $18 million due to a compromised oracle key.

Tip
$0
Like
3
Save
2
Views 173
CoinMeta reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
web3: During the sharp decline in South Korea, Upbit achieved a single-hour trading volume of 11.5 trillion Korean won
South Korean exchange Upbit saw a one-hour trading volume of 11.5 trillion Korean won during the flash crash period, with XRP having the highest trading proportion; the entire market cleared approximately 523 million US dollars in one hour.
Cryptonews
·2026-08-23 18:24:12
27
web3: South Korean crypto trading is picking up, with Upbit transaction volume soaring by 273%
South Korean crypto trading activity has picked up, with Upbit and Bithumb seeing a significant increase in 24-hour trading volume. XRP leads the Upbit trading rankings.
CoinPedia
·2026-08-23 17:32:39
28
The Sandbox Suspends Cross-Chain Bridge Between Base and BNB Chain: Unsecured SAND Why Can't We Just Look at the Coin Minting Volume?
On August 22, The Sandbox stated that a vulnerability was discovered in its SAND cross-chain bridge on Base and BNB Smart Chain. Attackers were able to mint tokens without the corresponding Ethereum SAND locking support. The team subsequently suspended the related cross-chain functionality and claimed that the vulnerability had been contained. The core issue of this incident is not merely the simple "minting" of additional tokens, but rather the disruption of the most fundamental accounting relationships between cross-chain assets: the mapped tokens on the target chain should correspond one-to-one with the assets locked or destroyed on the source chain; once unsecured minting occurs, the market can no longer assume equivalence between SAND on different chains.
币界网
·2026-08-23 12:29:19
124
Flipkart Accelerates to Catch Up with India's Top Three Instant Retail Players
On the Minutes of Flipkart, daily orders reached around 1.1 to 1.2 million, approaching the Instamart. Competition in India's instant retail sector continues to heat up.
TechCrunch
·2026-08-23 11:22:37
39
web3 : PEPE rises to 0.00000411, contract holdings surge
PEPE rose by nearly 18%, with futures trading volume and open interest contracts also increasing simultaneously. The market is focusing on the 0.000005 level.
CoinPedia
·2026-08-22 18:28:39
60
View More