Pluang $815K Stolen in Ethereum Alephium TokenBridge Exploit
Article Content
- •Attackers exploited the Alephium TokenBridge, stealing $815,000 in 7 minutes.
- •The exploit utilized forged keys to gain unauthorized access to the bridge's funds.
- •Ongoing investigations aim to identify the attackers and recover the stolen assets.
On June 1, 2026, attackers exploited the Alephium TokenBridge on the Ethereum network, resulting in the theft of $815,000 within just 7 minutes. The exploit involved the use of forged keys, allowing unauthorized access to the bridge's funds. This incident has raised significant concerns among users and investors in the Ethereum ecosystem. The attack highlights vulnerabilities in the bridge's security mechanisms, prompting calls for enhanced protective measures. Currently, the status of the stolen funds remains unclear, and investigations are ongoing to identify the perpetrators. The incident underscores the risks associated with decentralized finance (DeFi) platforms, particularly those involving cross-chain transactions.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ethereum in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…