coinedition.com AFI Pauses afiUSD Vault After $480K Exploit
Article Content
- •AFI's afiUSD vault suffered an exploit resulting in $480,000 in losses.
- •The incident is contained to the afiUSD vault; other vaults remain secure.
- •AFI is investigating the exploit and will release a detailed post-mortem report.
Artificial Financial Intelligence (AFI) confirmed a security incident involving its afiUSD vault on mainnet, with losses estimated at $480,000. The affected vault has been paused as a precaution while investigations are ongoing. AFI stated that the incident is limited to the afiUSD vault, with no other vaults affected. The team is actively investigating the exploit with security partners and tracing related activity. A post-mortem report is expected soon, detailing the exploit path and potential recovery steps. Users are advised to refrain from interacting with afiUSD until further updates are provided. The incident highlights ongoing vulnerabilities in decentralized finance (DeFi) systems, particularly in vault products that pool user funds.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track AFI in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…