www.cointime.ai Aptos Fixes Critical Vulnerability with $70 Billion Risk Exposure
Article Content
- •Aptos fixed a critical vulnerability in its Move virtual machine with a potential $70 billion risk.
- •The flaw allowed attackers to manipulate blockchain data using a $3,000 server setup.
- •No user funds were lost, and the vulnerability was patched within hours of discovery.
Aptos Labs patched a critical vulnerability in its Move virtual machine that could have exposed up to $70 billion in crypto assets. Discovered by Hexens in February 2026, the flaw allowed attackers to manipulate core blockchain data with a low-cost setup of approximately $3,000. The vulnerability, termed a 'stale-cache bug,' was reported through Aptos's bug bounty program and was fixed within hours of disclosure. Simulated attacks achieved a success rate of nearly 90%, raising concerns about the potential for exploitation. No user funds were lost during this incident, and Aptos emphasized the low exploitability of the vulnerability in real-world conditions. The incident highlights the importance of rapid response in blockchain security, especially for high-value networks. The theoretical risk exposure includes critical infrastructure such as stablecoins and cross-chain bridges.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (30)
Following this threat?
Track Aptos Labs in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…