Cryptopolitan Transit Finance Suffers $1.88M Hack, Promises User Refunds
Article Content
- •Transit Finance lost $1.88 million due to a hack exploiting a deprecated smart contract.
- •PeckShield identified the stolen funds in a specific Ethereum address linked to the attack.
- •The incident is part of a larger trend of DeFi security breaches, with 2026 losses nearing $2.3 billion.
Transit Finance experienced a hack that resulted in the theft of approximately $1.88 million from a deprecated smart contract. PeckShield identified the breach and traced the stolen funds to a specific Ethereum address. The attack exploited vulnerabilities in an early-version smart contract on the TRON network, which had been deprecated since 2022. Transit Finance has committed to refunding affected users and has set a 48-hour window for the attacker to respond regarding the return of the stolen assets. The protocol has stated that its current smart contract version remains secure and unaffected. This incident is part of a broader trend of DeFi attacks, with significant losses reported in recent weeks. In April alone, the DeFi sector lost over $609 million to cyberattacks, raising concerns about the security of cross-chain protocols. The total losses in 2026 are projected to reach $2.3 billion due to ongoing vulnerabilities.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Lazarus Group and Aurellion Labs in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Mirage Kitten Targets Aviation and FinTech with New Cross-Platform Malware The Iranian cyberespionage group Mirage Kitten has launched a campaign targeting technology professionals in the aviation and FinTech sectors across the Middle East and Africa. This operation involves the use of two newly discovered malware families, NodeRabbit and PollCat, both of which are cross-platform remote…
Iranian State Actors Deploy CHOSEN BRICK Spyware Against Dissidents On September 15, 2026, the UK, US, and Netherlands issued a joint advisory regarding a spyware campaign attributed to Iranian state actors targeting dissidents, activists, and journalists. The malware, known as CHOSEN BRICK, is delivered through spear-phishing attacks on messaging platforms like WhatsApp and Telegram.…