Kucoin Web3 Security Breach: SecondFi Wallet Exposes Private Keys via Signature Flaw
Article Content
- •40 major hacking incidents in June 2026 resulted in $75.87 million in losses.
- •The SecondFi wallet was compromised, with 16 million ADA stolen from 374 wallets.
- •The breach stemmed from a signature implementation flaw, exposing private keys through public data.
In June 2026, the crypto sector faced 40 major hacking incidents, leading to losses of $75.87 million. The SecondFi wallet, part of the Cardano ecosystem, was notably compromised, with attackers transferring approximately 16 million ADA (worth $2.4 million) from 374 user wallets. The breach was due to a flaw in the wallet's signature implementation, where the signature nonce was incorrectly derived from public transaction messages, allowing attackers to potentially recover private keys without needing user credentials. Emergency measures by SecondFi secured an additional 129 million ADA that could have been at risk. This incident highlights vulnerabilities across multiple attack vectors in Web3, necessitating users to reassess the security of their crypto assets.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Aztec Connect in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…