Cross-Chain Bridge Vulnerability Leads to $3M CrossCurve Loss

CRV-7,67%
SAGA-7,95%
SOL-4,77%

Losses at CrossCurve underline the high risk of cross-chain bridges during periods of rising crypto attacks.

CrossCurve halted user activity after an attack targeted its cross-chain bridge. The incident forced developers to investigate a smart contract flaw. Partner protocols and and security firms issued warnings as funds were traced on-chain.

User Interactions Halted as CrossCurve Examines Contract Weakness

CrossCurve confirmed on Sunday that its cross-chain bridge was targeted by attackers. The team linked the incident to a flaw in one of the bridge’s smart contracts. Users were asked to pause all activity while developers began reviewing the issue.

Because assets are held across multiple smart contracts, moving them between networks increases risk when a single component fails.

⚠️ URGENT Security Notice

Dear users,

Our bridge is currently under attack, involving the exploitation of a vulnerability in one of the smart contracts used.

Please pause all interactions with CrossCurve while the investigation is ongoing.

We appreciate your patience and… pic.twitter.com/yfo1KvWoDd

— CrossCurve (@crosscurvefi) February 1, 2026

Curve Finance addressed its community shortly after the incident. Users with exposure to CrossCurve pools were advised to reassess their positions and decide whether to withdraw voting support. The statement urged careful judgment when interacting with external protocols during unstable conditions.

Early checks found damage limited to the bridge, with no issues detected across other protocol components. Alerts went out quickly, while the team kept access paused and tracked the movement of stolen funds.

Protocol Calls for Asset Returns After On-Chain Review

After tracing on-chain activity, the team found that funds from the exploit had moved into 10 wallet addresses. CrossCurve said it could not confirm whether those wallets belonged to the attackers and saw no clear hostile behavior at that point. Even so, the protocol acknowledged that users lost funds due to the exploit.

In response, project officials appealed directly to recipients to return the assets. The team described the transfers as improper and asked for cooperation. To support recovery efforts, CrossCurve activated its SafeHarbor WhiteHat policy, offering a reward of up to 10% of recovered funds if the rest is returned.

Details included a direct contact email for coordination. An alternative option allows anonymous returns through a designated wallet address. The team said recovered funds would be returned to affected users after review.

Moreover, CrossCurve shared a contact email to help coordinate the return of funds. A separate wallet address was also provided for those who prefer to send assets back without revealing their identity. After verification, the team said it plans to distribute recovered funds to affected users.

Recent Breaches Expose Ongoing Risks in Decentralized Finance

Crypto attacks have increased across the industry, with the CrossCurve incident adding to a growing list of breaches. Security firm CertiK recorded nearly $400 million in losses in January 2026, with more than 40 major incidents reported.

_Image Source: _X/CertiK

Cross-chain systems face a higher risk because they handle large amounts of funds and rely on complex structures. Recent incidents show how fast damage can spread once an exploit begins.

Other victims during the same period included Swapnet, which lost $13 million. Saga and Makina Finance reported losses of $6.2 million and $4.2 million. Step Finance also suffered a breach that drained several treasury and fee wallets, moving more than 261,000 SOL.

Losses across 2025 passed $1 billion, marking the worst year on record for crypto theft. The CrossCurve case adds another reminder of ongoing security gaps within decentralized finance.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Gerelateerde artikelen

Resolv USR Exploit Triggers 50M Mint and Sharp Depeg

Resolv Labs faced a security breach where attackers minted 50M unbacked USR tokens, causing a rapid sell-off that depegged USR. Recovery efforts are ongoing, with losses estimated at $25M, while protocol operations remain paused.

CryptoFrontNews8u geleden

黑客伪造 Google Play 商店页面,针对巴西用户实施加密货币挖矿与钱包劫持攻击

近期,黑客通过仿冒 Google Play 商店的钓鱼网站在巴西发起 Android 恶意软件攻击,诱导用户下载伪造应用"INSS Reembolso"。该恶意软件具高度隐蔽性,执行加密货币挖矿并支持多种远程控制功能,部分变种还包含银行木马,能替换转账地址。

GateNews10u geleden

Resolv Labs Pauses Protocol After $23M Exploit Triggers USR Stablecoin Depeg

Resolv Labs halted its decentralized finance ( DeFi) protocol early Sunday morning after an exploit allowed an attacker to mint tens of millions of unbacked USR stablecoins, sending the token sharply off its dollar peg. What Caused the Resolv Labs Hack and USR Depeg? The incident struck the Resol

Coinpedia10u geleden

Resolv Incurs 80M $USR Loss As Exploiters Route Funds Via Leading DEXs

The Resolv network suffered a severe exploit, draining 80M $USR tokens. Attackers rapidly swapped the stolen assets across decentralized exchanges to cover their tracks. The platform has halted operations and is investigating recovery efforts while urging users to stay vigilant.

BlockChainReporter11u geleden

丈夫控妻子竊取 2 千多枚比特幣!法官:原告勝訴機率非常高

英國高等法院近期審理一起比特幣失竊案,原告 Ping Fai Yuen 指控分居妻子 Fun Yung Li 透過偷拍竊取其硬體錢包中的比特幣,價值約1.76億美元。錄音及搜查證據支持原告主張,法院判決維持資產凍結令,但駁回部分訴請。法官認為原告勝訴機率極高,建議盡快開庭。

区块客11u geleden

Fluid 因 Resolv 黑客事件暂停 USR 市场交易,承诺全额赔偿潜在坏账

Gate News 消息,3 月 22 日,DeFi 协议 Fluid 发布公告称,已获悉 Resolv 黑客事件,Fluid 的自动限额机制阻止了资金的过度借贷,USR 市场已暂停交易,事态发展得到控制。Fluid 表示,如果协议上仍有任何坏账,所有用户的损失都将得到全额赔偿。用户资金和协议安全是 Fluid 的首要任务,目前正在进行全面审查,调查结束后将发布详细的事后分析报告。

GateNews12u geleden
Opmerking
0/400
Geen opmerkingen