July 29, 2025
11 11 11 AM
Latest Post
Billionaire Ray Dalio Backs 15% Allocation to Bitcoin and Gold Amid U.S. Debt Spiral XRP Accumulation Plan Boosts Hyperscale Data Stock by 12% Asia Morning Briefing: Crypto Rally Stalls, ETH Flows May Decide What Comes Next Ray Dalio suggests putting 15% in Bitcoin, gold amid US ‘debt doom loop’ Bakkt Sells Loyalty Business and Pivots to Pure-Play Crypto, Offers Shares Quintenz, Possible Future U.S. Crypto Watchdog, Stymied Again on Step Toward CFTC Job Trump Eyes Moving U.S. Economy Further Into Crypto Via Mortgages, 401(k)s SUI Token Drops Nearly 6% After Brief Spike as Stronger U.S. Dollar Pressures Crypto Market Price predictions 7/28: SPX, DXY, BTC, ETH, XRP, BNB, SOL, DOGE, ADA, HYPE BNB Token Rallies to Record High as CEA Industries Raises $500M for Treasury Strategy

Multisig Failures Dominate as $2B Is Lost in Web3 Hacks in the First Half

Crypto investors lost around $2 billion to hacks in the first half of the year, with the first quarter alone topping all the losses of 2024, according to a report from security firm Hacken.

The most intriguing finding was that multisignature wallets, which require several people to sign a transaction before it is executed were frequently compromised due to user interface tampering and signer mismanagement.

The infamous first-quarter hack of centralized exchange Bybit resulted in a $1.46 billion breach when a compromised safe‑wallet interface tricked authorized signers.

It was the third quarter in a row in which the single largest hack originated from multisig lapses.

The first half also saw $300 million in rug pulls. Phishing and social engineering campaigns also contributed heavily, chalking up nearly $100 million. Smart contract vulnerabilities were negligible, accounting for less than 2% of total losses.

Access-control issues remain the dominant theme, responsible for over 80% of every stolen dollar this year.

Hacken urged a shift from reactive auditing to real-time operational defenses. Its report recommends the use of of AI-powered monitoring systems that continuously validate multisig transactions, detect deviations in signer activity and trigger automated safeguards.

It also recommends that both CeFi and DeFi projects treat signer protocols, multisig front-ends, and human workflows as security-critical infrastructure, bolstering them with automation, training and tighter governance.

This post was originally published on this site

Please enter Coingecko Free Api Key to get this plugin works