Radix Foundation releases accident report: Attackers exploited vulnerabilities to extract assets
2026-09-19 09:02:44
According to CoinMeta, the Radix Foundation released an incident report stating that on August 31st, attackers exploited a vulnerability in the asset vault authorization of Radix Engine to unauthorizedly withdraw others' assets through 26 transactions. These assets were then transferred to Ethereum, BNB Chain, and Solana via the Hyperlane cross-chain bridge before being sold. The vulnerability originated from a code cleanup in June 2023 and was not detected by subsequent independent audits; it did not involve the leakage of user private keys or any cross-chain bridge failures. Following the incident, the foundation coordinated to shut down the cross-chain channels, and validators actively took offline a sufficient proportion of their staked interests to stop the network from confirming transactions. As of the time of the report's release, the vulnerability had been fixed and had undergone independent review and testing, with network recovery efforts still ongoing. The report did not disclose the total amount of losses. The foundation and external forensic teams believe that the attackers may have used AI auxiliary code analysis tools to discover the vulnerability.
Bullish 0
Bearish 0
Source:X
This content is for market information only and does not constitute investment advice.