吴说区块链|Sep 19, 2026 01:04
Radix Foundation released an incident report stating that on August 31, attackers exploited an authorization vulnerability in the Radix Engine asset vault. Through 26 transactions, they unauthorizedly extracted assets belonging to others and transferred them via the Hyperlane cross-chain bridge to Ethereum, BNB Chain, and Solana, where they were sold. The vulnerability originated from a code refactor in June 2023, which was not detected in subsequent independent audits. It did not involve user private key leaks or cross-chain bridge failures. After the incident, the foundation coordinated the closure of cross-chain channels, and validators voluntarily took enough staked assets offline to halt network transaction confirmations. As of the report's release, the vulnerability has been fixed, independently reviewed, and tested, while network recovery efforts are still ongoing. The report did not disclose the total amount of losses. The foundation and external forensic teams believe the attackers may have used AI-assisted code analysis tools to identify the vulnerability. https://(wublock123.com)/news/radix-vault-authorization-bug-attacker-stole-assets-26-transactions-68645
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink