DeTracker Security Feed

$1.0B lost this week $93.7B lost in 30 days $94.9B lost this year

MetaMask says no user funds were hit in validator security incident

MetaMask reported a security incident affecting its Ethereum validator infrastructure on September 30, 2026, leading to the diversion of approximately 0.36 ETH in staking rewards. As a precaution, around 17,000 validators holding approximately 523,000 ETH are exiting, a process expected to complete by October 7, 2026. MetaMask confirmed no user wallets or funds were compromised.

Source: Crypto Briefing (opens in a new tab)

#Lido #MetaMask

Fetch.AI, NuNet and SingularityNET targeted in $17M token attack

A coordinated exploit targeting Fetch.ai, SingularityNET, and NuNet on September 19, 2026, resulted in approximately $17 million in unrealized gains for an attacker who compromised privileged signing keys. The attacker drained existing tokens and minted billions of new ones, causing token prices to collapse. All three projects have paused operations and deactivated vulnerable keys.

Source: Crypto Briefing (opens in a new tab)

#Fetch.ai #NuNet #Scale #SingularityNET #cap

🚨 SlowMist TI Alert: FomoPeek App v1.1–1.2 Asset Theft 🚨 We have recently received multiple reports of users having assets stolen. Our investigation found that the affected cases involved private key exposure, and some of the users had previously installed and used @FomoPeek https://t.co/g4tmSe376n

SlowMist reported that users of the FomoPeek App (versions 1.1-1.2) have had assets stolen due to private key exposure. Some affected users had previously installed and used the FomoPeek application.

Source: SlowMist Team (opens in a new tab)

#FomoPeek

🚨SlowMist TI Alert🚨 💸 WealthManagementV2 Loss: 26,414 USDT 🔍 Root Cause: The owner privileges of the victimized contract were suspected of being illegally transferred (possibly due to a leaked private key). The new owner (attacker-controlled) can instantly set plan

WealthManagementV2 experienced a loss of 26,414 USDT. The root cause is suspected to be the illegal transfer of owner privileges, likely due to a leaked private key, allowing the attacker to set plans.

Source: SlowMist Team (opens in a new tab)

#USDT #WealthManagementV2

XRPH Wallet hacked

On September 3, 2026, approximately 4,011 XRPH Wallet user accounts were compromised due to seed phrase leakage, resulting in the theft of XRPH, XRPHAI, and other assets totaling around $452,000. The stolen funds were bridged to Ethereum and converted to DAI, which remains in a single address. The XRPH Wallet project confirmed the XRP Ledger itself was not affected, took the app offline, and is investigating.

Source: SlowMist Hacked (opens in a new tab)

#DAI #XRPHWallet

Aquifer hacked

Solana-based AMM Aquifer was exploited for approximately $2.5 million, with evidence suggesting compromised admin credentials or linked wallets rather than a smart contract bug. The attacker used addresses on both Solana and Ethereum. Aquifer's upgrade authority has offered a bounty for the return of at least 80% of the stolen assets by September 3, 2026.

Source: SlowMist Hacked (opens in a new tab)

#Aquifer

What happens when a fully-licensed, fully-compliant stablecoin issuer still gets hit? In May, one of StablR's three signing keys was compromised, and the attacker minted tokens directly into their own wallet, with no custody breach and no stolen funds involved. Hypernative's https://t.co/lFaqmeMEWR

In May, one of StablR's three signing keys was compromised, allowing an attacker to mint tokens directly into their wallet. This incident occurred despite StablR being a licensed and compliant stablecoin issuer, with no custody breach or stolen funds involved.

Source: Hypernative (opens in a new tab)

#StablR