/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

An unknown attacker has been emptying Solana and USDC wallets; Solscan says over 15K wallets have been affected, draining $4.46M, primarily in SOL and USDC

At this point in the crypto deflation, an apparent attack … Aman Anand / Fossbytes : Solana Wallets Get Hacked, And The Company Loses Millions Rahul Nambiampurath / Ethereum World News : Solana Exploit Possibly Caused by Slope Wallet Vulnerability The Capital : $500m L1 exploit smacks the cryptoverse! Charles Thuo / CoinJournal : Web3 wallet provider Slope linked to Solana attack Waivly : 👛 Solana's $6M exploit tied to Slope Wallet Mark Brennan / The Crypto Basic : Solana Exploit Tied To Slope Wallet As Community Assured That Blockchain Remains Uncompromised Sean Riley / Laptop Mag : Crypto wallet hack has drained millions from iOS and Android users with ‘hot’ wallets — how to protect yourself Wasif Rahman / Web 3 Shower Thoughts : The Solana Hack and Why You Need a Hardware Wallet Sabyasaachi / The Daily Moon : Hand over your Solana  —  Good morning!  Welcome to The Daily Moon. Jonathan Greig / The Record : Several crypto platforms targeted in multimillion-dollar attacks Vignesh Karunanidhi / Watcher Guru : Cardano's Charles Hoskinson Reacts to the On-going Solana Attack Dan Milmo / The Guardian : Hacking attack drains £5m from 8,000 wallets linked to Solana crypto network Metaversal / The Metaversalist : Fresh woes for Solana, NFTiffs, and Care Bear markets (Issue #33) Jorge Jimenez / PC Gamer : ‘Malicious actor’ drains $5.2 million in crypto assets from 8,000 digital wallets in one go Will Gendron / Input : Hackers targeting Solana steal millions of dollars worth of crypto tokens Alex White-Gomez / NFT : Solana Hackers Drain Millions of Dollars from Thousand of Wallets James Vincent / The Verge : Solana ecosystem hit by hack draining millions in crypto from 8,000 hot wallets MacKenzie Sigalos / CNBC : Ongoing solana attack targets thousands of crypto wallets, costing users more than $5 million so far Kyt Dotson / SiliconANGLE : Updated: Solana-based wallet hack drains more than $6M in ongoing attack Tweets: @solanastatus : Engineers from multiple ecosystems, with the help of several security firms, are investigating drained wallets on Solana. There is no evidence hardware wallets are impacted. This thread will be updated as new information becomes available. @phantom : We are working closely with other teams to get to the bottom of a reported vulnerability in the Solana ecosystem. At this time, the team does not believe this is a Phantom-specific issue. As soon as we gather more information, we will issue an update. @0xfoobar : 🚨 Widespread Solana private key compromise 🚨 - attacker is stealing both native tokens (SOL) and SPL tokens (USDC) - affecting wallets that have been inactive for >6 months - both Phantom & Slope wallets reportedly drained https://twitter.com/... @sandeepnailwal : My heart goes out to #Solana community members who lost their life savings in the ongoing attack. Stay strong, these are the growing pains the entire blockchain industry has to go through. These moments, if handled correctly, lead to a lot of strength for any ecosystem.🖖 @peckshieldalert : #PeckShieldAlert The widespread hack on Solana wallets is likely due to the supply chain issue exploited to steal/uncover user private keys behind affects wallets. So far, the loss is estimated to be $8M, excluding one illiquid shitcoin (only has 30 holds & maybe misvalued $570M) https://twitter.com/... @solanastatus : Engineers from across several ecosystems, in conjunction with audit and security firms, continue to investigate the root cause of an incident that resulted in approximately 8,000 wallets being drained. 1/2 @aeyakovenko : Seems like an iOS supply chain attack. Multiple plausible wallets that only received sol and had no interactions beyond receiving have been affected. https://explorer.solana.com/ ... As well as key that were imported into iOS, and generated externally. https://explorer.solana.com/ ... @solanastatus : This does not appear to be a bug with Solana core code, but in software used by several software wallets popular among users of the network. Updates will be posted to https://twitter.com/... as they become available. 2/2 @solanastatus : An exploit allowed a malicious actor to drain funds from a number of wallets on Solana. As of 5am UTC approximately 7,767 wallets have been affected. The exploit has affected several wallets, including Slope and Phantom. This appears to have affected both mobile and extension. @magiceden : 🚨🚨🚨There seems to be a widespread SOL exploit at play that's draining wallets throughout the ecosystem Here's what you can do right now to best protect yourself 1. Go to >Settings on your @phantom wallet 2. >Trusted Apps 3. >Revoke Permissions for any suspicious links 💜 @cz_binance : There is an active security incident on Solana. Many (7000+ and counting) wallets are drained of SOL & USDC. Don't know root cause yet. Maybe permissions granted to apps. For remediation, send the funds to a cold wallet or CEX like @Binance. https://twitter.com/... @solanastatus : There's no evidence hardware wallets have been impacted - and users are strongly encouraged to use hardware wallets. Do not reuse your seed phrase on a hardware wallet - create a new seed phrase. Wallets drained should be treated as compromised, and abandoned. @solporttom : Massive exploit/drain going on with Solana seeing it live in Taiyo tons of people losing their whole balance out of no where. Move everything to a ledger NOW. Two wallets reported: #1 https://solscan.io/... #2: https://solscan.io/... Miles Deutscher / @milesdeutscher : There's an unknown $SOL exploit currently draining random Phantom wallets right now. ⚠️ $6m currently stolen. If you have funds on Phantom, make sure to revoke all permissions + move to a hardware wallet. @aeyakovenko : Android seems to be affected as well. All the confirmed stories so far have had the key imported or generated on mobile. Most of the reports are slope, but a few phantom users as well. Grady Booch / @grady_booch : “These are the growing pains the entire blockchain industry has to go through” Bullshit, Sandeep. Complete and utter rejection of ethical computing on your part. https://twitter.com/... Kevin Collier / @kevincollier : I literally don't know how to keep covering the scope of how widespread these mass crypto hacks have gotten. It's just “oh my God they found another way/they did it again/it's so much money,” over and over and over. https://twitter.com/... @lizrummy : Sorry you lost all your life savings, but please understand a hack every 10 seconds is just growing pains for the industry. Look at the big picture. https://twitter.com/... Chris Albon / @chrisalbon : From the outside it feels like there are only two types of events in crypto: 1. Something new just launched 2. People lost their life savings https://twitter.com/... Magic Ethen / @magiceden : We highly suggest you to take steps to protect yourself in the best way we can recommend right now We'll keep you guys updated with anything significant we may find during our investigation Stay strong 🫂💜 https://twitter.com/... Miles Deutscher / @milesdeutscher : 1/ It all started when a few people started to notice some unusual outflows from Phantom wallets on Solana. https://twitter.com/... @justinbarlow : For reference I haven't interacted with any contracts at all in ~40 days. My ERC-20 and SPL USDC held on both @slope_finance and @TrustWallet were drained Spencer Dailey / @spencerdailey : 1/ this solana/USDC hack situation is nuts: it's a worst case scenario (thousands of wallets hacked for no apparent reason after 15+ hours) and... SOL is only down 4% over 24 hours. Markets are completely broken https://www.techmeme.com/... https://twitter.com/... FatMan / @fatmanterra : @cobie Insider told me what happened (Solana has a pretty good guess), announcement should be coming soon. They are still narrowing down whether it was Slope *and* Phantom or just Slope that was leaking crucial data to a certain integration accidentally. ETA a couple hours. @cobie : Is there a post-mortem on the Solana wallet draining thing anywhere yet @caspiancey : Don't worry, Jump Crypto will foot the bill again. Right guys? Guys?? Jacob Silverman / @silvermanjacob : Sorry you lost your LIFE SAVINGS. Growing pains. https://twitter.com/... @lyu_johnny : We have noticed the ongoing #Solana wallets exploit. Users can be reassured that their $SOL assets with #KuCoin are safe. We're in close contact with the Solana team and have blocked the suspicious addresses as requested. Still checking other ways to help. Stay Safe! 🙏 Steve Kovach / @stevekovach : There have been 3 big crypto hacks/breaches/thefts so far this month. And it's only August 3. https://twitter.com/... Matthew Green / @matthew_d_green : I don't mean to dwell on this Solana key theft issue, because I don't specifically care about Solana, but I feel like this might be the tip of a much bigger iceberg re: wallet security. https://decrypt.co/... Haseeb Qureshi / @hosseeb : This has been a bad week for exploits. Active attack right now on Solana—no one knows yet where it's coming from. Revoke permissions ASAP (or just move assets to a Ledger). https://twitter.com/... Matt DesLauriers / @mattdesl : npm install scripts seems like the biggest crypto hot-wallet attack vector on the web. 😬 @buccocapital : We are “so early” it might actually have been “too early” https://twitter.com/... Liron Shapira / @liron : The SOL hack is a good reminder that by the time all problems with blockchain currencies get patched, the resulting financial system will be as complex and as regulated as traditional finance. Therefore I recommend focusing on iterative upgrades to the traditional finance system. Dmitriy Gerasimov / @naeper : Two important lessons: - Solana was written on Rust that's positioned as secure language. Language itself doesn't provide high security. That's why we've selected C language. - Most probable cause is supply chain attack. That's why Cellframe almost has no 3rd party components https://twitter.com/... Justin Bons / @justin_bons : Solana wallets are being drained on mass right now! As part of what looks like a private key exploit! I have been warning people about the reckless behavior of SOL for years This is a consequence of that behavior If you are affected follow this advice: https://twitter.com/... S◎L Big Brain / @solbigbrain : Still seems to be a lot of unknowns on this exploit. Nothing concrete on the exact cause yet. Most roads are leading to those who had mobile wallets (Phantom or Slope). I have used zero mobile wallets and so far all wallets appear safe. Anybody drained while never using mobile? Ant / @thisisnuse : Unaffected by the $SOL exploit due to draining my own wallet using good old fashion shit trading at Mango months back. Crisis averted. @officer_cia : Big news - @Solana hack! In an unknown way scammers are withdrawing $SOL from the wallets of ordinary users right now! The amount of stolen funds currently exceeds $5 million. I recommend unlinking your wallet from all sites so they don't have access to your assets! https://twitter.com/... @top7ico : Ongoing Exploit of @solana $SOL Hot wallets: More than 8,000 wallets drained Funds have been drained without users knowledge from major internet-connected hot wallets including @phantom, @slope_finance and @TrustWallet. 👉 https://coindesk.com/... https://twitter.com/... Jacob Silverman / @silvermanjacob : Imagine if you got a message like this about your USD checking account (and if you didn't get this message you'd be in trouble). Anyway, Solana, an industry darling, seems to be experiencing a major hack. Many magic tokens lost. https://twitter.com/... @coinbureau : Another day, another hack... Seems to be an ongoing attack on Solana affecting hot wallets. Doesn't appear to be about dApp permissions either so revoking won't help. If you are using a $SOL web wallet, best to transfer those funds to a hardware device for the time being 🙏 https://twitter.com/... H.E. Justin Sun / @justinsuntron : Revoking approvals and transferring your solana based token to an offline hardware wallet. For USDC, you can trust USDC on #TRON. For SOL, you can trust @Poloniex. https://twitter.com/... @justinbarlow : Just had my USDC drained AMA🙁

Decrypt Jason Nelson

Discussion

  • @solanastatus @solanastatus on x
    Engineers from multiple ecosystems, with the help of several security firms, are investigating drained wallets on Solana. There is no evidence hardware wallets are impacted. This thread will be updated as new information becomes available.
  • @phantom @phantom on x
    We are working closely with other teams to get to the bottom of a reported vulnerability in the Solana ecosystem. At this time, the team does not believe this is a Phantom-specific issue. As soon as we gather more information, we will issue an update.
  • @0xfoobar @0xfoobar on x
    🚨 Widespread Solana private key compromise 🚨 - attacker is stealing both native tokens (SOL) and SPL tokens (USDC) - affecting wallets that have been inactive for >6 months - both Phantom & Slope wallets reportedly drained https://twitter.com/...
  • @peckshieldalert @peckshieldalert on x
    #PeckShieldAlert The widespread hack on Solana wallets is likely due to the supply chain issue exploited to steal/uncover user private keys behind affects wallets. So far, the loss is estimated to be $8M, excluding one illiquid shitcoin (only has 30 holds & maybe misvalued $570M)…
  • @sandeepnailwal @sandeepnailwal on x
    My heart goes out to #Solana community members who lost their life savings in the ongoing attack. Stay strong, these are the growing pains the entire blockchain industry has to go through. These moments, if handled correctly, lead to a lot of strength for any ecosystem.🖖
  • @solanastatus @solanastatus on x
    Engineers from across several ecosystems, in conjunction with audit and security firms, continue to investigate the root cause of an incident that resulted in approximately 8,000 wallets being drained. 1/2
  • @solanastatus @solanastatus on x
    This does not appear to be a bug with Solana core code, but in software used by several software wallets popular among users of the network. Updates will be posted to https://twitter.com/... as they become available. 2/2
  • @aeyakovenko @aeyakovenko on x
    Seems like an iOS supply chain attack. Multiple plausible wallets that only received sol and had no interactions beyond receiving have been affected. https://explorer.solana.com/ ... As well as key that were imported into iOS, and generated externally. https://explorer.solana.com…
  • @solanastatus @solanastatus on x
    An exploit allowed a malicious actor to drain funds from a number of wallets on Solana. As of 5am UTC approximately 7,767 wallets have been affected. The exploit has affected several wallets, including Slope and Phantom. This appears to have affected both mobile and extension.
  • @magiceden @magiceden on x
    🚨🚨🚨There seems to be a widespread SOL exploit at play that's draining wallets throughout the ecosystem Here's what you can do right now to best protect yourself 1. Go to >Settings on your @phantom wallet 2. >Trusted Apps 3. >Revoke Permissions for any suspicious links 💜
  • @solanastatus @solanastatus on x
    There's no evidence hardware wallets have been impacted - and users are strongly encouraged to use hardware wallets. Do not reuse your seed phrase on a hardware wallet - create a new seed phrase. Wallets drained should be treated as compromised, and abandoned.
  • @cz_binance @cz_binance on x
    There is an active security incident on Solana. Many (7000+ and counting) wallets are drained of SOL & USDC. Don't know root cause yet. Maybe permissions granted to apps. For remediation, send the funds to a cold wallet or CEX like @Binance. https://twitter.com/...
  • @solporttom @solporttom on x
    Massive exploit/drain going on with Solana seeing it live in Taiyo tons of people losing their whole balance out of no where. Move everything to a ledger NOW. Two wallets reported: #1 https://solscan.io/... #2: https://solscan.io/...
  • @milesdeutscher Miles Deutscher on x
    There's an unknown $SOL exploit currently draining random Phantom wallets right now. ⚠️ $6m currently stolen. If you have funds on Phantom, make sure to revoke all permissions + move to a hardware wallet.
  • @aeyakovenko @aeyakovenko on x
    Android seems to be affected as well. All the confirmed stories so far have had the key imported or generated on mobile. Most of the reports are slope, but a few phantom users as well.
  • @justinbarlow @justinbarlow on x
    For reference I haven't interacted with any contracts at all in ~40 days. My ERC-20 and SPL USDC held on both @slope_finance and @TrustWallet were drained
  • @chrisalbon Chris Albon on x
    From the outside it feels like there are only two types of events in crypto: 1. Something new just launched 2. People lost their life savings https://twitter.com/...
  • @kevincollier Kevin Collier on x
    I literally don't know how to keep covering the scope of how widespread these mass crypto hacks have gotten. It's just “oh my God they found another way/they did it again/it's so much money,” over and over and over. https://twitter.com/...
  • @grady_booch Grady Booch on x
    “These are the growing pains the entire blockchain industry has to go through” Bullshit, Sandeep. Complete and utter rejection of ethical computing on your part. https://twitter.com/...
  • @magiceden Magic Ethen on x
    We highly suggest you to take steps to protect yourself in the best way we can recommend right now We'll keep you guys updated with anything significant we may find during our investigation Stay strong 🫂💜 https://twitter.com/...
  • @lizrummy @lizrummy on x
    Sorry you lost all your life savings, but please understand a hack every 10 seconds is just growing pains for the industry. Look at the big picture. https://twitter.com/...
  • @milesdeutscher Miles Deutscher on x
    1/ It all started when a few people started to notice some unusual outflows from Phantom wallets on Solana. https://twitter.com/...
  • @spencerdailey Spencer Dailey on x
    1/ this solana/USDC hack situation is nuts: it's a worst case scenario (thousands of wallets hacked for no apparent reason after 15+ hours) and... SOL is only down 4% over 24 hours. Markets are completely broken https://www.techmeme.com/... https://twitter.com/...
  • @fatmanterra FatMan on x
    @cobie Insider told me what happened (Solana has a pretty good guess), announcement should be coming soon. They are still narrowing down whether it was Slope *and* Phantom or just Slope that was leaking crucial data to a certain integration accidentally. ETA a couple hours.
  • @cobie @cobie on x
    Is there a post-mortem on the Solana wallet draining thing anywhere yet
  • @lyu_johnny @lyu_johnny on x
    We have noticed the ongoing #Solana wallets exploit. Users can be reassured that their $SOL assets with #KuCoin are safe. We're in close contact with the Solana team and have blocked the suspicious addresses as requested. Still checking other ways to help. Stay Safe! 🙏
  • @caspiancey @caspiancey on x
    Don't worry, Jump Crypto will foot the bill again. Right guys? Guys??
  • @silvermanjacob Jacob Silverman on x
    Sorry you lost your LIFE SAVINGS. Growing pains. https://twitter.com/...
  • @stevekovach Steve Kovach on x
    There have been 3 big crypto hacks/breaches/thefts so far this month. And it's only August 3. https://twitter.com/...
  • @matthew_d_green Matthew Green on x
    I don't mean to dwell on this Solana key theft issue, because I don't specifically care about Solana, but I feel like this might be the tip of a much bigger iceberg re: wallet security. https://decrypt.co/...
  • @mattdesl Matt DesLauriers on x
    npm install scripts seems like the biggest crypto hot-wallet attack vector on the web. 😬
  • @hosseeb Haseeb Qureshi on x
    This has been a bad week for exploits. Active attack right now on Solana—no one knows yet where it's coming from. Revoke permissions ASAP (or just move assets to a Ledger). https://twitter.com/...
  • @buccocapital @buccocapital on x
    We are “so early” it might actually have been “too early” https://twitter.com/...
  • @liron Liron Shapira on x
    The SOL hack is a good reminder that by the time all problems with blockchain currencies get patched, the resulting financial system will be as complex and as regulated as traditional finance. Therefore I recommend focusing on iterative upgrades to the traditional finance system.
  • @naeper Dmitriy Gerasimov on x
    Two important lessons: - Solana was written on Rust that's positioned as secure language. Language itself doesn't provide high security. That's why we've selected C language. - Most probable cause is supply chain attack. That's why Cellframe almost has no 3rd party components htt…
  • @justin_bons Justin Bons on x
    Solana wallets are being drained on mass right now! As part of what looks like a private key exploit! I have been warning people about the reckless behavior of SOL for years This is a consequence of that behavior If you are affected follow this advice: https://twitter.com/...
  • @solbigbrain S◎L Big Brain on x
    Still seems to be a lot of unknowns on this exploit. Nothing concrete on the exact cause yet. Most roads are leading to those who had mobile wallets (Phantom or Slope). I have used zero mobile wallets and so far all wallets appear safe. Anybody drained while never using mobile?
  • @thisisnuse Ant on x
    Unaffected by the $SOL exploit due to draining my own wallet using good old fashion shit trading at Mango months back. Crisis averted.
  • @officer_cia @officer_cia on x
    Big news - @Solana hack! In an unknown way scammers are withdrawing $SOL from the wallets of ordinary users right now! The amount of stolen funds currently exceeds $5 million. I recommend unlinking your wallet from all sites so they don't have access to your assets! https://twitt…
  • @top7ico @top7ico on x
    Ongoing Exploit of @solana $SOL Hot wallets: More than 8,000 wallets drained Funds have been drained without users knowledge from major internet-connected hot wallets including @phantom, @slope_finance and @TrustWallet. 👉 https://coindesk.com/... https://twitter.com/...
  • @silvermanjacob Jacob Silverman on x
    Imagine if you got a message like this about your USD checking account (and if you didn't get this message you'd be in trouble). Anyway, Solana, an industry darling, seems to be experiencing a major hack. Many magic tokens lost. https://twitter.com/...
  • @justinbarlow @justinbarlow on x
    Just had my USDC drained AMA🙁
  • @coinbureau @coinbureau on x
    Another day, another hack... Seems to be an ongoing attack on Solana affecting hot wallets. Doesn't appear to be about dApp permissions either so revoking won't help. If you are using a $SOL web wallet, best to transfer those funds to a hardware device for the time being 🙏 https:…
  • @justinsuntron H.E. Justin Sun on x
    Revoking approvals and transferring your solana based token to an offline hardware wallet. For USDC, you can trust USDC on #TRON. For SOL, you can trust @Poloniex. https://twitter.com/...
  • @web3isgreat @web3isgreat on x
    This is an ongoing attack, so stay tuned for updates on this one. The attackers are continuing to transfer funds out of various wallets as we speak, and it doesn't seem the source of the exploit has been identified.