Bullish

SecondFi Suspends Operations After $2.6M ADA Theft by Lazarus Group Suspects

2026-07-23 10:30:57

SecondFi halts wallet services after 374 accounts were drained of $2.6M in ADA. Lazarus Group is suspected. A ZK-based recovery tool is planned for August release.

Woofun AI reports that SecondFi has suspended its SecondFi and Yoroi wallet services following a security breach affecting 374 wallets between June 21 and 23, resulting in the theft of approximately 16.1 million ADA ($2.6 million). Investigations identified two independent attacker groups; the primary suspect is the North Korean Lazarus Group, while a second group targeted distinct wallets with no overlap. The incident stemmed from a cryptographic signature vulnerability present in both official and unauthorized GitHub code copies. SecondFi has patched the flaw and is developing a zero-knowledge proof-based recovery tool and wallet export feature, the former expected in August and the latter in early August, while warning users against unsolicited contact requesting private keys.

WOOFUN AI

Impact Assessment · Quick Read

The attribution to Lazarus Group highlights the escalating threat of state-sponsored actors targeting DeFi infrastructure. The shutdown of Yoroi, a widely used Cardano wallet, may temporarily disrupt user access and erode trust in the ecosystem's security posture. However, the planned ZK-based recovery mechanism could serve as a precedent for secure asset migration in post-breach scenarios, potentially mitigating long-term capital flight.
Generated by WOOFUN AI · For reference only, not investment advice

Comments

Me
Replying to @User
0/800

No comments yet.

Notifications

Sign in to view messages
View all messagesManage subscriptions