Close Menu
    Facebook X (Twitter) Instagram
    • Privacy Policy
    • Terms Of Service
    • Legal Disclaimer
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Facebook X (Twitter) Instagram
    Brief ChainBrief Chain
    • Home
    • Crypto News
      • Bitcoin
      • Ethereum
      • Altcoins
      • Blockchain
      • DeFi
    • AI News
    • Stock News
    • Learn
      • AI for Beginners
      • AI Tips
      • Make Money with AI
    • Reviews
    • Tools
      • Best AI Tools
      • Crypto Market Cap List
      • Stock Market Overview
      • Market Heatmap
    • Contact
    Brief ChainBrief Chain
    Home»Crypto News»Blockchain»Humanity Says Laptop Breach Led To $36M H Token Exploit
    Cointelegraph
    Blockchain

    Humanity Says Laptop Breach Led To $36M H Token Exploit

    June 9, 20263 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email
    Customgpt


    Humanity Protocol said an employee’s laptop compromise allowed attackers to seize bridge controls, upgrade contracts and steal over $36 million in H tokens. 

    In an incident update on Tuesday, the protocol said the Monday attack affected the H token across Ethereum and BNB Chain. The team said three of six Gnosis Safe owner keys were compromised, allowing attackers to take control of bridge administration on both networks. 

    Once they had control, the attackers changed the bridge contracts into different malicious versions, Humanity said. On Ethereum, they drained around 141.2 million tokens. On BSC, they added a function that let them create unlimited tokens, then minted 200 million tokens directly to their own wallet. 

    Humanity founder Terence Kwok told Cointelegraph that the project had multisignature controls spread across four individuals, but that some keys may have been exposed during setup. 

    coinbase

    “What we believe happened was some of the keys were accidentally backed up to a compromised device,” Kwok told Cointelegraph.

    He said Humanity uses “a licensed custodian for the majority of token treasury” and MPC for its operations treasury, but that “for certain contracts, multisig keys were set up in one place and then dispersed,” leaving some keys backed up on a compromised device. 

    The incident shows how a compromised endpoint can become a protocol-level crisis when different authorities are concentrated behind a small number of keys. Humanity said it halted deposits and withdrawals to the affected bridges and is working with exchanges and related parties to minimize damage and investigate recovery options. 

    Humanity Protocol’s H token fell by over 85% after the project disclosed the private key compromise. At the time, Kwok warned users not to interact with the bridge or liquidity pools. 

    Source: Humanity Protocol

    Security firms examine exploit pattern

    The case drew scrutiny from blockchain investigators over whether the attack was purely an external compromise or connected to unusual token activity before an upcoming unlock, as some community members pointed out. 

    Blockchain investigator ZachXBT initially questioned whether Humanity’s market maker and over-the-counter (OTC) activity were connected to the exploit. However, he later said that after further analysis, the market-maker and OTC activity appeared to be independent from the private key compromise. 

    Related: ZEC drops 30% as Shielded Labs reveals more about infinite counterfeit bug

    Hakan Unal, the senior security operations lead at Cyvers, told Cointelegraph that the onchain pattern can look similar at first, whether an incident is a genuine compromise or a staged event, because the attacker holds legitimate admin rights in both cases.

    “What distinguishes them is the surrounding behavior,” Unal said. “A genuine compromise usually shows speed and improvisation: funds rushed to fresh wallets, swaps at bad prices, mixer use, and no insider timing.”

    By contrast, Unal said a staged incident may show suspicious timing near unlocks or vesting, concentrated supply, orderly movement or proceeds that eventually route back toward team-linked addresses or market makers.

    “Right now the evidence is mixed, which is why the question is open,” he added.

    Researcher suspects the Humanity incident was coordinated

    Meanwhile, Allium Labs research lead Elton Shehdula said the exploit’s onchain pattern pointed to a potentially planned and coordinated operation rather than a lone opportunist.

    Wallet funding and timeline. Source: Allium Labs

    Shehdula said wallets were funded from an exchange and a mixer weeks in advance, the minting authority was “warmed up” days before the attack and the dump occurred across two chains simultaneously.

    He said the level of setup and access was consistent with either an “insider or an outside actor” who had quietly held the compromised key for some time.

    Magazine: Vietnam preps crypto pilot, HK pushes tokenization: Asia Express



    Source link

    frase
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    CryptoExpert
    • Website

    Related Posts

    Bitcoin Eyeing Six-Figure Milestone With Upside Odds on June 9

    June 8, 2026

    Claude Opus 4.8 Review: Better At What’s It Good At, Worse At What It’s Not

    June 7, 2026

    Want In On SpaceX? Kraken Unveils Early IPO Access Via xStocks

    June 6, 2026

    AI-assisted Zcash flaw exposes the supply integrity gap an emergency fork could not fully close

    June 5, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    notion
    Latest Posts

    Best AI Agent Tools In 2026 (Beginner Friendly)

    June 9, 2026

    Could Dogecoin (DOGE) Be Setting Up for Its Next Big Move? Analysts Think So

    June 9, 2026

    Humanity Says Laptop Breach Led To $36M H Token Exploit

    June 9, 2026

    Ethereum price forecast as BitMine buys 126,971 ETH: has ETH bottomed?

    June 9, 2026

    TSX Today: What to Watch for in Stocks on Tuesday, June 9

    June 9, 2026
    synthesia
    LEGAL INFORMATION
    • Privacy Policy
    • Terms Of Service
    • Legal Disclaimer
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Top Insights

    Checkonchain Analyst Says AI Rotation Creates Bitcoin’s Next Major Entry Point for Holders

    June 9, 2026

    MiCA Architect Says EU Should Prioritize Tokenization Over DeFi Rules

    June 9, 2026
    livechat
    Facebook X (Twitter) Instagram Pinterest
    © 2026 BriefChain.com - All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.