• bitcoinBitcoin (BTC) $ 90,318.00
  • ethereumEthereum (ETH) $ 3,087.61
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 2.03
  • bnbBNB (BNB) $ 884.83
  • usd-coinUSDC (USDC) $ 0.999969
  • staked-etherLido Staked Ether (STETH) $ 3,087.55
  • tronTRON (TRX) $ 0.273992
  • dogecoinDogecoin (DOGE) $ 0.137287
  • cardanoCardano (ADA) $ 0.410023
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • whitebitWhiteBIT Coin (WBT) $ 60.53
  • wrapped-stethWrapped stETH (WSTETH) $ 3,774.44
  • bitcoin-cashBitcoin Cash (BCH) $ 577.26
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 90,067.00
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,351.89
  • usdsUSDS (USDS) $ 0.999977
  • chainlinkChainlink (LINK) $ 13.76
  • wrapped-eethWrapped eETH (WEETH) $ 3,346.18
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999724
  • leo-tokenLEO Token (LEO) $ 9.53
  • wethWETH (WETH) $ 3,089.82
  • stellarStellar (XLM) $ 0.239032
  • zcashZcash (ZEC) $ 467.30
  • hyperliquidHyperliquid (HYPE) $ 28.14
  • moneroMonero (XMR) $ 408.37
  • ethena-usdeEthena USDe (USDE) $ 0.999301
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 90,366.00
  • litecoinLitecoin (LTC) $ 82.09
  • suiSui (SUI) $ 1.58
  • avalanche-2Avalanche (AVAX) $ 13.31
  • hedera-hashgraphHedera (HBAR) $ 0.125930
  • shiba-inuShiba Inu (SHIB) $ 0.000008
  • susdssUSDS (SUSDS) $ 1.08
  • usdt0USDT0 (USDT0) $ 1.00
  • daiDai (DAI) $ 0.999694
  • mantleMantle (MNT) $ 1.25
  • the-open-networkToncoin (TON) $ 1.61
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.143518
  • paypal-usdPayPal USD (PYUSD) $ 0.999910
  • crypto-com-chainCronos (CRO) $ 0.100538
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.21
  • uniswapUniswap (UNI) $ 5.39
  • polkadotPolkadot (DOT) $ 2.03
  • aaveAave (AAVE) $ 195.10
  • bittensorBittensor (TAO) $ 292.87
  • memecoreMemeCore (M) $ 1.63
  • usd1-wlfiUSD1 (USD1) $ 0.999298
  • canton-networkCanton (CC) $ 0.070382
  • rainRain (RAIN) $ 0.007403
  • bitget-tokenBitget Token (BGB) $ 3.60
  • okbOKB (OKB) $ 114.82
  • tether-goldTether Gold (XAUT) $ 4,301.87
  • falcon-financeFalcon USD (USDF) $ 0.998738
  • nearNEAR Protocol (NEAR) $ 1.65
  • ethereum-classicEthereum Classic (ETC) $ 13.12
  • aster-2Aster (ASTER) $ 0.948091
  • ethenaEthena (ENA) $ 0.249449
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,087.78
  • jito-staked-solJito Staked SOL (JITOSOL) $ 165.57
  • pepePepe (PEPE) $ 0.000004
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • internet-computerInternet Computer (ICP) $ 3.26
  • pi-networkPi Network (PI) $ 0.208295
  • solanaSolana (SOL) $ 132.75
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.65
  • pump-funPump.fun (PUMP) $ 0.002756
  • hash-2Provenance Blockchain (HASH) $ 0.030664
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.14
  • htx-daoHTX DAO (HTX) $ 0.000002
  • pax-goldPAX Gold (PAXG) $ 4,310.06
  • ondo-financeOndo (ONDO) $ 0.459780
  • worldcoin-wldWorldcoin (WLD) $ 0.583919
  • global-dollarGlobal Dollar (USDG) $ 0.999790
  • kucoin-sharesKuCoin (KCS) $ 10.65
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • skySky (SKY) $ 0.057591
  • bfusdBFUSD (BFUSD) $ 0.999247
  • ripple-usdRipple USD (RLUSD) $ 0.999650
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,550.51
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999756
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.120293
  • aptosAptos (APT) $ 1.66
  • kaspaKaspa (KAS) $ 0.045792
  • gatechain-tokenGate (GT) $ 10.39
  • wbnbWrapped BNB (WBNB) $ 884.84
  • arbitrumArbitrum (ARB) $ 0.207173
  • binance-staked-solBinance Staked SOL (BNSOL) $ 144.24
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,275.16
  • official-trumpOfficial Trump (TRUMP) $ 5.61
  • algorandAlgorand (ALGO) $ 0.121423
  • ignition-fbtcFunction FBTC (FBTC) $ 90,019.00
  • cosmosCosmos Hub (ATOM) $ 2.16
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,307.71
  • vechainVeChain (VET) $ 0.011709
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 90,373.00
  • flare-networksFlare (FLR) $ 0.012485
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 90,128.00
  • nexoNEXO (NEXO) $ 0.973480
  • filecoinFilecoin (FIL) $ 1.34
  • xdce-crowd-saleXDC Network (XDC) $ 0.049196
  • midnight-3Midnight (NIGHT) $ 0.052512
  • usdtbUSDtb (USDTB) $ 1.00
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.92
  • ousgOUSG (OUSG) $ 113.62
  • sei-networkSei (SEI) $ 0.128792
  • render-tokenRender (RENDER) $ 1.55
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 28.33
  • wrappedm-by-m0WrappedM by M^0 (WM) $ 0.999963
  • bonkBonk (BONK) $ 0.000009
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.02
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.21
  • usddUSDD (USDD) $ 1.00
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 90,138.00
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,332.52
  • wrapped-flareWrapped Flare (WFLR) $ 0.012481
  • clbtcclBTC (CLBTC) $ 90,501.00
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998707
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.11
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.010894
  • ultimaUltima (ULTIMA) $ 6,774.18
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999804
  • beldexBeldex (BDX) $ 0.088468
  • usdaiUSDai (USDAI) $ 1.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,292.94
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 153.40
  • jupiter-exchange-solanaJupiter (JUP) $ 0.203520
  • story-2Story (IP) $ 1.88
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999807
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.238699
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,089.26
  • morphoMorpho (MORPHO) $ 1.14
  • optimismOptimism (OP) $ 0.308972
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,201.17
  • myx-financeMYX Finance (MYX) $ 3.11
  • dashDash (DASH) $ 46.89
  • curve-dao-tokenCurve DAO (CRV) $ 0.399959
  • aerodrome-financeAerodrome Finance (AERO) $ 0.606603
  • usual-usdUsual USD (USD0) $ 0.998309
  • tbtctBTC (TBTC) $ 90,073.00
  • spx6900SPX6900 (SPX) $ 0.586757
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,089.39
  • injective-protocolInjective (INJ) $ 5.38
  • tezosTezos (XTZ) $ 0.499232
  • lido-daoLido DAO (LDO) $ 0.591679
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.800847
  • bridged-wrapped-ether-pundi-aifx-omnilayerBridged Wrapped Ether (Pundi AIFX Omnilayer) (WETH) $ 35,382,014.00
  • blockstackStacks (STX) $ 0.287785
  • starknetStarknet (STRK) $ 0.105069
  • celestiaCelestia (TIA) $ 0.584074
  • gtethGTETH (GTETH) $ 3,089.60
  • true-usdTrueUSD (TUSD) $ 0.996534
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 2,460.42
  • ether-fiEther.fi (ETHFI) $ 0.805180
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.23
  • newton-projectAB (AB) $ 0.005251
  • msolMarinade Staked SOL (MSOL) $ 178.44
  • telcoinTelcoin (TEL) $ 0.004914
  • wrapped-apecoinWrapped ApeCoin (WAPE) $ 0.230774
  • stader-ethxStader ETHx (ETHX) $ 3,324.02
  • ghoGHO (GHO) $ 0.999951
  • flokiFLOKI (FLOKI) $ 0.000046
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,279.95
  • kaiaKaia (KAIA) $ 0.074622
  • the-graphThe Graph (GRT) $ 0.040957
  • merlin-chainMerlin Chain (MERL) $ 0.409927
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 0.991542
  • basic-attention-tokenBasic Attention (BAT) $ 0.285501
  • iotaIOTA (IOTA) $ 0.100751
  • doublezeroDoubleZero (2Z) $ 0.120918
  • ethereum-name-serviceEthereum Name Service (ENS) $ 10.84
  • swethSwell Ethereum (SWETH) $ 3,392.54
  • bittorrentBitTorrent (BTT) $ 0.00000041
  • sbtc-2sBTC (SBTC) $ 92,998.00
  • usdbUSDB (USDB) $ 0.998942
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.967136
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,438.46
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • bitcoin-svBitcoin SV (BSV) $ 19.70
  • dogwifcoindogwifhat (WIF) $ 0.394281
  • sun-tokenSun Token (SUN) $ 0.020317
  • lorenzo-wrapped-bitcoinLorenzo Wrapped Bitcoin (ENZOBTC) $ 90,454.00
  • justJUST (JST) $ 0.038085
  • pyth-networkPyth Network (PYTH) $ 0.064227
  • conflux-tokenConflux (CFX) $ 0.071430
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 90,300.00
  • fartcoinFartcoin (FARTCOIN) $ 0.364475
  • olympusOlympus (OHM) $ 22.13
  • apenftAINFT (NFT) $ 0.00000036
  • pendlePendle (PENDLE) $ 2.19
  • crvusdcrvUSD (CRVUSD) $ 1.00
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.137275
  • decredDecred (DCR) $ 20.51
  • theta-tokenTheta Network (THETA) $ 0.346444
  • the-sandboxThe Sandbox (SAND) $ 0.131984
  • sonic-3Sonic (S) $ 0.090643
  • audieraAudiera (BEAT) $ 2.46
  • chilizChiliz (CHZ) $ 0.033645
  • heliumHelium (HNT) $ 1.82

Espresso co-founder reports $30k crypto theft through ThirdWeb contract vulnerability

0 3

Espresso co-founder reports $30k crypto theft through ThirdWeb contract vulnerability

Jill Gunter, co-founder of Espresso, reported Thursday that her crypto wallet was drained due to a vulnerability in a Thirdweb contract, according to statements posted on social media.

Summary

  • Crypto veteran Jill Gunter reported the theft of over $30,000 in USDC from her wallet, which was drained on Dec. 9 and routed through Railgun.
  • The vulnerability stemmed from a legacy Thirdweb contract that allowed access to funds with unlimited token approvals.
  • The incident followed a separate 2023 open-source library flaw that affected more than 500 token contracts and was exploited at least 25 times, according to ScamSniffer.

Gunter, described as a 10-year veteran of the cryptocurrency industry, said more than $30,000 in USDC stablecoin was stolen from her wallet. The funds were transferred to the privacy protocol Railgun while she was preparing a presentation on cryptocurrency privacy for an event in Washington, D.C., according to her account.

In a follow-up post, Gunter detailed the investigation into the theft. The transaction that drained her jrg.eth address occurred on December 9, with the tokens having been moved into the address the day before in anticipation of funding an angel investment planned for that week, she stated.

Although the tokens were transferred from jrg.eth to another address identified as 0xF215, the transaction showed a contract interaction with 0x81d5, according to Gunter’s analysis. She identified the vulnerable contract as a Thirdweb bridge contract she had previously used for a $5 transfer.

Thirdweb informed Gunter that a vulnerability had been discovered in the bridge contract in April, she reported. The vulnerability allowed anyone to access funds from users who had approved unlimited token permissions. The contract has since been labeled as compromised on Etherscan, a blockchain explorer.

Gunter stated she did not know whether she would receive reimbursement and characterized such risks as an occupational hazard in the cryptocurrency industry. She pledged to donate any recovered funds to the SEAL Security Alliance and encouraged others to consider donations as well.

Thirdweb published a blog post stating the theft resulted from a legacy contract not being properly decommissioned during its April 2025 vulnerability response. The company said it has permanently disabled the legacy contract and that no user wallets or funds remain at risk.

In addition to the vulnerable bridge contract, Thirdweb disclosed a wide-reaching vulnerability in late 2023 in a commonly used open-source library. Security researcher Pascal Caversaccio of SEAL criticized Thirdweb’s disclosure approach, stating that providing a list of vulnerable contracts gave malicious actors advance warning.

According to analysis by ScamSniffer, a blockchain security firm, over 500 token contracts were affected by the 2023 vulnerability and at least 25 were exploited.

Read more: DeepSeek AI projects price scenarios for XRP, Solana, Dogecoin

Source

Leave A Reply

Your email address will not be published.