• bitcoinBitcoin (BTC) $ 87,001.00
  • ethereumEthereum (ETH) $ 2,928.09
  • tetherTether (USDT) $ 0.998908
  • bnbBNB (BNB) $ 852.17
  • xrpXRP (XRP) $ 1.85
  • usd-coinUSDC (USDC) $ 0.999711
  • solanaSolana (SOL) $ 123.11
  • tronTRON (TRX) $ 0.283858
  • staked-etherLido Staked Ether (STETH) $ 2,928.07
  • dogecoinDogecoin (DOGE) $ 0.122441
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.04
  • cardanoCardano (ADA) $ 0.352351
  • whitebitWhiteBIT Coin (WBT) $ 56.56
  • bitcoin-cashBitcoin Cash (BCH) $ 595.34
  • wrapped-stethWrapped stETH (WSTETH) $ 3,580.93
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 86,722.00
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,182.12
  • usdsUSDS (USDS) $ 0.999611
  • wrapped-eethWrapped eETH (WEETH) $ 3,175.48
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998645
  • zcashZcash (ZEC) $ 542.44
  • chainlinkChainlink (LINK) $ 12.29
  • moneroMonero (XMR) $ 438.81
  • leo-tokenLEO Token (LEO) $ 8.58
  • wethWETH (WETH) $ 2,927.96
  • stellarStellar (XLM) $ 0.215729
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 86,970.00
  • ethena-usdeEthena USDe (USDE) $ 0.998110
  • hyperliquidHyperliquid (HYPE) $ 25.83
  • litecoinLitecoin (LTC) $ 78.13
  • suiSui (SUI) $ 1.44
  • avalanche-2Avalanche (AVAX) $ 12.38
  • hedera-hashgraphHedera (HBAR) $ 0.113150
  • canton-networkCanton (CC) $ 0.130197
  • usdt0USDT0 (USDT0) $ 0.998601
  • shiba-inuShiba Inu (SHIB) $ 0.000007
  • daiDai (DAI) $ 0.999132
  • susdssUSDS (SUSDS) $ 1.08
  • the-open-networkToncoin (TON) $ 1.59
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.142937
  • uniswapUniswap (UNI) $ 5.98
  • paypal-usdPayPal USD (PYUSD) $ 0.999775
  • crypto-com-chainCronos (CRO) $ 0.091771
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.21
  • usd1-wlfiUSD1 (USD1) $ 0.999929
  • mantleMantle (MNT) $ 1.01
  • polkadotPolkadot (DOT) $ 1.83
  • rainRain (RAIN) $ 0.007980
  • memecoreMemeCore (M) $ 1.45
  • bitget-tokenBitget Token (BGB) $ 3.47
  • aaveAave (AAVE) $ 149.33
  • okbOKB (OKB) $ 107.37
  • tether-goldTether Gold (XAUT) $ 4,337.97
  • falcon-financeFalcon USD (USDF) $ 0.996921
  • bittensorBittensor (TAO) $ 218.82
  • nearNEAR Protocol (NEAR) $ 1.52
  • ethereum-classicEthereum Classic (ETC) $ 11.94
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,930.91
  • jito-staked-solJito Staked SOL (JITOSOL) $ 154.10
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • pepePepe (PEPE) $ 0.000004
  • pi-networkPi Network (PI) $ 0.202237
  • hash-2Provenance Blockchain (HASH) $ 0.031401
  • aster-2Aster (ASTER) $ 0.691182
  • midnight-3Midnight (NIGHT) $ 0.098601
  • internet-computerInternet Computer (ICP) $ 2.94
  • ethenaEthena (ENA) $ 0.208412
  • pax-goldPAX Gold (PAXG) $ 4,347.74
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • htx-daoHTX DAO (HTX) $ 0.000002
  • global-dollarGlobal Dollar (USDG) $ 0.999559
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.49
  • skySky (SKY) $ 0.061718
  • kucoin-sharesKuCoin (KCS) $ 10.72
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.14
  • ripple-usdRipple USD (RLUSD) $ 0.999454
  • bfusdBFUSD (BFUSD) $ 0.998788
  • worldcoin-wldWorldcoin (WLD) $ 0.493311
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999626
  • binance-staked-solBinance Staked SOL (BNSOL) $ 134.39
  • aptosAptos (APT) $ 1.67
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,381.39
  • gatechain-tokenGate (GT) $ 10.32
  • wbnbWrapped BNB (WBNB) $ 852.17
  • ondo-financeOndo (ONDO) $ 0.376779
  • kaspaKaspa (KAS) $ 0.043418
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.103839
  • arbitrumArbitrum (ARB) $ 0.190637
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,105.81
  • pump-funPump.fun (PUMP) $ 0.001795
  • algorandAlgorand (ALGO) $ 0.117145
  • quant-networkQuant (QNT) $ 70.85
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.02
  • bridged-wrapped-lido-staked-ether-scrollBridged Wrapped Lido Staked Ether (Scroll) (WSTETH) $ 3,576.16
  • official-trumpOfficial Trump (TRUMP) $ 4.93
  • filecoinFilecoin (FIL) $ 1.33
  • ignition-fbtcFunction FBTC (FBTC) $ 87,574.00
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 87,185.00
  • cosmosCosmos Hub (ATOM) $ 1.97
  • xdce-crowd-saleXDC Network (XDC) $ 0.051076
  • vechainVeChain (VET) $ 0.010970
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 86,955.00
  • nexoNEXO (NEXO) $ 0.902666
  • flare-networksFlare (FLR) $ 0.011119
  • usdtbUSDtb (USDTB) $ 0.998582
  • usddUSDD (USDD) $ 0.998003
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,149.23
  • ousgOUSG (OUSG) $ 113.79
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.94
  • wrappedm-by-m0WrappedM by M^0 (WM) $ 1.00
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999632
  • sei-networkSei (SEI) $ 0.113375
  • beldexBeldex (BDX) $ 0.097449
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 86,805.00
  • myx-financeMYX Finance (MYX) $ 3.64
  • clbtcclBTC (CLBTC) $ 88,809.00
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,176.83
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.10
  • bonkBonk (BONK) $ 0.000008
  • render-tokenRender (RENDER) $ 1.30
  • usdaiUSDai (USDAI) $ 0.999846
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,127.71
  • morphoMorpho (MORPHO) $ 1.17
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999367
  • wrapped-flareWrapped Flare (WFLR) $ 0.011117
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.84
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 26.07
  • jupiter-exchange-solanaJupiter (JUP) $ 0.189201
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,098.45
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,927.74
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 142.78
  • curve-dao-tokenCurve DAO (CRV) $ 0.386291
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.008898
  • usual-usdUsual USD (USD0) $ 0.998452
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.23
  • dashDash (DASH) $ 42.55
  • tezosTezos (XTZ) $ 0.495527
  • story-2Story (IP) $ 1.55
  • c8ntinuumc8ntinuum (CTM) $ 0.120608
  • optimismOptimism (OP) $ 0.269980
  • tbtctBTC (TBTC) $ 86,787.00
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.997397
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,926.83
  • ghoGHO (GHO) $ 0.998551
  • lido-daoLido DAO (LDO) $ 0.582944
  • true-usdTrueUSD (TUSD) $ 0.997507
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.209087
  • gtethGTETH (GTETH) $ 2,928.07
  • blockstackStacks (STX) $ 0.255458
  • injective-protocolInjective (INJ) $ 4.54
  • ether-fiEther.fi (ETHFI) $ 0.691523
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.685352
  • spx6900SPX6900 (SPX) $ 0.479716
  • fasttokenFasttoken (FTN) $ 1.02
  • stader-ethxStader ETHx (ETHX) $ 3,147.83
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,133.98
  • msolMarinade Staked SOL (MSOL) $ 166.02
  • newton-projectAB (AB) $ 0.004521
  • aerodrome-financeAerodrome Finance (AERO) $ 0.462794
  • pippinpippin (PIPPIN) $ 0.415793
  • usdbUSDB (USDB) $ 0.999025
  • wrapped-apecoinWrapped ApeCoin (WAPE) $ 0.200946
  • doublezeroDoubleZero (2Z) $ 0.115570
  • starknetStarknet (STRK) $ 0.080249
  • telcoinTelcoin (TEL) $ 0.004137
  • sbtc-2sBTC (SBTC) $ 87,353.00
  • swethSwell Ethereum (SWETH) $ 3,225.56
  • celestiaCelestia (TIA) $ 0.453848
  • bittorrentBitTorrent (BTT) $ 0.00000040
  • justJUST (JST) $ 0.039347
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • flokiFLOKI (FLOKI) $ 0.000039
  • the-graphThe Graph (GRT) $ 0.035294
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,276.65
  • chilizChiliz (CHZ) $ 0.036584
  • ethereum-name-serviceEthereum Name Service (ENS) $ 9.63
  • conflux-tokenConflux (CFX) $ 0.070461
  • sun-tokenSun Token (SUN) $ 0.018951
  • syrupMaple Finance (SYRUP) $ 0.314746
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.867562
  • euro-coinEURC (EURC) $ 1.18
  • olympusOlympus (OHM) $ 21.87
  • cap-usdCap USD (CUSD) $ 0.999217
  • iotaIOTA (IOTA) $ 0.083211
  • bitcoin-svBitcoin SV (BSV) $ 17.56
  • apenftAINFT (NFT) $ 0.00000035
  • audieraAudiera (BEAT) $ 2.47
  • resolv-usrResolv USR (USR) $ 0.999293
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 2,931.40
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 87,000.00
  • pyth-networkPyth Network (PYTH) $ 0.058928
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.12
  • crvusdcrvUSD (CRVUSD) $ 0.998922
  • gnosisGnosis (GNO) $ 125.81
  • kinesis-goldKinesis Gold (KAU) $ 139.04
  • plasmaPlasma (XPL) $ 0.159046
  • kaiaKaia (KAIA) $ 0.055806
  • decredDecred (DCR) $ 19.00
  • merlin-chainMerlin Chain (MERL) $ 0.294890

North Korea-linked theft and poor key security dominate Web3 losses: Hacken

0 2

North Korea-linked theft and poor key security dominate Web3 losses: Hacken

The Hacken 2025 Yearly Security Report puts total Web3 losses at about $3.95 billion, up roughly $1.1 billion from 2024, with just over half of that attributed to North Korean threat actors.

A report shared with Cointelegraph shows losses peaked at more than $2 billion in the first quarter of the year before falling to around $350 million by Q4, but Hacken warns that the pattern still points to systemic operational risk rather than isolated coding bugs.

The report frames 2025 as a year where the numbers worsened, but the underlying story became clear. Smart contract bugs matter, but the biggest, least recoverable losses are still coming from weak keys, compromised signers, and sloppy off‑boarding.

​Access control, not code, drives losses

According to Hacken, access control failures and broader operational security breakdowns accounted for about $2.12 billion, or nearly 54% of all 2025 losses, compared with around $512 million from smart contract vulnerabilities.

North Korea-linked theft and poor key security dominate Web3 losses: Hacken

Crypto Losses by Attack Type. Source: Hacken 2025 Security Report

The Bybit breach alone, at nearly $1.5 billion, is described as the largest single theft on record and a key reason North Korea-linked clusters account for roughly 52% of total stolen funds.

Related: Crypto losses near $3.4B as hackers went ‘big game hunting’

​Regulators spell out controls, industry lags

Yehor Rudystia, head of forensic at Hacken Extractor, told Cointelegraph that regulators across the US, European Union, and other major jurisdictions’ licensing regimes increasingly spell out what “good” looks like on paper, such as role‑based access control, logging, secure onboarding and ID verification, institutional‑grade custody (hardware security models, multi-party computation, or multi‑sig, and cold storage), as well as continuous monitoring and anomaly detection.

​However, “as regulatory requirements are only becoming mandatory principles, a lot of Web3 companies continued to follow insecure practices throughout 2025.”

He pointed to practices such as not revoking developers’ access during off‑boarding, using a single private key for managing a protocol, and not having Endpoint Detection and Response systems.

“Among the most important are regular pen tests, incident simulations, custody control reviews, and independent financial and controls audits,” Rudystia said, adding that large exchanges and custodians should treat these as non‑negotiable in 2026.

Related: Social engineering cost crypto billions in 2025: How to protect yourself

​From soft guidance to hard requirements

Hacken expects the bar to rise further as supervisors move from guidance to hard requirements.

Yevheniia Broshevan, Hacken’s co-founder and CEO, told Cointelegraph, “We see a significant opportunity for the industry to raise its security baseline, particularly in adopting clear protocols for using dedicated signing hardware and implementing essential monitoring tools.”

He said that he expected overall security to improve in 2026 with regulatory requirements and “the most secure standards” that should be imposed to protect users’ funds.

Given that North Korea-linked clusters drove roughly half of all losses in Hacken’s attribution, Rudystia said regulators and law enforcement also needed to treat the country’s playbooks as a specific supervisory concern.

He argued that authorities should mandate real‑time threat intelligence sharing on North Korean indicators, require threat‑specific risk assessments focused on phishing‑led access attacks, and pair that with “graduated penalties for non‑compliance” and safe‑harbor protections for platforms that fully participate and maintain North Korea‑specific defenses.

Source

Leave A Reply

Your email address will not be published.