Solana Whale That Made $20 Million in 2023 Starts Buying Again
A Solana (SOL) whale that banked more than $20 million in 2023 has resurfaced after two years, buying $3.6 million in SOL.…
A compromised vendor injected malicious code into Polymarket's frontend, prompting the platform to promise full reimbursement for affected users. Continue reading at DailyCoin.
Polymarket, the world’s largest prediction market, said a compromised third-party service injected malicious code into its frontend, allowing attackers to steal roughly $2.94 million from fewer than 15 users. The company said it will fully reimburse all victims. Malicious Script Targeted PUSD Wallets on Polygon In a statement posted on X, Polymarket said it discovered that “a 3rd party vendor had been compromised,” allowing a malicious script to be injected into its frontend for some users. https://twitter.com/polymarkettrade/status/2070155882906730671 The incident appears to have been a frontend supply-chain attack rather than a smart contract exploit, with users tricked into signing malicious transactions through the compromised interface. Polymarket did not identify the compromised vendor or disclose how many users were affected. Nearly $3 Million Bridged to Ethereum Blockchain security firm PeckShield cited findings from on-chain investigator Specter, reporting that the phishing campaign drained roughly $2.94 million worth of PUSD from Polymarket users. According to PeckShield, the attacker bridged the stolen assets from Polygon to Ethereum before swapping them for roughly 1,893 ETH. https://twitter.com/PeckShieldAlert/status/2070157742514618443 Polymarket said there is no evidence its core smart contracts or protocol-held funds were compromised. The attack appears to have relied on deceiving users into authorizing malicious transactions through the altered frontend. A Rough Week for Polymarket The incident comes days after a Wall Street Journal report alleged Polymarket paid online creators to publish misleading promotional videos showing fabricated bets and winnings. The company subsequently announced an audit of its marketing content. Last month, a company-controlled wallet used for employee top-ups and user rewards lost roughly $700,000 after a private key was compromised. Polymarket said user funds were unaffected. Why This Matters The incident highlights the growing threat of supply-chain attacks in crypto, where attackers target third-party software providers rather than blockchain protocols themselves. Even platforms with secure smart contracts can expose users to losses if their web interfaces are compromised. Discover DailyCoin’s popular crypto news today:Apple Shock, Rate Hike Fear Weigh on Ethereum: How Far Can ETH Fall?The CLARITY Act Timeline Just Got a Whole Lot Tighter
A Solana (SOL) whale that banked more than $20 million in 2023 has resurfaced after two years, buying $3.6 million in SOL.…
XRP slips below $1 even as a Korean regional bank adopts Ripple Payments CoinDesk
A $24 million New York Lotto ticket bought on May 25, 2016, at Renu Corp Grocery and Tobacco in Tribeca sat unclaimed…
Monad, an Ethereum rival, offered early investors up to $60 million to cash out. Almost all said no CoinDesk