Crypto Whale Multisig Wallet Drained in a Sophisticated Attack An attacker has successfully compromised a whale’s multisig wallet just minutes after its creationCrypto Whale Multisig Wallet Drained in a Sophisticated Attack An attacker has successfully compromised a whale’s multisig wallet just minutes after its creation

Whale Multisig Hacked in Minutes: Attack Drains $40M in Stages

Whale Multisig Hacked In Minutes: Attack Drains $40m In Stages

Crypto Whale Multisig Wallet Drained in a Sophisticated Attack

An attacker has successfully compromised a whale’s multisig wallet just minutes after its creation, draining approximately $27.3 million and executing staged laundering activities over the past 44 days. The incident raises concerns over security practices in the crypto ecosystem and highlights evolving threats targeting high-value wallets.

Blockchain security firm PeckShield reported that the attacker has laundered around $12.6 million, or roughly 4,100 ETH, primarily through Tornado Cash. The attacker also retains about $2 million in liquid assets and has engaged in leveraged trading on Aave. New forensic analyses suggest the total loss could surpass $40 million, with initial signs of theft traced back to early November.

Yehor Rudytsia, head of forensic investigations at Hacken Extractor, explained that the wallet labeled as “compromised” might not have been under the victim’s control from the outset. On-chain data shows that the multisig wallet was created on November 4 at 7:46 am UTC, but ownership was transferred to the attacker just six minutes later. Rudytsia explained, “Very likely, the attacker created the multisig wallet, transferred funds to it, and then took control of it almost immediately.”

Attacker laundering funds in batches. Source: PeckShield

Following control of the wallet, the attacker exhibited patience, making Tornado Cash deposits over several weeks, beginning with 1,000 ETH on November 4 and continuing through early December in smaller, staggered transactions. Persistent funds remain on the compromised wallet, now under the attacker’s control. Rudytsia also raised concerns about the wallet’s configuration. The multisig was set as a “1-of-1,” requiring only a single signature for transaction approval—a design that doesn’t technically qualify as multisig and significantly lowers security.

Security experts at Hacken warn that various attack vectors are still viable, including malware infections, phishing, and operational errors such as storing private keys insecurely or using the same device for multiple signers. Abdelfattah Ibrahim, a DApp auditor, emphasized that locking devices in cold storage and verifying transactions outside a user interface are critical mitigation strategies.

Emerging Risks from AI-Generated Exploits

Recent research by Anthropic and the Machine Learning Alignment & Theory Scholars (MATS) demonstrates that advanced AI models can autonomously develop and execute profitable smart contract exploits. In controlled tests, models such as Anthropic’s Claude Opus 4.5, Claude Sonnet 4.5, and OpenAI’s GPT-5 collectively generated exploits valued at $4.6 million, illustrating the potential for autonomous hacking.

In further assessments, these AI models identified previously unknown zero-day vulnerabilities when tested against nearly 2,850 new smart contracts, producing exploits valued at just under $4,000, with costs lower than the expense of generating these exploits. This emerging threat underscores the need for enhanced security measures as AI capabilities rapidly advance within the blockchain space.

This article was originally published as Whale Multisig Hacked in Minutes: Attack Drains $40M in Stages on Crypto Breaking News – your trusted source for crypto news, Bitcoin news, and blockchain updates.

Market Opportunity
Ambire Wallet Logo
Ambire Wallet Price(WALLET)
$0.01337
$0.01337$0.01337
-2.33%
USD
Ambire Wallet (WALLET) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

First family moves on from Wall Street as Eric Trump backs crypto

First family moves on from Wall Street as Eric Trump backs crypto

Eric Trump says crypto could actually save the U.S. dollar. Not kill it. Not weaken it. On Tuesday, just hours after ringing the Nasdaq opening bell for American Bitcoin’s public debut, a company where he’s got over $500 million stashed, Eric told the Financial Times that crypto is “arguably” the reason the dollar might stay alive. “Mining bitcoin here, and being financially independent and running a kind of financial revolution out of the United States of America…I think it arguably saves the US dollar,” he said. The timing wasn’t random. Eric’s comments came while the dollar was getting dragged. This year, it’s been tanking… fast. The cause? President Donald Trump’s trade war and his endless public jabs at the Federal Reserve, which just slashed interest rates again. The Fed cut rates yesterday, for the first time this year, right after Donald’s latest round of pressure. It’s not helping. Investors are losing confidence in what’s supposed to be the safest currency on Earth. Eric says crypto is fun, family is done with Wall Street Eric isn’t just pushing crypto from the sidelines. His family has gone full throttle into the space. We’re talking a Truth Social Bitcoin ETF, a Bitcoin treasury tied to Trump Media, and two meme coins; $MELANIA and $TRUMP. Eric defended both coins, saying they were meant to be “fun,” and explained why people are buying in: “They want to bet on a coin, or they want to bet on a player. They want to bet on a celebrity, or they want to bet on a famous brand. Or they just love somebody to death, and they want to buy, you know, a kind of small piece of them, via digital currency.” And Eric doesn’t give Wall Street any credit. At all. He made it clear that everything they’ve built was done without the help of big-name banks. “It’s almost like the ultimate revenge against the big banks and modern finance,” he said. That jab came after the Trump Organization filed a lawsuit against Capital One, accusing the bank of closing their accounts in 2021 for political reasons — something the bank denies. But Eric wasn’t done. “You realise you just don’t need them. And frankly, you don’t miss them.” He added that he wasn’t just referring to Capital One, but “all” of Wall Street’s major lenders and their “top people.” Stablecoins, trillions, and the White House betting on crypto Stablecoins have traditional banks spooked. They think cash might flow out of the banking system if coins like Tether or Circle offer better returns. And that fear isn’t fake. It’s growing, especially after Congress passed the first major crypto law in July. Now the White House wants stablecoin issuers to buy up a fat slice of the Treasury’s debt. Why? Because these crypto firms make money on the interest from the bonds they hold. Last year, Eric co-founded World Liberty Financial Inc. (WLFI), a crypto company that runs a stablecoin called USD1, pegged to the U.S. dollar. That project has serious family backing. Donald held 15.75 billion WLFI tokens at the end of 2024, based on official filings. At Wednesday’s trading price, that holding was worth over $3 billion. When asked about the family’s financial gain from crypto, Eric downplayed it. “If my father cared about monetising his life, the last thing he would have done is run for president, where all we’ve done is un-monetise our life.” Your crypto news deserves attention - KEY Difference Wire puts you on 250+ top sites
Share
Coinstats2025/09/18 20:41
SEC Staff Clarifies Custody Rules for Tokenized Stocks and Bonds

SEC Staff Clarifies Custody Rules for Tokenized Stocks and Bonds

The post SEC Staff Clarifies Custody Rules for Tokenized Stocks and Bonds appeared on BitcoinEthereumNews.com. The US Securities and Exchange Commission’s Trading
Share
BitcoinEthereumNews2025/12/19 08:51
US Lawmakers May Limit De Minimis Tax Exemptions to Stablecoins, Excluding Bitcoin

US Lawmakers May Limit De Minimis Tax Exemptions to Stablecoins, Excluding Bitcoin

The post US Lawmakers May Limit De Minimis Tax Exemptions to Stablecoins, Excluding Bitcoin appeared on BitcoinEthereumNews.com. US lawmakers are considering de
Share
BitcoinEthereumNews2025/12/19 09:28