Close Menu
    Instagram
    • Privacy Policy
    • Terms Of Service
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Instagram
    Crypto Celtic
    • Home
    • Crypto News
      • Bitcoin
      • Ethereum
      • Altcoins
      • Blockchain
      • DeFi
    • AI News
    • Stock News
    • Learn
      • Crypto for Beginners
      • AI for Beginners
      • AI Tips
      • Make Money with AI
    • Reviews
    • Tools
      • Best AI Tools
      • Crypto Market Cap List
      • Stock Market Overview
      • Market Heatmap
    • Contact
    Crypto Celtic
    Home»Crypto News»DeFi»Trusted Volumes Confirms $6.7M DeFi Resolver Exploit
    Cointelegraph
    DeFi

    Trusted Volumes Confirms $6.7M DeFi Resolver Exploit

    May 7, 20263 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email
    kraken


    TrustedVolumes, an independent market maker and resolver used by 1inch Fusion, confirmed it was exploited and said about $6.7 million in stolen funds are being held across three Ethereum addresses.

    In a Thursday X post, the market maker said the stolen funds were split across three wallets, with two addresses each holding about $3 million and a third holding about $700,000. TrustedVolumes said it was open to “constructive communication” over a bug bounty and a “mutually acceptable resolution.”

    The confirmation came after Web3 security company Blockaid said its exploit detection system had identified an ongoing Ethereum exploit targeting TrustedVolumes. Blockaid said the attack involved a TrustedVolumes-controlled custom swap infrastructure. Blockaid initially estimated that about $5.87 million had been extracted, including Wrapped Ether, USDT, Wrapped Bitcoin and USDC.

    Blockchain security company CertiK said the attacker registered as an allowed order signer through a public function, then used that authorization to execute orders that transferred funds from the targets.

    kukoin

    The incident highlights the risks around third-party infrastructure used in decentralized exchange execution, where resolvers and market makers can operate their own contracts even when the core protocol and ordinary users are not directly affected. TrustedVolumes operates independently as a liquidity provider for multiple protocols, including 1inch, which said its own systems, infrastructure and user funds were not affected.

    Cointelegraph reached out to TrustedVolumes for additional comment but had not received a response by publication. 

    Source: TrustedVolumes

    1inch says none of its protocols were breached

    In an X post, 1inch said reports linking it directly to the TrustedVolumes exploit were “misleading,” adding that “neither 1inch nor any of the 1inch protocols are involved.” The platform said there was “no impact on 1inch systems, infrastructure or user funds.”

    1inch co-founder Sergej Kunz also said TrustedVolumes operates independently and is not exclusive to 1inch. “While it is true that 1inch uses TrustedVolumes as a resolver, we are one of many,” Kunz said.

    Kunz said the framing of the exploit as a 1inch-related incident was “confusing and harmful,” adding that 1inch is monitoring the situation with security partners and will assist where appropriate.

    Related: Andre Cronje says DeFi is ‘no longer DeFi’ as builders debate circuit breakers

    Security researcher Vladimir Sobolev, known as Officer’s Notes on X, also told Cointelegraph there was “no risk for 1inch users,” adding that the exploit was related only to TrustedVolumes. 

    Sobolev said the exploit points to broader weaknesses in crypto security practices, where vulnerabilities can quickly produce immediate losses. 

    “We lack security in general. Blockchains just tend to have an immediate payoff,” Sobolev told Cointelegraph. “We need to pay more attention to kill switches, monitoring, circuit breakers, etc.”

    Both Blockaid and Sobolev noted that the attack was carried out by the same operator responsible for the March 2025 1inch Fusion V1 resolver exploit. However, Blockaid said the latest attack involved a different vulnerability.

    In March 2025, 1inch said a vulnerability affected resolvers using an outdated Fusion v1 implementation in their own contracts, while end-user funds remained safe. SlowMist later traced about $5 million in stolen assets, including USDC and Wrapped Ether.

    1inch and the affected resolver negotiated with the attacker, who returned most of the stolen funds under a bug bounty agreement, according to 1inch and Decurity’s postmortem.

    Magazine: North Korea denies crypto hacks, Upbit’s bank tests Ripple: Asia Express

    Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently.



    Source link

    tradingview
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Multiple ETH Data Points Suggest Altcoin Is Good Longterm Buy: Analyst

    May 23, 2026

    DeFi Hacks Shake Institutional Confidence as Risks Outpace Yields

    May 22, 2026

    Map Protocol Loses 96% After Quadrillion Token Exploit

    May 21, 2026

    EU Reviews Stablecoin Interest Ban in Potential MiCA Overhaul

    May 20, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    tradingview
    Latest Posts

    Binance Denies WSJ Report Alleging $850M in Iran-Linked Crypto Transactions

    May 24, 2026

    Tom Lee’s Ethereum Portfolio Sits on $7.35B Loss as ETH Price Slumps

    May 24, 2026

    2 Canadian Utility Stocks That Could Be Headed for a Strong 2026

    May 24, 2026

    Galaxy Digital Faces Bitgo in Court Over $1.2 Billion Deal Gone Wrong

    May 23, 2026

    CREDIT UNIONS ADOPT METAL BLOCKCHAIN & XPR NETWORK THE FLOOD GATES WILL OPEN

    May 23, 2026
    kraken
    LEGAL INFORMATION
    • Privacy Policy
    • Terms Of Service
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Top Insights

    Bitcoin Spot ETFs Bleed $1.26 Billion In Largest Net Outflows In 3 Months – Details

    May 24, 2026

    Microsoft Research Releases Webwright: A Terminal-Native Web Agent Framework That Scores 60.1% on Odysseys, Up from Base GPT-5.4’s 33.5%

    May 24, 2026
    cryptocom
    Instagram
    © 2026 CryptoCeltic.com - All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.