Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
    ExclusiveShow More
    3D Liquid Network logo with a hooded hacker shadow and computer code overlays in the background
    Liquid Network Exploit Explained: Unbacked L-BTC and the $320M Peg-Out
    Clarity Act bill with a September 15 calendar and Senate chamber in the background.
    Can the Senate Pass the CLARITY Act on September 15? Here’s the Vote Math
    Simon Gerovich, CEO and President of Metaplanet
    Inside Metaplanet’s Floating Option Pool: How a 2023 Option Clause Followed Its Bitcoin Treasury Era
    Magnifying glass highlighting a red bug icon within broken code, flanked by metallic 3D logos for OpenAI and Anthropic
    OpenAI’s Astra and Anthropic’s Fable 5.1 Put Crypto Security in Focus
    Kevin Warsh, Chair of the Federal Reserve of the United States
    Bitcoin Falls Below $78K as Fed Hike Odds Jump to 56%: What Experts Say
  • Opinion
    OpinionShow More
    Jackson Hole 2026: Crypto Is No Longer Outside the Fed’s Door
    Jackson Hole 2026: Crypto Is No Longer Outside the Fed’s Door
    The Architecture of Trust Same Routes, New Risks in Global Tokenisation
    The Architecture of Trust: Same Routes, New Risks in Global Tokenisation
    The Architecture of Trust What 4,000 Years of Trade Teach Us About RWA Tokenisation
    The Architecture of Trust: What 4,000 Years of Trade Teach Us About RWA Tokenisation
    One P2P Trade, Months of Limbo Why Innocent Indian Crypto Users Keep Paying the Price
    One P2P Trade, Months of Limbo: Why Innocent Indian Crypto Users Keep Paying the Price
    CLARITY Act The Bill Exists, the Deal Does Not, Trump Has to Wait
    CLARITY Act: The Bill Exists, the Deal Does Not, Trump Has to Wait
  • Learn
    • Explained
    • How To
    • Insights
  • IndicesNew
    • India USDT Premium Index
    • India USDC Premium Index
  • Videos
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • Daily Crypto Puzzles
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • IndicesNew
    • India USDT Premium Index
    • India USDC Premium Index
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
    • Daily Crypto Puzzles
  • Videos
  • Glossary
Follow US
© 2026 By Crypto Times. All Rights Reserved.
Market News

Aztec Exploit Drains $2.19M From Dormant Privacy Protocol

Security researchers initially suspected an access-control weakness, but later identified a complex flaw in the way the protocol verified and settled ZK proofs.

Written By Kenrodgers Fabian
Fact Checked by Divya Mistry
Published 2026-06-15
Make The Crypto Times preferred on GoogleGoogle
Aztec Exploit Drains $2.19M From Dormant Privacy Protocol
Show AI Summary
BlockSec Phalcon detects a $2.19 million hack on Aztec Connect, tracing the issue to a flawed contract.
Aztec Connect’s developers left a legacy version of the platform unattended, holding user funds.
Hackers exploit a deep flaw in Aztec Connect’s verification process, bypassing key security checks.

Hackers stole more than $2.19 million from Aztec Connect, an Ethereum-based privacy protocol that was discontinued years ago. The breach, which occurred on June 14, targeted a legacy version of the platform that continued to hold user funds despite no longer being actively maintained.

Blockchain security firm BlockSec Phalcon detected the attack and traced it to Aztec Connect’s RollupProcessorV3 contract. Researchers initially suspected an access-control weakness but later identified a more complex flaw in the way the protocol verified and settled transactions.

According to BlockSec, the vulnerability allowed the attacker to create withdrawable balances without providing the corresponding deposits. The incident has renewed concerns across the crypto industry about outdated smart contracts, particularly those tied to privacy-focused and zero-knowledge (ZK) systems that retain user assets long after development ceases.

ALERT! Our system detected a suspicious transaction targeting @aztecnetwork’s RollupProcessorV3 contract on #Ethereum hours ago, with estimated losses exceeding $2.15M.

Initial analysis suggests the root cause might be missing access control in processRollup(). Although the… pic.twitter.com/TdNkkNDfwX

— BlockSec Phalcon (@Phalcon_xyz) June 14, 2026

How the attacker bypassed key checks

Investigators traced the breach to a deep architectural flaw in how Aztec Connect verified transaction data. According to BlockSec, different parts of the protocol interpreted the data in different ways, creating a fatal loophole that allowed the attacker to generate funds that were not backed by actual deposits.

Specifically, the ZK proof verification path decoded all transactions and inserted them into the rollup’s Merkle tree, but the Layer 1 settlement logic only processed a subset of them (dictated by a variable known as numRealTxs). The attacker exploited this mismatch by placing legitimate deposit transactions in later slots while artificially keeping the numRealTxs value low. This bypassed critical security checks, allowing the hacker to generate funds that were not backed by actual deposits.

The vulnerability enabled the hacker to create seven artificial balances across multiple crypto assets and withdraw them through the protocol’s normal redemption process. Security firm Defimon Alerts estimated the losses at approximately $2.19 million, including about 909 Ether, 167.9 wrapped staked Ether, 270,500 DAI, 9,270 LUSD, and several yield-bearing tokens.

🚨 Aztec Connect (RollupProcessorV3) – Loss ~$2.19M (2026-06-14)

Token: No token (Aztec Connect was deprecated in 2023; funds remaining are user L1 deposits awaiting escape-hatch withdrawal)
MC: N/A
TVL: User-escrowed (DAI, LUSD, ETH, wstETH, yvDAI, yvLUSD, yvWETH)

Type: Logic…

— Defimon Alerts (@DefimonAlerts) June 15, 2026

Researchers said the funds were moved through a newly created wallet and a supporting smart contract that appeared shortly before the attack. The setup suggests the exploit was carefully prepared rather than carried out opportunistically, underscoring the sophistication of the operation.

The incident has also raised questions about the protocol’s security oversight. Although Aztec Connect entered sunset mode several years ago, developers upgraded its RollupProcessorV3 contract in April 2024. BlockSec noted that the upgrade reportedly was not subjected to an external security audit before deployment, potentially allowing the vulnerability to go unnoticed until the attack occurred.

Aztec responds as security questions grow

Aztec Labs said it is investigating the incident but noted that Aztec Connect was deprecated more than three years ago and operates as an immutable protocol, meaning the company has no administrative control over the system. The Aztec Foundation separately emphasized that the exploit is unrelated to the current Aztec network and its AZTEC token.

The Aztec Foundation was made aware of a potential exploit targeting Aztec Connect which occurred earlier today, June 14, 2026. There are no links between this product and any smart contracts related to the AZTEC ERC20 token, or current Aztec network.

Aztec Connect was… https://t.co/R3eImP8kCR

— Aztec Foundation (@aztecFND) June 14, 2026

The team also warned users to remain cautious of impersonation scams and fraudulent support accounts that often emerge following high-profile security breaches.

The breach comes as privacy-focused crypto projects face scrutiny from investors and security researchers. Zero-knowledge technology, which is designed to improve blockchain privacy and efficiency, has gained significant attention in recent years. However, experts have warned that the added complexity of these systems can create security risks that are difficult to detect and fix.

Industry figures said the Aztec Connect exploit serves as a reminder that transparency remains critical when security incidents occur. Glyde co-founder Jeremy noted that projects do not always disclose vulnerabilities so openly, while researcher K Erica pointed to the dangers posed by dormant contracts that still control valuable assets. 

Also Read: Weekly Wrap: SpaceX IPO Sparks Crypto Frenzy, SBF Appeal Fails, Humanity Hack Tied to North Korea

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News

Daily Crypto Puzzles
Tickerdle Tickerdle Crypto Connections Crypto Connections Crypto Crossword Crypto Crossword
TAGGED:Crypto Hack
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link

Daily Crypto Puzzles

Tickerdle crypto game Tickerdle Crypto Connections game Crypto Connections Crypto Crossword game Crypto Crossword

Latest News

Zenith Joins DTC Digital Assets Working Group on Tokenization
Zenith Joins DTC Digital Assets Working Group on Tokenization
CLARITY Act document stamped "FAILED" beside a wooden gavel with the U.S. Capitol in the background.
CLARITY Act Fails in Senate as Cloture Vote Falls Short of 60 Votes
TD Cowen Sees 60% Chance Clarity Act Cloture Vote Fails Today
TD Cowen Sees 60% Chance Clarity Act Cloture Vote Fails Today
Warren Calls for Senate No Vote on CLARITY Act Over Trump Ethics
XRP Ledger’s Batch V1.1 Amendment Nears Activation Threshold
XRP Ledger’s Batch V1.1 Amendment Nears Activation Threshold

Find Us on Socials

You may also like

A physical Bitcoin coin in front of a red stock chart screen, alongside the CLARITY Act bill and the U.S. Capitol dome

Bitcoin and Crypto Gives Back Monday Rally Ahead of Clarity Act Cloture

A smartphone showing the Arbitrum logo next to an illuminated Standard Chartered wall sign

Standard Chartered Initiates Arbitrum Coverage, Sees ARB Price at $10 by 2030

3D Liquid Network logo with a hooded hacker shadow and computer code overlays in the background

Liquid Network Exploit Explained: Unbacked L-BTC and the $320M Peg-Out

Smartphone displaying the Revolut app logo against a dark background with an illuminated Revolut wall sign behind it.

Revolut Data Breach Hits 680 Customers, UK Opens Probe as Hackers Demand 10,000 Bitcoin

The Crypto Times Logo PNG

News

All News
Market News
Bitcoin News
Ethereum News
Altcoin News
Regulations & Policies
DeFi News
Blockchain News
Industry News

Sections

Exclusive
Opinions
Learn
Insights
Videos
Glossary

India Premium Indices

Stablecoins
USDT
USDC

Play

Daily Crypto Puzzles
Tickerdle
Crypto Connections
Crypto Crossword

Company

About Us
Our Authors
Editorial Policy
AI Policy
Advertorial Policy
Contact Us
Career

Follow Us

X-twitter Linkedin Telegram Youtube Instagram

© 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

DMCA.com Protection Status
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Cookie policy
Do Not Sell or Share My Personal Information