Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
    ExclusiveShow More
    Litecoin Summit Day 1 Quantum Warnings, Privacy Coin Breakthroughs, & MiCA's Looming Deadline
    Litecoin Summit Day 1: Quantum Warnings, Privacy Coin Breakthroughs, & MiCA’s Looming Deadline
    Inside the High-Stakes Corporate War Over the GENIUS Act
    Inside the High-Stakes Corporate War Over the GENIUS Act
    From Demonetization to Digital Rupee India's Decade-Long Blockchain Journey
    From Demonetization to Digital Rupee: India’s Decade-Long Blockchain Journey
    The 7% Premium Trap Exposed How India Makes Crypto More Expensive Than Dollars
    The 7% Premium Trap Exposed: How India Makes Crypto More Expensive Than Dollars
    GENIUS Act Scorecard What US Regulators Have Done So Far
    GENIUS Act Scorecard: What US Regulators Have Actually Delivered
  • Opinion
    OpinionShow More
    Why Wall Street is Divided Michael Saylor’s Scarcity vs. Tom Lee’s Staking Empire
    Why Wall Street is Divided: Michael Saylor’s Scarcity vs. Tom Lee’s Staking Empire
    The Arthur Hayes Paradox Macro Prophet or Market Opportunist
    The Arthur Hayes Paradox: Macro Prophet or Market Opportunist?
    RBI Denies Gold Sale Amid Oil Crisis: Could It Speed Up India's Digital Rupee Push?
    RBI Denies Gold Sale Amid Oil Crisis: Could It Speed Up India’s Digital Rupee Push?
    The CLARITY Act War Starts Jamie Dimon Vs Armstrong
    The CLARITY Act War Starts: Jamie Dimon Vs Armstrong
    Is Crypto Dying, or Is Pump.fun Turning It Into an Attention Casino
    Is Crypto Dying, or Is Pump.fun Turning It Into an Attention Casino?
  • Learn
    • Explained
    • How To
    • Insights
  • Videos
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
  • Videos
  • Glossary
Follow US
© 2026 By Crypto Times. All Rights Reserved.
DeFi News

Cardano Project SecondFi Halts Services as Hack Estimates Hit $20M

A flaw in SecondFi's wallet-generation software, the very code that creates users' private keys, has drained the platform, and SlowMist's founder believes the damage is many times larger than SecondFi has admitted.

Written By Divya Mistry Divya Mistry
Published 1 hour ago·Updated 44 minutes ago
Make The Crypto Times preferred on GoogleGoogle
Last updated: 44 minutes ago
Published 1 hour ago
Share
Last updated: 44 minutes ago
Published 1 hour ago
Cardano Project SecondFi Halts Services as Hack Estimates Hit $20M
Show AI Summary
A vulnerability in SecondFi’s Cardano wallet-generation software led to a breach, potentially draining $20 million in ADA, tokens, and NFTs from user accounts
The exploit targeted the root of self-custody, as the software produced private keys with predictable randomness, putting every wallet created through it at risk
SecondFi’s breach highlights the importance of securing key generation, as the platform’s advice to migrate assets to alternative platforms acknowledges the potential compromise of all wallets created through its software

One of the Cardano ecosystem’s most established wallets has suffered a breach that strikes at the foundation of self-custody itself. On June 23, SecondFi, the self-custody “neofinance” platform formerly known as the widely used Yoroi wallet, disclosed that attackers had exploited a vulnerability in its proprietary Cardano wallet-generation software, draining ADA, tokens, and NFTs from user accounts. 

As investigators dig in, the headline question is no longer whether it was serious, but how serious: estimates of the damage now range from $2.4 million to north of $20 million.

What happened

SecondFi first alerted users that it had detected a security issue affecting a small number of Cardano wallets, then moved quickly into damage control, suspending services, pausing front-end interactions, and entering maintenance mode. The team subsequently isolated the root cause to its native Cardano web wallet-generation software, the component responsible for creating new wallets and the private keys that secure them. 

Community and on-chain reports indicate roughly 178 wallets were compromised, with nearly 200 suspicious transactions clustered around June 21 and 22. As a precaution, SecondFi took a snapshot of user balances, freezing a record of holdings at the moment the breach was identified to support any future recovery.

Dueling loss estimates

This is where the story sharpens. SecondFi’s preliminary figure puts the impact at around 16 million ADA, worth roughly $2.4 million at the time of the incident. But SlowMist founder Cos, also known as Yu Xian, painted a far darker picture. 

After tracking the attacker’s fund flows and wallet activity overnight, he flagged two suspected hacker addresses and concluded that affected users have likely lost over $20 million, as much as 129 million ADA plus other tokens, many times SecondFi’s official estimate.

我对 Cardano 生态其实挺陌生的,昨晚围观了一晚,但如果以下都是黑客地址(从行为上应该是):

addr1q8g8cgwqw98q2mrzrwgcy3wectdxwem8a8zp9r2mn6wjy7q4x7gcpv39wwurj7n72akw4kd0dgmv72gz4j92fvhn29ss7vuz99… https://t.co/gFxun3Wfdo

— Cos(余弦)😶‍🌫️ (@evilcos) June 24, 2026

The roughly eightfold gap between the two figures is significant, and unresolved. SecondFi says it is finalizing an independent technical review with a leading blockchain security firm, and that the exact loss will be disclosed once the audit is complete. Until then, the prudent read for the market is that the official number is a floor, not a ceiling.

Why a key-generation bug is uniquely dangerous

Most crypto exploits target a vulnerable smart contract, a cross-chain bridge, or a centralized front end. A flaw in wallet key generation is a different and far more insidious category because it poisons the well at the source.

Because the SecondFi software produced private keys with predictable randomness, every single wallet created through that specific software iteration is potentially compromised, including those that have not yet been drained.

That is precisely the warning now echoing through the Cardano community. Cardano software developer Blink Labs cautioned that the generated wallets “are all unsafe” and urged users to switch to a completely different wallet provider immediately. SecondFi’s own advice for users to migrate remaining assets to alternative platforms is a tacit acknowledgment of this reality.

It is a brutal irony for a self-custody platform: users who faithfully followed the “not your keys, not your crypto” mantra were still exposed, not through centralized custody, but through the underlying code that minted their keys in the first place.

A blow to a flagship Cardano wallet

The reputational sting of this exploit is heavily amplified by SecondFi’s pedigree. The platform traces directly to Yoroi, one of the earliest and most trusted light wallets in the Cardano ecosystem, used by more than a million ADA holders.

EMURGO, one of the three founding entities behind the Cardano blockchain, officially evolved and rebranded Yoroi into SecondFi in early June 2026 (shipping version 10.0.3 on June 7), expanding it into a full neofinance platform for spending, trading, earning, and saving via Visa integrations.

A breach at a wallet with this lineage lands much harder than an exploit at an anonymous new protocol. Because EMURGO is a founding architect of Cardano, the pressure on the Cardano Foundation and Input Output (IOHK) to step in and assist with a bailout or recovery is unusually high. SecondFi has confirmed it is actively coordinating its response with these core institutions, as well as ecosystem partners like Intersect and SundaeSwap.

Scammers move in

As is grimly routine after major crypto incidents, a secondary wave has followed: a surge of fraudulent accounts impersonating SecondFi support channels on X and Telegram, preying on panicked users hunting for help. 

SecondFi has urged users to verify any communication strictly through official domains and to treat unsolicited “recovery” offers or links as hostile phishing attempts. 

What ADA holders should watch

For anyone who generated a wallet through SecondFi, the safest course is to assume the keys may be compromised and move funds to a wallet created by a different provider. Traders, meanwhile, should watch whether the stolen ADA begins flowing to exchanges, which could foreshadow sell pressure on the token. 

The biggest open question is compensation: the balance snapshot gives SecondFi a basis to make users whole, but no plan or timeline has been confirmed. If the firm and its ecosystem partners deliver a credible reimbursement, the trust damage may be contained. If not, the incident risks becoming a textbook case in why securing key generation matters every bit as much as securing key custody.

Also Read: Aave Founder Reacts as Goldfinch Shuts Down with $56M Frozen in Loans

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News
Google News Banner

TAGGED:Cardano (ADA)Crypto Hack
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link
Divya Mistry
By Divya Mistry
Follow:
Divya Mistry is the Senior Editor at The Crypto Times. She leads the central editorial desk, overseeing the review and publication of policy analyses, investigative reports, exchange coverage, and protocol exploit stories. Her editorial remit spans digital asset markets, global exchange operations, cross-border digital asset settlements, regulatory developments, and other key developments shaping the cryptocurrency industry. Divya brings more than a decade of experience in editorial strategy, content development, public relations, marketing communications, and research. Before joining The Crypto Times, she worked across multiple sectors, including finance, technology, education, healthcare, real estate, entertainment, lifestyle, and vertical transport, contributing to both digital and print publications. Her research and content work has been featured on platforms including DNA India, Zee, Forbes, and Elevator World India. She holds a Master's degree in English Literature from the University of Mumbai. Drawing on her background in long-form publishing, research, and editorial leadership, she reviews and refines complex stories to ensure accuracy, clarity, and strong editorial standards before publication.

Latest News

US Seizes Huione Group Infrastructure Linked to Billions in Crypto Scam Flows
US Seizes Huione Group Infrastructure Linked to Billions in Crypto Scam Flows
India Probes Crypto Funding, Army Honey-Trap Links in JeM Sleeper Cell Case
India Probes Crypto Funding, Army Honey-Trap Links in JeM Sleeper Cell Case
Law Enforcement Groups Warn Clarity Act Could Weaken Crypto Oversight
Law Enforcement Groups Warn Clarity Act Could Weaken Crypto Oversight
Bitcoin's Grip Tightens Liquidity Flows to BTC While Altcoins Languish 
Bitcoin’s Grip Tightens: Liquidity Flows to BTC While Altcoins Languish 
CFTC Sues Kentucky Over 14.25% Tax, Marking 9th State Prediction Market War
CFTC Sues Kentucky Over 14.25% Tax, Marking 9th State Prediction Market War

Find Us on Socials

You may also like

ADA Price Slides Despite Cardano’s Biggest Scaling Test Yet

ADA Price Slides Despite Cardano’s Biggest Scaling Test Yet

Aave Founder Reacts as Goldfinch Shuts Down with $56M Frozen in Loans

Aave Founder Reacts as Goldfinch Shuts Down with $56M Frozen in Loans

THORChain Reopens 39 Days After $10.7M Exploit, Teases XMR & ZEC Swaps

THORChain Reopens 39 Days After $10.7M Exploit, Teases XMR & ZEC Swaps

Strategy’s STRC Stock Futures Goes Live on Hyperliquid Amid Volatile Comeback

Strategy’s STRC Stock Futures Goes Live on Hyperliquid Amid Volatile Comeback

The Crypto Times Logo PNG

Providing real-time, accurate Crypto reporting. Your trusted source for Crypto News and Research.

Stay Updated

All News
Exclusive
Opinions
Learn
Videos
Glossary

Company

About Us
Our Authors
Editorial Policy
AI Policy
Advertorial Policy

Get In Touch

Contact Us
Career

Find Us on Socials

X-twitter Linkedin Telegram Youtube Instagram

© 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

DMCA.com Protection Status
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Cookie policy
Do Not Sell or Share My Personal Information