MultiversX Tracker is Live!

Thorchain "exploit" timeline

All Cryptocurrencies

by COINS NEWS 50 Views

https://x.com/i/status/2055300529966780898

Timeline

1️⃣Dex "developers" leave a tss-lib security flaw open on purpose.

2️⃣Alleged malicious 3rd party actor gets instructions about the flaw by the dex crew.

3️⃣Dex gets "exploited" and everyone on the 10mil$ payroll starts posting about it and creating drama

4️⃣Dex halts its operations despite being "decentralized"

5️⃣Dex developers "locate" the coding flaw backdoor (the one they left open in 1️⃣)

6️⃣Dex developers fix the code and pay social media rats to sing praises about how they quickly located the problem and fixed it.

7️⃣The stolen funds are washed and distributed among the third party malicious actor™️ and the devs themselves.

8️⃣Users funds are gone, dex continues to operate like nothing happened.

....

Thorchain has been hacked six times in five years, and not once the same way. Each one through a different layer of the architecture.

2021 - Smart contract bug in the ETH Router. Attackers tricked Bifrost into reading manipulated msg.value events. ~$15.5M across three exploits.

2022 - Validator software bug. Non-deterministic behavior across nodes triggered a 20-hour outage.

2023 - TSS keygen vulnerability. Devs admitted a malicious validator could have drained vaults during a prior key generation. Network halted preemptively.

2025 (Jan) - Economic design failure. THORFi's lending model required RUNE to keep outperforming BTC/ETH. It didn't. $200M trapped.

2025 (Sep) - Social engineering. DPRK ran a Telegram deepfake on co-founder JP, extracted his MetaMask keys from iCloud Keychain. $1.35M lost.

2026 - TSS cryptography flaw. A malicious validator exploited the GG20 implementation, leaked key material across signing sessions, reconstructed the vault key. $10.7M drained.

Plus: ~$605M of Bybit/Lazarus stolen funds laundered through in 2025. Validators voted to block, reversed under "code is law" pressure.

Six distinct vectors: smart contract code, validator software, TSS keygen, economic design, social engineering, TSS cryptography. ~$227M directly lost or trapped. The architecture keeps finding new ways to fail.

submitted by /u/vekypula
[link] [comments]
Get BONUS $200 for FREE!

You can get bonuses upto $100 FREE BONUS when you:
💰 Install these recommended apps:
💲 SocialGood - 100% Crypto Back on Everyday Shopping
💲 xPortal - The DeFi For The Next Billion
💲 CryptoTab Browser - Lightweight, fast, and ready to mine!
💰 Register on these recommended exchanges:
🟡 Binance🟡 Bitfinex🟡 Bitmart🟡 Bittrex🟡 Bitget
🟡 CoinEx🟡 Crypto.com🟡 Gate.io🟡 Huobi🟡 Kucoin.



Comments