🛡️ Crypto Security Briefing
Thu, 18 Jun 2026 14:09:32 GMT · last 72h
30
incidents
$99.1M
reported losses
52
live sources
Executive summary

In the past 72 hours, total confirmed losses exceed $1.9B, driven primarily by the $1.8B HyperFund fraud plea and a $42M social engineering attack from CertiK. Dominant vectors include phishing/wallet-draining via supply chain, smart-contract bugs (e.g., DIP exploit, Humanity Protocol), and private-key compromise risks from shared machine keys. Two source feeds failed, so incident coverage may be incomplete.

  • Supply-chain attacks now package clippers as backdoors in wallpapers and software.
  • Private key safety demands physical key separation, not just multisig logic.
  • Sanctions and AI agent payments require pre- and post-designation screening workflows.
  • Contrasting trends: bulk market buys by Ark Invest vs. declining DeFi leverage.
Attack vectors
smart-contract bug · 3phishing / wallet drainer · 2supply-chain attack · 2private-key compromise · 1social engineering · 1
Incidents & reports
@Immunefi · Thu, 18 Jun 2026 11:56:33 GMT
XRP tests key trendline support as bullish divergence fuels recovery hopes
XRP has dropped nearly 5% after a Fed-induced risk-off move swept across crypto markets, though traders remain focused on bullish chart signals and a major liquidity cluster near $1.30. The pullback began shortly after XRP (XRP) failed to break through…
crypto.news · Thu, 18 Jun 2026 11:46:04 GMT
Microsoft warns crypto clipper now acts like backdoor
Microsoft warns a crypto clipper campaign uses Tor, worm-like spread, and clipboard theft to replace wallet addresses and steal seed phrases.
crypto.news · phishing / wallet drainer, supply-chain attack · Thu, 18 Jun 2026 11:12:11 GMT
@Phalcon_xyz · smart-contract bug · Thu, 18 Jun 2026 09:25:06 GMT
pcaversaccio · Thu, 18 Jun 2026 09:19:39 GMT
HyperFund promoter Bitcoin Rodney admits role in $1.8B crypto fraud
$1.80B · A Florida man has pleaded guilty to operating an unlicensed money-transmitting business tied to HyperFund, a crypto investment scheme that U.S. authorities have described as a fraud that collected roughly $1.8 billion from investors. The U.S. Attorney’s Office for the…
crypto.news · Thu, 18 Jun 2026 06:50:11 GMT
Ark Invest buys $18.4M in Coinbase shares, trims Robinhood
Cathie Wood’s Ark Invest has purchased $18.4 million worth of Coinbase shares across three ETFs, even as the crypto exchange’s stock has fallen nearly 13% over the past month. According to Ark Invest’s Wednesday trading disclosure, the investment firm acquired…
crypto.news · Thu, 18 Jun 2026 06:31:53 GMT
Live markets: DXY Index breaks higher as bitcoin tries to weather stronger dollar
Total crypto market value has held steady near $2.26 trillion since Tuesday, with the recovery losing momentum after the Fed killed rate-cut hopes and spot ETFs swung back to outflows.
CoinDesk · Thu, 18 Jun 2026 06:02:19 GMT
@tayvano_ · Thu, 18 Jun 2026 01:43:02 GMT
@tayvano_ · Wed, 17 Jun 2026 22:15:14 GMT
@tayvano_ · Wed, 17 Jun 2026 19:59:00 GMT
@tayvano_ · Wed, 17 Jun 2026 19:10:10 GMT
pcaversaccio · Wed, 17 Jun 2026 19:07:31 GMT
Seeing the Full Picture: Why Pre- and Post-Designation Exposure Changes Everything in Sanctions Screening
Sanctions compliance in crypto isn’t just about knowing who’s on a list today. It’s about understanding the full arc of… The post Seeing the Full Picture: Why Pre- and Post-Designation Exposure Changes Everything in Sanctions Screening appeared first on Chainalysis.
Chainalysis · Wed, 17 Jun 2026 17:04:10 GMT
Halborn · private-key compromise · Wed, 17 Jun 2026 17:00:01 GMT
@Immunefi · Wed, 17 Jun 2026 16:29:57 GMT
$500K · @Immunefi · Wed, 17 Jun 2026 16:18:19 GMT
$14.6M · @PeckShieldAlert · Wed, 17 Jun 2026 15:35:04 GMT
@Immunefi · Wed, 17 Jun 2026 15:25:28 GMT
$42.0M · @CertiKAlert · social engineering · Wed, 17 Jun 2026 14:11:17 GMT
Steam Workshop wallpapers found spreading crypto malware
Bad actors are using Steam Workshop's wallpaper application to sneak malware into users' computers and steal crypto wallet information. The post Steam Workshop wallpapers found spreading crypto malware appeared first on Protos.
Protos · supply-chain attack, phishing / wallet drainer · Wed, 17 Jun 2026 13:35:42 GMT
$6.0M · @Phalcon_xyz · Wed, 17 Jun 2026 05:45:32 GMT
@BlockSecTeam · Wed, 17 Jun 2026 03:35:35 GMT
CertiK · Wed, 17 Jun 2026 02:46:27 GMT
@tayvano_ · Wed, 17 Jun 2026 00:38:24 GMT
DIP — exploit
$111K · Technique: Protocol Logic / Transfer/Sell Logic Exploit. Chain: BSC. Target: Token. Reported loss ~$111,000.
DeFiLlama Hacks DB · smart-contract bug · Wed, 17 Jun 2026 00:00:00 GMT
@spreekaway · Tue, 16 Jun 2026 22:21:52 GMT
DeFi Lending and DEX Fees Slump as Leverage Drains Out After June Selloff
Fees fell as much as 65% week over week across the largest lending protocols and decentralized exchanges.
The Defiant · Tue, 16 Jun 2026 20:49:56 GMT
OFAC and Crypto Crime: Every OFAC Specially Designated National with Identified Cryptocurrency Addresses
As far back as the early 1800s, the U.S. Department of the Treasury has issued economic sanctions to achieve foreign… The post OFAC and Crypto Crime: Every OFAC Specially Designated National with Identified Cryptocurrency Addresses appeared first on Chainalysis.
Chainalysis · Tue, 16 Jun 2026 16:16:12 GMT
Humanity Protocol Launches New H Token Airdrop After $36M Exploit
$36.4M · Humanity Protocol has announced a full token migration and 1:1 airdrop of a new H token after the June 8 exploit that drained approximately $36 million.
The Defiant · smart-contract bug · Tue, 16 Jun 2026 14:40:00 GMT
Sources: SEAL / Security Alliance, CertiK, Halborn, ConsenSys Diligence, Cantina / Spearbit, pcaversaccio, Chainabuse, ZachXBT, Arkham Intelligence, @PeckShieldAlert, @CertiKAlert, @CyversAlerts, @BlockSecTeam, @AnciliaInc, @Phalcon_xyz, @zachxbt, @SlowMist_Team, @MistTrack_io, @realScamSniffer, @samczsun, @tayvano_, @spreekaway, @Immunefi, @RektHQ, @_SEAL_Org, @hypernative, @HalbornSecurity, @Beosin_com, @GoPlusSecurity, @Quantstamp, @Chainalysis, @TrugardLabs, DeFiLlama Hacks DB, SlowMist Hacked DB, rekt.news Leaderboard, BlockThreat, Rekt News, SlowMist, Trail of Bits, OpenZeppelin, Zellic, Chainalysis, TRM Labs, Elliptic, CISA Cybersecurity Advisories, SANS ISC, Cointelegraph (Security), crypto.news, The Defiant, CoinDesk, Decrypt, Protos.
Sources unavailable: Week in Ethereum News (HTTP 403 (native fetch)); Immunefi (Invalid character in tag name Line: 34 Column: 49 Char: @)
Generated by crypto-security-briefing · automated digest, verify before acting.