GM Security
Thu, 25 Jun 2026 13:14:52 GMT · last 72h
30 incidents
$63.4M reported losses
49 live sources
Executive summary

Over the past 72 hours, aggregated losses exceed $986M, led by an $860M access-control incident in RWA tokenization on XDC Network and two $47M events: a global infostealer takedown freezing funds and a flash-loan attack. Dominant vectors include access-control, phishing-wallet-drainer, flash-loan attacks, and governance/smart-contract exploits. Multiple high-impact supply-chain, social-engineering, and private-key compromise alerts also emerged, while four items lack loss data or clear vector attribution.

Attack vectors
smart-contract bug · 3social engineering · 3bridge exploit · 3private-key compromise · 2flash-loan attack · 2access-control flaw · 1
Incidents & reports
Sources: CertiK, ConsenSys Diligence, Cantina / Spearbit, pcaversaccio, Chainabuse, Arkham Intelligence, @PeckShieldAlert, @CertiKAlert, @CyversAlerts, @BlockSecTeam, @AnciliaInc, @Phalcon_xyz, @zachxbt, @SlowMist_Team, @MistTrack_io, @realScamSniffer, @samczsun, @tayvano_, @spreekaway, @_SEAL_Org, @hypernative, @HalbornSecurity, @Beosin_com, @GoPlusSecurity, @Quantstamp, @Chainalysis, @TrugardLabs, DeFiLlama Hacks DB, SlowMist Hacked DB, rekt.news Leaderboard, BlockThreat, Rekt News, SlowMist, Trail of Bits, OpenZeppelin, Zellic, Chainalysis, TRM Labs, Elliptic, CISA Cybersecurity Advisories, SANS ISC, Cointelegraph (Security), crypto.news, The Defiant, The Block, CoinDesk, Decrypt, Protos, Immunefi Audit Reports.

Sources unavailable: Immunefi (Invalid character in tag name Line: 34 Column: 49 Char: @)

📸 Share image for socials — 1200×630
⬇ Download PNG GM Security daily crypto security briefing
Share
XLinkedInBlueskyFacebookThreadsRedditTelegramFarcasterEmail

Generated by GM Security · automated digest, verify before acting.