Polymarket users lose $3 million after frontend hack
A suspected phishing attack targeting one of Polymarket’s third-party vendors has resulted in $3 million worth of crypto being stolen from users. The Polymarket Traders X account revealed that the firm discovered on Thur...
Watchlist
Published in the last two hours. Multiple named entities are involved.
A suspected phishing attack targeting one of Polymarket’s third-party vendors has resulted in $3 million worth of crypto being stolen from users.
The Polymarket Traders X account revealed that the firm discovered on Thursday morning that its third-party vendor had been compromised. It claims that hackers then injected “a malicious script into our frontend for some users.”
It also claims that the firm has contained the issue and removed “the affected dependency.” Finally, it reassured users that it will fully refund those affected.
Crypto security analyst Specter tracked the hack, noting that there was a potential “phishing attack targeting Polymarket users.”
It estimated that the attackers had stolen almost $3 million from 11 victim wallets. Each victim was in possession of Polymarket stablecoin PUSD.
It appears there may be a phishing attack targeting Polymarket users, with estimated losses of $2.94M so far.
The attacker has drained funds from 11+ victim wallets holding PUSD, swapped the stolen assets for ETH, and consolidated the proceeds into the following address:… pic.twitter.com/6WfS0JhdDG
Read more: American Indian tribes want Kalshi and Polymarket off their land
This stolen crypto was then swapped for ETH before being redirected to this address: 0xe65b1C586757c5510B60F998Eebb14C1eF71E1eD.
Just last month, Polymarket suffered another hack after an exploited private key lost the company $700,000.
The company stressed that the theft was caused by an old private that had been compromised rather than a hack related to its contracts and core infrastructure.
Protos has reached out to Polymarket for comment and will update this piece should we hear anything back.
Got a tip? Send us an email securely via Protos Leaks. For more informed news and investigations, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.
The post Polymarket users lose $3 million after frontend hack appeared first on Protos.
Why this matters
Polymarket is showing up inside the Security Incidents theme, so this story is worth tracking for follow-through rather than treating it as a one-off headline.
Original source
Read on ProtosRelated market context
Crypto Casino Security Models: Wallet Authentication, Liquidity Risk, Oracle Dependencies, and Attack Surface Analysis
Online betting platforms process billions in payments every year, and most of those transactions still rely on cards or traditiona...
SecondFi Exploit Exposes Private Keys as ADA Wallet Flaw Puts Millions at Risk
Key Takeaways: According to SecondFi, the flaw involved a deterministic nonce that enabled them to build a private key from the bl...
About 60% of World Cup bettors on Polymarket are first-time crypto users
Polymarket emerged as an onboarding layer for about 60% of World Cup bettors, who interacted with the blockchain for the first tim...
CFTC Sues Kentucky to Shield Kalshi and Polymarket – the First Republican-Led State It’s Targeted
The Commodity Futures Trading Commission (CFTC) sued Kentucky in federal court on June 23 to block the state’s crackdown on Kalshi...
Bitcoin’s bear market struggle is killing crypto jobs but fueling a $10 billion Wall Street-backed M&A boom
Bitcoin’s prolonged decline is forcing cryptocurrency companies to cut staff, automate more work, and abandon the expansion plans...
SBI Holdings Agrees to Acquire Japanese Crypto Exchange Bitbank in $288.6 Million Deal
Bitcoin Magazine SBI Holdings Agrees to Acquire Japanese Crypto Exchange Bitbank in $288.6 Million Deal SBI Holdings has signed ag...