Radiant Capital Protocol Hacked for Over $50 Million

4 Min Read Tags:

  • Radiant Capital’s multi-signature wallet was compromised, leading to a significant breach.
  • The estimated loss exceeds $50 million, affecting user funds in credit pools.
  • Hackers gained access to the private keys of at least three out of eleven key holders.
  • The compromised keys allowed changes to smart contract ownership and malicious code insertion.
  • Both Binance Chain and Arbitrum networks were impacted, with operations paused on Ethereum and Base.
  • Users were advised to revoke permissions for certain contracts to protect their assets.
  • Ancilia, a cybersecurity project, mistakenly shared a phishing link in response to the hack.
  • Previous reports by PeckShield noted $120 million in damages from similar incidents in September 2024.

Radiant Capital’s Security Breach: Over $50 Million Compromised

In a recent and alarming development within the cryptocurrency sector, the lending protocol Radiant Capital suffered a significant security breach. The incident, which compromised a multi-signature wallet, resulted in hackers obtaining access to user funds totaling an estimated $50 million. This breach highlights the ongoing vulnerabilities within the crypto ecosystem and raises questions about security practices in decentralized finance (DeFi).

The Breach: Details and Impact

Radiant Capital’s security was undermined when attackers compromised the private keys of at least three key holders responsible for a multi-signature wallet. This access allowed the attackers to modify the smart contract’s ownership, specifically targeting the LendingPoolAddressesProvider smart contract. By altering the logic of the credit pools with a backdoor contract, the hackers could exploit the “transferFrom” function to siphon user funds.

Response and Mitigation Efforts

The Radiant Capital team has acknowledged the suspicious activity and is collaborating with on-chain analytics firms like SEAL911, Hypernative, ZeroShadow, and Chainalysis. In response, operations on affected networks, including Binance Chain and Arbitrum, have been paused, with similar actions taken on Ethereum and Base to prevent further losses.

User Advisory and Security Recommendations

Amid the ongoing investigation, Radiant Capital and cybersecurity experts have urged users to immediately revoke permissions for specific contracts to safeguard their assets. The team provided a list of contracts for users to target in their security measures.

Cybersecurity Missteps

In an unexpected twist, Ancilia, a cybersecurity project, inadvertently shared a phishing link in a post addressing the breach. The link, claiming to offer quick permission revocations, was swiftly removed after community backlash. This incident underscores the importance of vigilance and accuracy in cybersecurity communications.

Wider Implications for the Crypto Industry

This breach is a stark reminder of the vulnerabilities that persist in the cryptocurrency domain. It follows a report from PeckShield, which noted that similar incidents in September 2024 had resulted in $120 million in damages. The Radiant Capital breach serves as a call to action for enhanced security protocols and preventive measures across the industry.
In summary, the Radiant Capital incident exemplifies the critical need for robust security practices within the DeFi space. As the crypto market continues to evolve, stakeholders must prioritize security to protect user assets and maintain trust in decentralized financial systems.

TAGGED:
US Treasury’s Over-$5B Buyback Fails to Halt 10-Year Bond Sell-Off

The U.S. Treasury accepted $5.2 billion in offers during its first expanded long-term bond buyback on September 10, while the 10-year yield subsequently approached 4.98%.

6 Min Read
Mexican Authorities Find 300-GPU Crypto Farm, Suspect Electricity Theft

Mexican authorities uncovered a suspected illegal cryptocurrency mining farm near the Necaxa dam in Tlaola, Puebla, finding about 300 GPUs and investigating possible electricity theft and money laundering.

4 Min Read
OpenAI Faces Lawsuit From Man Saying ChatGPT Convinced Him He Is Jesus

Michael Lines sued OpenAI and CEO Sam Altman, alleging ChatGPT reinforced religious delusions during a 2025 manic episode ending in a March suicide attempt; OpenAI said it is reviewing the…

5 Min Read
Canary Capital Launches First US Spot TRX ETF With Staking

Canary Capital launched the Canary Staked TRX ETF on Cboe BZX under ticker TRXS on Sept. 9, 2026, offering direct TRX exposure and staking rewards.

5 Min Read
Anthropic Models 3 US Economic Scenarios Through 2030

Anthropic published a model outlining three scenarios for the U.S. economy through 2030, with its extreme scenario suggesting annual GDP growth could reach 15% alongside historically high unemployment.

7 Min Read