Cardano wallet exploit: SecondFi traces attack to private key flaw, warns users not to restore seed phrases

ambcryptoPublished on 2026-06-25Last updated on 2026-06-25

Abstract

SecondFi has identified the root cause of the recent Cardano wallet exploit, which drained approximately 16 million ADA ($2.4 million) from 374 wallets. The attack stemmed from a deterministic nonce derivation flaw in its software signer, allowing attackers to mathematically reconstruct private keys from public blockchain data after transactions were signed. The company warns affected users not to restore their compromised recovery phrases into another wallet, as the vulnerability exists at the private key level, meaning addresses remain exposed. Users are advised against moving funds or withdrawing staking rewards and should instead await SecondFi's official recovery process. Emergency containment has secured around 129 million ADA pending recovery. SecondFi has launched a restoration fund, engaged external security auditors, and identified two attacker groups responsible for the automated draining campaigns between June 21 and 23. The platform remains in maintenance mode during ongoing security reviews.

SecondFi has identified the root cause of the recent exploit that targeted hundreds of Cardano wallets. It warned affected users not to restore their recovery phrases into another wallet, as the compromise occurs at the private key level rather than the wallet application itself.

In an investigation update published on June 25, the Cardano wallet provider said the attack stemmed from a deterministic nonce derivation flaw in its software signer. This allowed attackers to mathematically reconstruct private keys from publicly available blockchain data after affected addresses signed transactions.

The findings come days after the exploit drained approximately 16 million ADA, worth about $2.4 million. It affected 374 wallets across four separate wallet-draining events.

SecondFi says signing flaw exposed private keys

According to SecondFi, the vulnerability existed at the address level. This means compromised keys remain exposed even if users import the same recovery phrase into another Cardano wallet.

The company said every transaction signed by an affected address leaked sufficient information for attackers to derive that address’s private key from on-chain data.

As a result, SecondFi urged affected users not to migrate their recovery phrases to another wallet or attempt to move funds independently. It warned that compromised addresses could be drained again.

It also cautioned against withdrawing staking rewards, as such transactions could expose funds to attackers monitoring the mempool.

Instead, the wallet provider advised affected users to wait for its official recovery process while submitting claims through its support portal.

Recovery effort enters next phase

SecondFi said it has completed mapping all wallets affected during the initial exploit and has begun the next stage of its recovery program.

The company confirmed that 374 wallet addresses were impacted, with approximately 16 million ADA compromised. It added that emergency containment efforts have already secured around 129 million ADA, which is being held pending recovery operations.

SecondFi has also established a dedicated restoration fund to reimburse affected users and engaged multiple external security firms to audit its systems before resuming normal operations.

The platform remains in maintenance mode while independent security reviews continue.

Investigators identify two attacker groups

As part of its latest update, SecondFi said it had identified and isolated the blockchain addresses associated with two attackers responsible for the automated wallet-draining campaigns between June 21 and 23.

According to the investigation, one attacker drained 171 wallets across two waves. At the same time, a second actor compromised 203 wallets during a separate sweep.

The company also disclosed that approximately 4.02 million ADA linked to the exploit remains in one identified collection wallet. The wallet has been flagged and remains under active monitoring.


Final Summary

  • SecondFi traced the Cardano wallet exploit to a deterministic nonce-derivation flaw that enabled attackers to reconstruct private keys from public blockchain data.
  • The company has launched a recovery program, identified two attacker groups, and warned affected users not to restore compromised recovery phrases into other wallets.

Trending Cryptos

Related Questions

QWhat was the root cause of the Cardano wallet exploit identified by SecondFi?

AThe root cause was a deterministic nonce derivation flaw in its software signer, which allowed attackers to mathematically reconstruct private keys from publicly available blockchain data after affected addresses signed transactions.

QWhy did SecondFi warn affected users not to restore their recovery phrases into another wallet?

ABecause the compromise occurs at the private key level, not the wallet application. This means the compromised keys remain exposed even if the recovery phrase is imported into a different Cardano wallet, and any funds moved to a new address from the same seed could be drained again.

QHow many wallets and what total amount of ADA were affected by the exploit according to the article?

AApproximately 374 wallet addresses were affected, with about 16 million ADA (worth around $2.4 million) compromised.

QWhat were the two main actions SecondFi advised affected users to take or avoid?

ASecondFi advised affected users to: 1) Wait for its official recovery process and submit claims through its support portal, and 2) Avoid migrating recovery phrases to another wallet, moving funds independently, or withdrawing staking rewards, as these actions could expose funds to attackers.

QWhat did SecondFi's investigation reveal about the attackers involved in the exploit?

AThe investigation identified two attacker groups. One drained 171 wallets across two waves, and a second actor compromised 203 wallets during a separate sweep. Approximately 4.02 million ADA linked to the exploit remains in one identified collection wallet.

Related Reads

The $6.4 Billion CRO Accumulation Plan of Trump Media Group Falls Apart

A $6.4 billion plan to create a publicly-listed CRO treasury company, announced a year ago by Trump Media & Technology Group (DJT), Crypto.com, and SPAC Yorkville, has been terminated. The ambitious deal, which aimed to accumulate approximately 6.3 billion CRO tokens (nearly 20% of supply at the time), never progressed beyond a framework agreement. Related plans for a prediction market integrated into Truth Social and ETF custody services by Crypto.com were also shelved, scaled back to a simple marketing partnership. The collaboration followed significant political alignment, with Crypto.com donating to Trump's inauguration and a pro-Trump super PAC, and its CEO meeting with Trump. The SEC also closed an investigation into the exchange shortly before the deal was announced, raising conflict-of-interest concerns. Officially, the termination was attributed to an unfavorable market environment. CRO's price has fallen roughly 70% since the announcement, and the broader market for publicly-traded digital asset treasuries has cooled significantly, with Bitcoin nearly halving from its late-2025 peak. The only completed transaction from the 2025 agreements remains intact: Trump Media's ~$105 million CRO purchase and Crypto.com's $50 million purchase of DJT stock. The termination aligns with DJT's strategic pivot away from crypto; the company is now pursuing a multi-billion dollar all-stock merger with nuclear fusion firm TAE Technologies, shifting its focus to clean energy.

marsbit12m ago

The $6.4 Billion CRO Accumulation Plan of Trump Media Group Falls Apart

marsbit12m ago

Tiger Research: The $43 Million Gray Area of Asian Prediction Markets

Tiger Research: Asia's $43 Million Grey Zone in Prediction Markets Western jurisdictions have created regulatory pathways for prediction markets through derivatives law (like the U.S. CFTC framework) or flexible gambling licenses (like the UK's "betting intermediary" category). In contrast, Asia lacks a comparable regulatory architecture. The absence of a general gambling license framework adaptable to private operators, coupled with closed financial product definitions (e.g., positive lists of assets in Korea and Japan), leaves prediction markets in a regulatory grey area. This lack of a clear classification—whether as gambling, financial derivatives, or a novel third category—has not stopped market activity. Significant liquidity, evidenced by over $52 million tied to a single South Korean election, flows to offshore platforms. However, this results in forgone tax revenue (estimated at $4-43 million annually per major Asian market), no consumer protection, and no oversight for market integrity. The core issue is not cultural opposition to gambling, which exists legally in many Asian markets, but a missing institutional design. Without a deliberate regulatory pathway, authorities are left with suboptimal options: expanding criminal sanctions or blocking access, which fail to address the underlying economic activity or achieve key policy goals. Establishing a regulatory foundation requires initiating a formal public discourse to first define prediction markets' legal status and societal value, a foundational step that has yet to occur in most Asian jurisdictions.

marsbit21m ago

Tiger Research: The $43 Million Gray Area of Asian Prediction Markets

marsbit21m ago

How Singapore's Retail Giant Masters the Gold Trade: Selling Thousands of Pounds Monthly Without Betting on Price, Gold Leasing Inspires RWA Income Design on Chain

A Singapore retail giant, Mustafa Centre, sells around 1,100 pounds of gold jewelry monthly, holding nearly a ton of inventory valued over $100 million, yet avoids gold price speculation. They achieve this by maintaining a constant inventory—buying back the exact amount of gold sold each day, earning only from sales margins, not price movements. This practice is enabled by the century-old gold leasing market. Retailers borrow physical gold to meet inventory needs without tying up capital or bearing price risk, paying a lease rate. Lenders earn yield on otherwise idle gold. This real-economy demand, driven by operational needs rather than speculation, provides a stable income stream. The article highlights how this traditional leasing model inspires on-chain Real World Asset (RWA) protocols like thUSD and thGOLD. These protocols channel gold lease yields—generated from borrowers like Mustafa—to token holders. The key challenge has been access, not yield availability. Platforms like Libeara, with institutional backing (e.g., SC Ventures), facilitate this by tokenizing funds (e.g., the MG 999 Gold Fund) that lend to vetted commercial borrowers, making this off-chain yield accessible on-chain. Thus, gold leasing demonstrates a proven, non-speculative revenue source for crypto protocols seeking sustainable "real yield," connecting physical trade finance to decentralized finance.

marsbit32m ago

How Singapore's Retail Giant Masters the Gold Trade: Selling Thousands of Pounds Monthly Without Betting on Price, Gold Leasing Inspires RWA Income Design on Chain

marsbit32m ago

Trading

Spot

Hot Articles

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of ADA (ADA) are presented below.

活动图片