Garden Finance disables app as Blockaid reports $450,000 exploit

cointelegraphPublicado em 2026-07-27Última atualização em 2026-07-27

Resumo

Garden Finance has temporarily taken its app offline following an incident reported by Blockaid involving approximately $450,000. Blockaid stated an attacker drained funds from Garden's hash time-locked contracts (HTLCs) on multiple blockchains. However, Garden Finance clarified that its protocol and HTLC smart contracts were not compromised. The company attributed the loss to a breach of an independent solver's off-chain database, where fraudulent records caused the solver to release its own funds for unfunded swaps. Garden emphasized no user funds were lost or at risk, with the incident confined to solver-owned assets. The firm is working with security companies to trace and recover the funds and expects to restore services after completing security reviews. This follows a previous solver-related breach in October 2025.

[Updated July 27, 2026, 2:16 UTC: Revised to reflect clarifications from a Garden Finance spokesperson.]

Garden Finance said an independent solver’s off-chain database was compromised in an incident that prompted the cross-chain bridge and atomic swap protocol to temporarily take its app offline.

On Sunday, Blockaid said an attacker drained about $450,000 in USDT from Garden’s hash time-locked contracts (HTLC) on Ethereum, Base, Arbitrum and BNB Smart Chain. HTLCs are time-bound escrow contracts that Garden uses to facilitate atomic swaps between Bitcoin and assets on other networks. Blockaid described the exploit as ongoing and published addresses linked to the attacker and affected contracts.

However, a Garden Finance spokesperson told Cointelegraph that neither the protocol nor its HTLC smart contracts had been compromised. The company said the attacker breached the off-chain database of an independent solver and inserted fraudulent transaction records, causing the solver to release funds for swaps that had not been funded by the counterparty.

Garden said no user funds were lost or placed at risk and that the incident affected only solver-owned assets. The company is still confirming the total amount, assets and networks involved. It said services were paused as a precaution while the affected infrastructure was isolated and reviewed.

Blockaid acknowledged Cointelegraph’s request for comments.

Garden works with security firms to trace funds

Garden said it is working with zeroShadow, Quantstamp and Blockaid to trace and recover the funds. The protocol expects to restore services shortly, subject to completing security checks, but did not give a specific timeline.

“Garden’s protocol and HTLC smart contracts were not compromised, and no user funds were lost or at risk,” the company told Cointelegraph, adding that the incident was isolated to the off-chain infrastructure of one solver in its network of independent solvers.

The company also pointed to its recent SOC 2 Type II attestation as evidence of its investment in security and operational controls. Garden told Cointelegraph that its immediate priorities are securing the affected systems, tracing the solver’s funds and ensuring services resume only after the relevant reviews are completed.

Related: WEMIX says attacker moved about $724,000 after contract breach

The incident follows an October 2025 breach in which an attacker stole about $11.4 million after compromising the operating environment of one of Garden’s solvers. Garden said that incident also did not affect its protocol contracts or put user funds at risk.

Magazine: Inside the ‘fake police raid’ that forced a $1M Bitcoin transfer

Perguntas relacionadas

QAccording to the article, what was the root cause of the $450,000 exploit affecting Garden Finance?

AThe root cause was the compromise of an independent solver's off-chain database. The attacker inserted fraudulent transaction records, which caused the solver to release funds for swaps that were not actually funded by the counterparty.

QDid the exploit compromise Garden Finance's core protocol or smart contracts, according to the company's statement?

ANo, according to Garden Finance's statement, neither the protocol nor its HTLC smart contracts were compromised. The incident was isolated to the off-chain infrastructure of a single independent solver.

QWhat action did Garden Finance take in response to the incident, and which security firms are they working with?

AGarden Finance temporarily took its app offline as a precaution. They are working with the security firms zeroShadow, Quantstamp, and Blockaid to trace and recover the stolen funds.

QWhat type of contracts were specifically targeted by the attacker, and on which networks?

AThe attacker targeted hash time-locked contracts (HTLCs) on the Ethereum, Base, Arbitrum, and BNB Smart Chain networks.

QHow does this recent incident relate to a previous security event involving Garden Finance mentioned in the article?

AThe article mentions a previous breach in October 2025 where an attacker stole about $11.4 million after compromising a solver's operating environment. Similar to the recent incident, Garden stated that the 2025 breach also did not affect its protocol contracts or user funds.

Leituras Relacionadas

Goldman Sachs: July Smashes Through Crowded Trades, U.S. Stock Bull Market Not Broken but Harder to Navigate

Goldman Sachs: July Sees Crowded Trades Unwound, U.S. Bull Market Intact but Getting Tougher. The U.S. stock market in July did not see an index-level crash, but rather a significant unwinding of speculative positions. While the S&P 500 remained stable—trading within a narrow 3.5% range and staying within 2% of its high—underlying market dynamics were volatile. Heavily crowded trades, particularly in high-momentum tech, AI-linked stocks, and Asian strategies, faced severe pressure and forced deleveraging. Data indicates this was a meaningful cleanse, not a minor adjustment. Global tech exposure saw its largest sell-off in over five years, leverage in Korean equity ETFs plummeted, and Goldman's prime brokerage recorded the largest gross exposure reduction since late 2022. Leverage on momentum factors among fundamental long/short clients fell to the 28th percentile of its one-year range. The AI trade narrative shifted from pure potential to a focus on tangible returns. While Meta failed to show clear AI monetization, Microsoft and Amazon provided evidence that massive capital expenditure is translating into scalable revenue and product growth, preventing a blanket sell-off of the AI sector. The Federal Reserve's more opaque communication style and volatility in long-end Treasury yields have introduced new friction, particularly for rate-sensitive growth and tech stocks. The broader outlook for U.S. equities remains favorable, supported by a strong economy, robust earnings, and substantial AI capital expenditure. However, risk/reward is no longer cheap, and the market's upward elasticity has weakened. The Nasdaq 100's trajectory—up 12% year-to-date despite significant pullbacks—illustrates that the bull trend persists but the path is becoming more difficult. The key lesson from July is that the market no longer rewards crowded, highly leveraged trades, requiring more disciplined and liquid portfolio approaches.

marsbitHá 3h

Goldman Sachs: July Smashes Through Crowded Trades, U.S. Stock Bull Market Not Broken but Harder to Navigate

marsbitHá 3h

Trading

Spot
活动图片