Bonk.fun Hack Exposes Solana Users to Wallet Drainer Attack

TheNewsCryptoОпубликовано 2026-03-12Обновлено 2026-03-12

Введение

A security vulnerability on the Bonk.fun platform exposed Solana users to wallet drainer attacks. Malicious scripts were injected into the site, redirecting users to phishing pages that prompted them to approve transactions. These approvals allowed attackers to automatically drain tokens from users' wallets. The platform, which is used for meme token trading, was compromised, and users were deceived through fake reward claims and interface changes. Bonk.fun issued a warning on X, advising users not to interact with the site until it was secured. The developer team acted quickly to remove the malicious scripts and urged users to revoke any suspicious approvals. The incident raised concerns in the crypto community, though the prompt response helped mitigate potential damage.

The security vulnerability on Bonk.fun allowed malicious wallet drainer links to affect users who were not aware of the danger. Additionally, security experts detected the vulnerability after users encountered suspicious approval prompts while interacting with the Bonk.fun platform. The attacker injected malicious scripts to redirect users to phishing sites that demanded approvals from their connected wallets. These approvals allowed the malicious programs to drain the users’ tokens automatically from their wallets to the attacker’s addresses.

The exploit raised several concerns in the Solana ecosystem. The Bonk.fun is a site that interacts with the trading of meme tokens and the Decentralized Finance community. The attackers tried to deceive users by mimicking reward claims and token distribution through malicious interface changes. After the users accepted the request, the drainer would drain the assets from the users’ wallets within a matter of seconds.

The official X post of Bonk.fun said, “A malicious actor has compromised the BONKfun domain. Do not interact with the website until we have secured everything.”

Platform Response and Community Warnings

The developer community reacted quickly after the news became public. And immediately removed the malicious scripts that affected the Bonk.fun interface. The developer team immediately reviewed all integrations and external scripts associated with the interface that attackers might have exploited. The platform operators immediately alerted users to revoke any approvals made by malicious tokens. And to avoid clicking on unknown links shared in crypto-related groups. Blockchain investigators are closely monitoring the attacker’s wallets and all transactions associated with the exploit campaign.

Tom, the operator of Bonk.fun explained the issue on his X post. He expressed his answers saying, “We understand a lot of people are scared and rightly so, but we’re doing everything in our power to fix the situation.”

The crypto market took the incident seriously, as security vulnerabilities are a major concern for investors and affect the overall market sentiment. Meanwhile, market sentiment toward new meme token markets remained cautious. However, analysts argued that the quick response from the developer community could help limit potential damage. The potential damage that might be caused by a security incident involving a decentralized interface. The users of the Bonk interface alerted each other through social media networks, warning them of the phishing approvals that are being made by malicious tokens associated with the interface.

Highlighted Crypto News:

Metaplanet Launches Venture Arm to Expand Bitcoin Ecosystem Amid Market Volatility

TagsBlockchainBONKsecuritySolanaSolana (SOL)

Связанные с этим вопросы

QWhat was the security vulnerability on Bonk.fun that affected Solana users?

AThe security vulnerability on Bonk.fun allowed malicious wallet drainer links to be injected, which redirected users to phishing sites. These sites then prompted users for approvals from their connected wallets, enabling malicious programs to automatically drain tokens from their wallets to the attacker's addresses.

QHow did the attackers deceive users on the Bonk.fun platform?

AThe attackers deceived users by mimicking reward claims and token distribution through malicious interface changes. After users accepted the approval requests, the drainer would drain the assets from their wallets within seconds.

QWhat was the official response from Bonk.fun regarding the domain compromise?

AThe official X post of Bonk.fun warned users, stating: 'A malicious actor has compromised the BONKfun domain. Do not interact with the website until we have secured everything.'

QWhat actions did the developer community take after the Bonk.fun exploit was discovered?

AThe developer community quickly removed the malicious scripts affecting the Bonk.fun interface, reviewed all integrations and external scripts for potential exploits, and alerted users to revoke any approvals made by malicious tokens and avoid clicking on unknown links.

QHow did the crypto market and community react to the Bonk.fun security incident?

AThe crypto market took the incident seriously as security vulnerabilities are a major concern for investors, affecting overall market sentiment. Users alerted each other through social media networks about phishing approvals, while analysts noted that the quick response from developers helped limit potential damage.

Похожее

Huang Renxun Dramatically 'Saves' South Korean Stock Market

In early June, South Korea's stock market experienced a sharp decline, with the KOSPI index dropping over 5% and triggering a trading halt. Amid this volatility, NVIDIA CEO Jensen Huang's visit to Seoul provided a dramatic boost to market sentiment. During his trip, Huang held a dinner meeting with SK Group Chairman Chey Tae-won and SK Hynix CEO Kwak Noh-Jung. He announced that NVIDIA's new Vera CPU would utilize SK Hynix DRAM and confirmed a multi-year technical collaboration between the two companies. This partnership aims to co-develop next-generation memory for NVIDIA's AI infrastructure roadmap, covering products from data center supercomputers to personal AI devices. Huang also publicly commented that AI company stocks were attractively priced. A key announcement was that NVIDIA's upcoming Vera Rubin AI supercomputer systems will use HBM4 memory, with supply qualifications granted to all three major suppliers: SK Hynix, Samsung Electronics, and Micron Technology. Despite this multi-sourcing strategy, Huang warned that the industry-wide chip shortage, affecting everything from wafers to packaging, is expected to persist for several years due to relentless demand from global AI factory construction. The collaboration extends beyond memory supply. SK Hynix will employ NVIDIA's AI platforms and Omniverse digital twin technology to enhance its own semiconductor design, simulation, and manufacturing processes, aiming for more autonomous factory operations. This visit builds upon a prior October 2025 agreement for SK Group to build a large-scale AI data center using over 50,000 NVIDIA GPUs. Huang's itinerary also included meetings with other Korean giants like Hyundai, LG, and Samsung, indicating NVIDIA's broader strategy to deepen ties with South Korea's tech industry.

链捕手4 ч. назад

Huang Renxun Dramatically 'Saves' South Korean Stock Market

链捕手4 ч. назад

When Inference Becomes a Scarce Resource, Who Captures the Value?

When Inference Becomes the Scarce Resource, Who Captures the Value? The core AI bottleneck has shifted from model training to inference (runtime execution). While concerns persisted about an "AI compute gap"—initially a $200B, now a $600B problem—the market is now recognizing that the solution and value lie in the inference layer. Nvidia's financial restructuring around "serving tokens" and Cerebras's successful IPO highlight this shift. Inference is a recurring, usage-based cost, estimated to be 10-50x larger than the one-time training market, especially with the rise of agentic AI. The inference stack spans six layers: silicon (e.g., Nvidia), bare metal (e.g., CoreWeave), GPU rental/aggregation, deployment/optimization, model APIs, and end applications. Most companies operate in one layer. However, Hyperbolic uniquely spans three layers (GPU rental, deployment, and model APIs) without owning any hardware. It aggregates fragmented GPU supply from multiple cloud providers into a standardized pool, offering developers the cheapest available compute through intelligent routing. Its multi-cloud aggregation creates a data moat and a flywheel: more supply leads to better pricing data and liquidity, attracting more developers and providers. In contrast, applications like Venice operate at the top of the stack, reselling privacy-wrapped inference but remaining dependent on and constrained by the underlying compute costs they purchase. As inference demand explodes, value accrues not just to consumer applications but increasingly to the aggregation and routing layer that captures their cost of revenue. The coming potential GPU oversupply reinforces this dynamic. While hardware owners may suffer from depreciation, asset-light aggregators like Hyperbolic benefit from price arbitrage, routing workloads to the cheapest available capacity. The ultimate winner in the inference economy may not be the entity with the most GPUs, but the one that can most efficiently discover, aggregate, and route the world's fragmented compute.

链捕手4 ч. назад

When Inference Becomes a Scarce Resource, Who Captures the Value?

链捕手4 ч. назад

Торговля

Спот
Фьючерсы
活动图片