Crypto Scams and Hacks Surge to $370M in January: CertiK

TheNewsCryptoОпубликовано 2026-02-02Обновлено 2026-02-02

Введение

In January, cryptocurrency scams and hacks surged to $370.3 million, marking the highest monthly loss in 11 months and a fourfold increase from January of the previous year. The majority of the stolen funds came from a single social engineering scam that resulted in a $284 million loss. Phishing attacks accounted for over $311.3 million of the total. The month's largest incidents included a $28.9 million hack on Step Finance, a $26.4 million exploit of the Truebit protocol due to a smart contract bug, and a $13.3 million attack on SwapNet. Overall, 16 major hacks were recorded, causing $86.01 million in losses—a slight decrease from the previous year but a 13% rise from December. The figures represent a 214% increase from December's losses and highlight a significant escalation in crypto security breaches.

The total value of stolen cryptocurrencies via exploits and scams extended to $370.3 million last month, the biggest monthly figure hit in 11 months and around a fourfold increase from January of last year.

CertiK, the biggest Web3 security service provider, stated on January 31 that out of 40 scam incidents that happened in January, the major portion of the total value stolen came from one victim that lost about $284 million because of a social engineering scam.

Around over $370 million stolen was accounted for by phishing scams, which stole over $311.3 million over the month. This month’s figure is the biggest loss, followed by the Bybit hack in February 2025.

In February 2025, the hackers swept off around $1.5 billion overall over the month, a major portion of which came from the $1.4 billion hack on crypto exchange Bybit. The recent amount marks over a 277% surge from January 2025, when attackers swept in and stole $98 million.

The Biggest Surge

CertiK also mentioned that it is also a 214% surge from December, witnessing $117.8 million lost to crypto theft. The blockchain security and data analytics company, PeckShield, revealed on February 1 that the hack of Step Finance in the last month of January was the biggest for the month.

Attackers swept $28.9 million in the attack on the decentralised finance portfolio tracker, where a lot of its treasury wallets were risked, having over 261,000 Solana (SOL) taken. After this, the biggest exploit for the month was the $26.4 million attack on the Truebit protocol on January 8, when a bug in a smart contract permitted an attacker to mint tokens almost for free. This also banged the price of the Truebit (TRU) token.

PeckShield also highlighted the $13.3 million hack on liquidity provider SwapNet on January 26 and the $7 million hack against the blockchain protocol Saga on January 21. The firm mentioned that there were around 16 hacks overall in January, equating to $86.01 million in losses, a 1.42% fall from a year ago, but over a 13% rise from December.

Highlighted Crypto News Today:

CrossCurve Bridge Exploit Exposes $3 Million Loss in Cross-Chain Security Breach

TagsCertiKHackScam

Связанные с этим вопросы

QWhat was the total value of stolen cryptocurrencies in January according to CertiK?

A$370.3 million

QWhich single incident accounted for the majority of the stolen funds in January?

AA social engineering scam that resulted in a loss of about $284 million to one victim.

QWhat was the most significant hack prior to January's surge, as mentioned in the article?

AThe Bybit hack in February 2025, where approximately $1.4 billion was stolen.

QAccording to PeckShield, which was the largest individual hack incident in January?

AThe $28.9 million hack of Step Finance.

QWhat type of attack was responsible for the majority of the stolen funds in January?

APhishing scams, which stole over $311.3 million.

Похожее

380,000 Apps Exposed, 2,000+ Apps Leaked Secrets: AI Programming Turns 'Intranet' into Public Internet

Israeli cybersecurity firm RedAccess uncovered a severe data exposure trend linked to "vibe coding" or AI-powered software development tools. Their research found approximately 38,000 publicly accessible web applications built with platforms like Lovable, Base44, Netlify, and Replit. Of these, an estimated 2,000 apps exposed sensitive corporate and personal data, including medical records, financial information, internal strategic documents, and customer chat logs. In some cases, access even granted administrative privileges. The core issue stems from default privacy settings that make applications public by default, combined with a lack of built-in security controls (like authentication) in the AI-generated code. This allows employees without security expertise—"citizen developers"—to easily create and deploy applications that bypass standard corporate security reviews. The exposed apps, often indexed by search engines, are trivially discoverable. While some platform providers (Replit, Lovable, Wix/Base44) argue that security configuration is the user's responsibility and question the validity of some findings, security researchers confirm the widespread reality of such exposures. This pattern, also noted in prior studies, highlights a critical security gap as AI democratizes app creation, potentially leading to massive, unintentional data leaks.

marsbit28 мин. назад

380,000 Apps Exposed, 2,000+ Apps Leaked Secrets: AI Programming Turns 'Intranet' into Public Internet

marsbit28 мин. назад

Attracting Global Capital, Asia's New 'Super Cycle' Is Unfolding

Investors are turning to Asia as the next frontier for global equity growth, with a new "super cycle" unfolding across the region. Driven by the AI revolution, Asian markets, particularly South Korea, have seen significant rallies. According to Morgan Stanley analysis, the underlying drivers of Asia's industrial cycle are shifting from traditional sectors like real estate and manufacturing to massive investments in AI infrastructure, energy security and transition, and supply chain resilience. Fixed asset investment in Asia is projected to grow from around $11 trillion in 2025 to $16 trillion by 2030, with a 7% annual growth rate from 2026-2030. The AI wave is a primary catalyst, driving immense capital expenditure for chips, servers, data centers, and power systems. Asia is central to this hardware supply chain. In China, AI investment is focused on building a full-system domestic capability, with the local AI chip market potentially reaching $86 billion by 2030. Beyond AI, China's export story is expanding from EVs and batteries to robotics. The country already captures about half of new global industrial robot demand and over 90% of humanoid robot shipments. This growth phase mirrors the early stages of China's EV export boom. Simultaneously, energy security investments, spurred by AI's massive power needs, are rising, with China benefiting from its leadership in solar, batteries, and EVs. Regional defense spending is also increasing structurally, supporting demand for advanced manufacturing. The main beneficiaries are China, South Korea, and Japan, positioned in core supply chain areas. However, risks remain, including potential overcapacity, profit margin pressures from competition, persistent technological restrictions, geopolitical friction, and workforce displacement due to AI-driven automation. Market volatility is also expected to increase as investor expectations diverge on the realization of these capital investment and export themes.

marsbit29 мин. назад

Attracting Global Capital, Asia's New 'Super Cycle' Is Unfolding

marsbit29 мин. назад

Funding Weekly Report | 14 Public Funding Events, Kalshi Completes $10B New Funding Round at $220B Valuation Led by Coatue Management

Weekly Funding Roundup: 14 Deals and $10.49B+ in Total Funding, Led by Kalshi's $1B Round Last week (5.4-5.10) saw 14 notable funding events in the global blockchain ecosystem, raising over $10.49 billion in total. Key highlights include Kalshi, a prediction market platform, securing a $1 billion round led by Coatue Management, reaching a $22 billion valuation. The platform now boasts ~2 million MAUs and $178B in annualized trading volume. In DeFi, regulated on-chain reinsurer OnRe raised $5 million in Series A funding, and Bitcoin-backed credit protocol Saturn Credit completed a $2 million seed round. For Infrastructure & Tools, OpenTrade raised $17 million to expand its stablecoin yield infrastructure, and RWA platform Balcony secured $12.7 million to deploy its property settlement service in the US. Centralized Finance saw one deal: AI-driven trading platform Stockcoin.ai completed a seed round led by Amber Group. In the prediction market sector alongside Kalshi, AI-powered platform Elastics raised $2 million. Other notable deals include SC Ventures' strategic investment in crypto market maker GSR and Centrifuge securing a "seven-figure" investment from Coinbase to become a core RWA partner for Base. On the investor side, Haun Ventures raised a new $1 billion fund targeting crypto and AI, and Multi Investment raised ~$616 million to focus on blockchain and Web3 investments.

marsbit1 ч. назад

Funding Weekly Report | 14 Public Funding Events, Kalshi Completes $10B New Funding Round at $220B Valuation Led by Coatue Management

marsbit1 ч. назад

Торговля

Спот
Фьючерсы
活动图片