Crypto Shockwave: Circle Sued As $280 Million Drift Hack Unravels

bitcoinist发布于2026-04-17更新于2026-04-17

文章摘要

A class action lawsuit has been filed in a Massachusetts federal court against Circle Internet Financial, alleging the stablecoin issuer was negligent and aided in the theft of $280 million from the Drift Protocol. The plaintiffs, representing over 100 investors, argue Circle had the means to stop the stolen USDC from being moved across blockchains using its Cross-Chain Transfer Protocol but failed to act. They point to Circle's prior action of freezing wallets in a separate civil case as proof it could have intervened. The April 1st hack is attributed to North Korean state-backed actors who moved the funds to Ethereum and laundered them through Tornado Cash. The case raises significant questions about the responsibility of centralized entities in the decentralized crypto ecosystem.

North Korean hackers likely pocketed hundreds of millions in stolen crypto — and now a US court is being asked to decide whether a stablecoin giant should have stopped them.

Circle’s Own Track Record Becomes A Key Weapon

A class action lawsuit filed in a Massachusetts federal court this week names Circle Internet Group as the defendant, with plaintiffs arguing the company had both the means and the opportunity to stop roughly $280 million in stolen USDC from moving across blockchains — and did nothing.

The case was brought by Drift Protocol investor Joshua McCollum, representing more than 100 affected members. Their attorneys put it plainly: Circle allowed criminal use of its own technology.

The complaint was filed Wednesday in a Massachusetts US district court by Drift investor Joshua McCollum, representing more than 100 members.

The April 1 attack on Drift Protocol saw attackers drain funds and route them from Solana to Ethereum using Circle’s Cross-Chain Transfer Protocol, a bridging tool the company operates. The transfers happened over several hours, according to reports. The window was wide open.

What makes the lawsuit particularly pointed is what happened just days before the hack. About a week prior, Circle froze 16 USDC wallets tied to a sealed US civil case. Plaintiffs seized on that detail. If Circle could move fast for a court-adjacent matter, they argue, it could have acted here too. That single fact sits at the center of the legal fight.

Accusations Range From Negligence To Aiding The Crime

The suit carries two main charges: negligence and aiding and abetting conversion — a legal term for helping someone unlawfully take another person’s property. The law firm Mira Gibb is handling the case for McCollum and the other Drift investors. Damages have not yet been set and will be determined at trial.

BTCUSD trading at $75,081 on the 24-hour chart: TradingView

Circle has not responded to requests for comment.

Crypto analytics firm Elliptic flagged the attack as the work of North Korean state-backed operatives. Based on Elliptic’s analysis, the hackers executed more than 100 transactions through Circle’s bridging infrastructure during regular US business hours. After moving the funds to Ethereum, the stolen assets were converted and pushed through Tornado Cash, a privacy protocol used to obscure transaction trails.

Image: SOPA Images/Getty Images

ARK Invest Defends Circle, But The Moral Stakes Remain High

Not everyone is pointing fingers at Circle. Lorenzo Valente, ARK Invest’s director of digital asset research, argued that Circle made the right call by not acting without a legal order.

His concern: give a company like Circle the power to freeze funds on judgment alone, and every decision becomes political. He questioned aloud where the line would be drawn — between a North Korean hacker and a suspicious wallet elsewhere in the world.

Featured image from B&G Lawyers, chart from TradingView

热门币种推荐

相关问答

QWhat is the main allegation against Circle Internet Group in the class action lawsuit?

AThe plaintiffs allege that Circle had both the means and the opportunity to stop roughly $280 million in stolen USDC from moving across blockchains but did nothing, thereby allowing criminal use of its technology.

QWhich hacking group is suspected to be behind the $280 million attack on Drift Protocol?

ACrypto analytics firm Elliptic flagged the attack as the work of North Korean state-backed operatives.

QWhat key precedent from just days before the hack do the plaintiffs use to strengthen their case against Circle?

AThe plaintiffs point out that about a week prior to the hack, Circle froze 16 USDC wallets tied to a sealed US civil case, arguing that if Circle could act quickly in that instance, it could have acted to stop the stolen funds.

QWhat are the two main legal charges brought against Circle in the lawsuit?

AThe two main charges are negligence and aiding and abetting conversion, which is a legal term for helping someone unlawfully take another person's property.

QWhat was the primary method the hackers used to obscure the trail of the stolen funds after the attack?

AAfter moving the funds to Ethereum, the stolen assets were converted and pushed through Tornado Cash, a privacy protocol used to obscure transaction trails.

你可能也喜欢

比特币八月行情:专家预计将测试价格区间,而非快速反转

比特币在八月可能继续承压,分析师预计市场将测试关键区间而非快速反转。七月比特币从多年低点反弹,但专家认为持续上涨条件尚不成熟,价格仍有跌至6万美元以下的风险。截至七月底,比特币交易于约6.35万美元,较2025年10月的历史高点下跌约50%。市场目前处于6万至6.5万美元的窄幅区间内。 分析师指出,高利率、持续通胀、强势美元以及石油价格等因素共同构成不利的宏观经济背景,压制了比特币价格。此外,美国国债等传统资产的高收益率吸引了部分资金,而加密货币ETF资金持续流出(上半年净流出54亿美元),显示机构需求疲软。 从历史数据看,八月通常是加密货币的弱势月份。专家认为市场可能正处于新周期开始前的最后阶段,建议投资者可考虑逐步积累仓位,但需警惕短期波动。 主要预测场景如下: - 基本情况(50%概率):在5.8万至6.8万美元区间震荡。 - 负面场景(30%概率):跌破5.8万美元,下探5万至5.5万美元。 - 正面场景(20%概率):突破6.7万美元,目标看向7.1万至7.5万美元。 关键支撑位在6万至6.1万美元附近,而稳定在6.7万美元上方可能打破下跌趋势。部分分析师认为,即便反弹至7万美元,也可能出现新一轮下跌,长期目标位指向约5.3万美元区域。多数观点认为,更显著的趋势性行情可能需等到今年第四季度。 投资者在八月需密切关注利率、通胀数据、ETF资金流、市场风险偏好以及主要参与者的动向,这个月可能更多是对耐心的考验,而非实现重大突破的时机。

cryptonews.ru2小时前

比特币八月行情:专家预计将测试价格区间,而非快速反转

cryptonews.ru2小时前

Coldcard硬件钱包被黑:黑客在25分钟内转走594枚比特币

硬件钱包Coldcard遭黑客攻击:25分钟内损失594枚比特币 硬件钱包长期以来被认为是存储数字货币最安全的方式,但Coinkite公司设备近期发生的事件迫使许多人重新审视这一观点。2026年7月30日,攻击者在短短25分钟内从500个地址转走了594.5枚比特币(约合4000万美元)。 问题的根源在于一个潜伏了五年的软件代码错误。Coldcard本应通过安全芯片生成真随机数来创建种子短语,但由于一个宏定义中的笔误,Coinkite的开发者早在2021年3月就意外禁用了此功能。这导致设备转而基于可预测的数据(如处理器序列号和内部系统时钟)生成密钥,使得生成的种子短语看似安全,实则因生成过程可预测而极易被破解。对于Mk2和Mk3型号,密钥搜索空间骤降至约40位,而更新的Mk4、Mk5和Q型号的最终熵值也仅为约72位,远低于所需的128位。 攻击者无需物理接触设备或进行网络钓鱼。他们仅利用了有缺陷的生成器参数,在离线状态下进行大规模枚举,生成了数百万可能的种子短语,并通过公开账本找到有余额的地址,自行签署了转账交易。 Coinkite最初声称新版本设备不受影响,但后续分析迫使公司承认所有运行受影响固件的设备均存在风险。公司负责人Rodolphe Novak已公开道歉,但排除了对受损用户进行经济补偿的可能性。 对于已创建种子短语的用户,仅更新固件无法消除风险。必须将设备更新至安全版本固件,在更新后的设备上生成全新的种子短语,并将所有资金完全转移到由此新种子短语生成的新地址。使用BIP-39标准的密码短语可降低风险,但不能替代密钥迁移。公司的其他产品如TAPSIGNER等未受此次事件影响。 此事件表明,即使是专用硬件也需要对代码进行持续独立的审计,尤其是在加密功能方面。从机器分析角度看,这与过去OpenSSL等随机数生成器缺陷长期未被发现的情况类似。开源代码理论上可通过独立审计和自动化工具加速发现此类错误,但此次漏洞潜伏五年表明理论与实践仍有差距。

cryptonews.ru2小时前

Coldcard硬件钱包被黑:黑客在25分钟内转走594枚比特币

cryptonews.ru2小时前

交易

现货

热门文章

如何购买DRIFT

欢迎来到HTX.com!我们已经让购买Drift Protocol(DRIFT)变得简单而便捷。跟随我们的逐步指南,放心开始您的加密货币之旅。第一步:创建您的HTX账户使用您的电子邮件、手机号码注册一个免费账户在HTX上。体验无忧的注册过程并解锁所有平台功能。立即注册第二步:前往买币页面,选择您的支付方式信用卡/借记卡购买:使用您的Visa或Mastercard即时购买Drift Protocol(DRIFT)。余额购买:使用您HTX账户余额中的资金进行无缝交易。第三方购买:探索诸如Google Pay或Apple Pay等流行支付方法以增加便利性。C2C购买:在HTX平台上直接与其他用户交易。HTX场外交易台(OTC)购买:为大量交易者提供个性化服务和竞争性汇率。第三步:存储您的Drift Protocol(DRIFT)购买完您的Drift Protocol(DRIFT)后,将其存储在您的HTX账户钱包中。您也可以通过区块链转账将其发送到其他地方或者用于交易其他加密货币。第四步:交易Drift Protocol(DRIFT)在HTX的现货市场轻松交易Drift Protocol(DRIFT)。访问您的账户,选择您的交易对,执行您的交易,并实时监控。HTX为初学者和经验丰富的交易者提供了友好的用户体验。

1.1k人学过发布于 2024.05.17更新于 2026.06.02

如何购买DRIFT

相关讨论

欢迎来到HTX社区。在这里,您可以了解最新的平台发展动态并获得专业的市场意见。以下是用户对DRIFT(DRIFT)币价的意见。

活动图片