CrossCurve Bridge Exploit Exposes $3 Million Loss in Cross-Chain Security Breach

TheNewsCrypto發佈於 2026-02-02更新於 2026-02-02

文章摘要

CrossCurve, a cross-chain liquidity and bridge protocol, suffered a security breach resulting in approximately $3 million in losses. The exploit was caused by a missing security check in its smart contract, allowing attackers to send fake but valid-looking messages and drain tokens. The incident resembles the 2022 Nomad bridge hack and highlights that even protocols with multiple validation systems (like Axelar and LayerZero) remain vulnerable to single coding errors. CrossCurve and its backer, Curve Finance founder Michael Egorov, advise users to pause all interactions with the protocol, review exposures to CrossCurve-related pools, and await official updates.

CrossCurve, a cross-chain liquidity and bridge protocol, has confirmed that its bridge system was hacked, resulting in a loss of around $3 million. This affected multiple blockchains and is now under investigation. CrossCurve warns the users to pause all activity interacting with the protocol.

How Attackers Hacked the Bridge system

The missing security check from the CrossCurve smart contract was the major reason for this hack. The Smart Contract needs to verify the messages sent between the blockchains, but one of the verification steps was incommpleete which allowed the attackers to trick the system by sending fake messages that look valid to the system. This allowed the attacker to hack the token from the contract.

Security experts say that this exploit resembles the Nomad bridge hack in 2022, which drained around $190 million. They raised concerns that basic security mistakes are happening years later despite several past warnings.

CrossCurve has promoted its bridge as one of the safer and more secure bridges than others because it relies on multiple independent validation systems, such as Axelar, LayerZero, and its own oracle network. But this incident shows that despite multiple systems, a single coding mistake can still be exploited.

What must users do after this exploit?

The project, backed by Michael Egorov, the founder of Curve Finance, has reportedly raised around $7 million from investors. After the incident, Curve Finance warns users to review their positions and consider removing those who have exposure to CrossCurve-related pools.

Right now, the users should not interact with the CrossCurve until further notice and review any exposure to CrossCurve-related pools. They should look for any official updates from the team and be cautious with the cross-chain bridges.

Highlighted Crypto News:

U.S. Treasury Sanctions UK Crypto Exchanges for Iran Sanctions Evasion

TagsCross-ChainCryptocurrency

相關問答

QWhat was the primary cause of the CrossCurve Bridge security breach?

AThe primary cause was a missing security check in the CrossCurve smart contract, specifically an incomplete verification step for messages sent between blockchains, which allowed attackers to send fake but valid-looking messages.

QHow much was lost in the CrossCurve Bridge exploit?

AApproximately $3 million was lost in the exploit.

QWhich previous bridge hack does this incident resemble, according to security experts?

ASecurity experts stated that this exploit resembles the Nomad bridge hack in 2022, which resulted in a loss of around $190 million.

QWhat should users do in response to the CrossCurve exploit, as warned by the protocol?

AUsers should pause all activity interacting with the CrossCurve protocol, review their positions, and consider removing any exposure to CrossCurve-related pools until further official notice.

QWhat validation systems did CrossCurve promote as making its bridge secure before the incident?

ACrossCurve promoted its reliance on multiple independent validation systems, including Axelar, LayerZero, and its own oracle network, to claim it was one of the safer bridges.

你可能也喜歡

美债危机和高收益率背景下,黄金作为“金融保险”的配置价值

本文探讨了在美债危机和高收益率背景下,黄金作为“金融保险”的配置价值。文章认为,美国巨额债务、高收益率环境以及地缘政治风险等因素,削弱了投资者对传统纸币和美元资产的信心,从而凸显了黄金作为无对手方风险的价值储存手段的重要性。 核心驱动力包括:1)黄金与实际利率呈反向关系,当前低实际利率环境提供支撑;2)地缘政治紧张与能源通胀推高避险需求;3)全球央行(尤其是中国央行)持续购金,形成结构性需求;4)投资需求(如ETF)创历史新高。文章回顾了金价从2025年初约2,624美元飙升至2026年1月历史高点5,589美元的历程,并指出当前价格在约4,460-4,523美元区间。 对于投资者,获取黄金敞口的主要途径有:实物黄金、黄金ETF(如GLD、IAU)以及黄金矿业ETF(如GDX)。后者具有杠杆效应,但风险也更高。文章同时提示了黄金面临的风险,包括实际利率大幅转正、美元走强、地缘政治缓和及估值过高等。 最后,文章建议将黄金视为投资组合的保险部分,而非增长型资产,多数情况下配置比例在5%-10%为宜。投资者需密切关注美国实际利率、美伊谈判进展、央行购金数据及关键价格位(如4,500美元和5,000美元),以判断未来走势。在当前宏观环境下,持有黄金的逻辑得到了罕见的基本面支撑。

marsbit38 分鐘前

美债危机和高收益率背景下,黄金作为“金融保险”的配置价值

marsbit38 分鐘前

MSTR 与 STRC 的「死亡螺旋」风险有多大?

MicroStrategy(MSTR)近期出售32枚比特币引发市场担忧,其股价及旗下永续优先股STRC价格均出现下跌。文章分析了MSTR、比特币(BTC)与STRC深度绑定的结构,并与已崩溃的LUNA-UST算法稳定币系统进行比较。 核心结论是,尽管MSTR-STRC结构与LUNA-UST在表面上有相似之处(如价格锚定、高收益和潜在的螺旋下跌风险),但两者存在根本差异。STRC的价格稳定依赖于股息率调整和公司信用,而非UST那种直接影响LUNA供给的算法机制。STRC持有人在公司破产时对剩余资产拥有优先追索权,这提供了价格下限支撑,与UST可归零不同。此外,MSTR支付股息的能力依赖于其通过增发股票等方式持续融资,而非UST那种依赖外部协议收益的模式。 目前,MicroStrategy的美元储备仅能支撑约6个月的利息和股息支出,未来融资能力高度依赖市场对比特币的信心以及其股价表现。文章指出,只要比特币价格不跌破约2.63万美元,优先股股东本金损失风险较低;且公司净杠杆率仅11%,因债务导致破产的概率很小。 未来六个月被视为关键期。若比特币市场能在此期间触底回暖,MicroStrategy或能通过健康去杠杆重启其资本运作引擎。总体来看,MSTR-STRC发生类似LUNA-UST那种灾难性“死亡螺旋”的概率极低,但其可持续性仍取决于市场信心和未来半年的融资环境。

Foresight News1 小時前

MSTR 与 STRC 的「死亡螺旋」风险有多大?

Foresight News1 小時前

交易

現貨
合約
活动图片