CrossCurve Bridge Exploit Exposes $3 Million Loss in Cross-Chain Security Breach

TheNewsCrypto發佈於 2026-02-02更新於 2026-02-02

文章摘要

CrossCurve, a cross-chain liquidity and bridge protocol, suffered a security breach resulting in approximately $3 million in losses. The exploit was caused by a missing security check in its smart contract, allowing attackers to send fake but valid-looking messages and drain tokens. The incident resembles the 2022 Nomad bridge hack and highlights that even protocols with multiple validation systems (like Axelar and LayerZero) remain vulnerable to single coding errors. CrossCurve and its backer, Curve Finance founder Michael Egorov, advise users to pause all interactions with the protocol, review exposures to CrossCurve-related pools, and await official updates.

CrossCurve, a cross-chain liquidity and bridge protocol, has confirmed that its bridge system was hacked, resulting in a loss of around $3 million. This affected multiple blockchains and is now under investigation. CrossCurve warns the users to pause all activity interacting with the protocol.

How Attackers Hacked the Bridge system

The missing security check from the CrossCurve smart contract was the major reason for this hack. The Smart Contract needs to verify the messages sent between the blockchains, but one of the verification steps was incommpleete which allowed the attackers to trick the system by sending fake messages that look valid to the system. This allowed the attacker to hack the token from the contract.

Security experts say that this exploit resembles the Nomad bridge hack in 2022, which drained around $190 million. They raised concerns that basic security mistakes are happening years later despite several past warnings.

CrossCurve has promoted its bridge as one of the safer and more secure bridges than others because it relies on multiple independent validation systems, such as Axelar, LayerZero, and its own oracle network. But this incident shows that despite multiple systems, a single coding mistake can still be exploited.

What must users do after this exploit?

The project, backed by Michael Egorov, the founder of Curve Finance, has reportedly raised around $7 million from investors. After the incident, Curve Finance warns users to review their positions and consider removing those who have exposure to CrossCurve-related pools.

Right now, the users should not interact with the CrossCurve until further notice and review any exposure to CrossCurve-related pools. They should look for any official updates from the team and be cautious with the cross-chain bridges.

Highlighted Crypto News:

U.S. Treasury Sanctions UK Crypto Exchanges for Iran Sanctions Evasion

TagsCross-ChainCryptocurrency

相關問答

QWhat was the primary cause of the CrossCurve Bridge security breach?

AThe primary cause was a missing security check in the CrossCurve smart contract, specifically an incomplete verification step for messages sent between blockchains, which allowed attackers to send fake but valid-looking messages.

QHow much was lost in the CrossCurve Bridge exploit?

AApproximately $3 million was lost in the exploit.

QWhich previous bridge hack does this incident resemble, according to security experts?

ASecurity experts stated that this exploit resembles the Nomad bridge hack in 2022, which resulted in a loss of around $190 million.

QWhat should users do in response to the CrossCurve exploit, as warned by the protocol?

AUsers should pause all activity interacting with the CrossCurve protocol, review their positions, and consider removing any exposure to CrossCurve-related pools until further official notice.

QWhat validation systems did CrossCurve promote as making its bridge secure before the incident?

ACrossCurve promoted its reliance on multiple independent validation systems, including Axelar, LayerZero, and its own oracle network, to claim it was one of the safer bridges.

你可能也喜歡

加密法案 Clarity 闯关记:美国两党妥协之路布满荆棘

美国国会两党正推进加密市场结构立法“Clarity法案”,但其立法进程充满挑战。今年1月,因Coinbase CEO的干预,参议院银行委员会已达成的两党协议被推翻。四个月后,法案凭借两党在“收益”问题上的妥协重回议程,但“伦理条款”成为民主党的核心诉求。5月委员会投票时,仅两位民主党参议员支持,并明确后续支持取决于伦理问题的解决。最终该法案在参议院农业委员会以党派投票通过,未获任何民主党人支持。 7月,共和党人急于推动全体投票,但伦理条款争议扩大,部分共和党人也转向支持大银行立场,执法机构则对开发者保护条款表示反对。非法金融和消费者保护仍是焦点,两位资深参议员分别强调了法案的执法工具价值和谨慎立法的必要性。 目前,两党虽认同需要市场结构立法,但在关键条款上难以妥协。近期有议员与白宫会面讨论伦理条款,但民主党人对其版本不满。行业期待两院委员会的和解文本,但其能否获得足够两党支持仍存疑。 可能的路径包括:8月休会前进行象征性投票;争取在2026年前完成立法;或达成包含伦理等条款的妥协框架。尽管障碍重重,加密行业仍需通过传统的逐票争取方式,在漫长立法过程中寻求突破。

Foresight News51 分鐘前

加密法案 Clarity 闯关记:美国两党妥协之路布满荆棘

Foresight News51 分鐘前

交易

現貨
活动图片