

Odaily Odaily News, Humility Protocol released a security incident update on the X platform, stating that yesterday the H token suffered a coordinated attack on the Ethereum and BSC chains. It has been confirmed that over $36 million worth of assets were stolen and dumped.
Preliminary investigation indicates the incident originated from an employee's computer being compromised, leading to the leakage of private keys for the multi-signature wallet controlling the Hyperlane Bridge ProxyAdmin. Specifically, the attacker obtained 3 out of 6 private keys from the Gnosis Safe on the Ethereum chain, transferred ownership of the ProxyAdmin to a wallet under their control, and upgraded the bridge contract to a malicious implementation. Subsequently, they transferred approximately 141.2 million H tokens in a single transaction.
Simultaneously, the attacker also gained control of 3 out of 5 private keys from the Safe wallet on the BSC chain. Using the same method, they took over the ProxyAdmin and deployed a malicious contract with an unlimited minting function, minting 200 million H tokens to their own wallet in two separate transactions.
Humility stated that it has suspended all deposits and withdrawals on the affected bridge service and is collaborating with exchanges and other relevant partners to mitigate losses. At the same time, it is cooperating with the police investigation and attempting to recover part of the stolen funds.

According to on-chain analyst EmberCN's monitoring, the "private key leak" has allowed the minting and dumping of H to continue for 13 hours. The so-called "hacker" can still mint H on the BSC chain and dump it, draining every last cent from the liquidity pool. The hacker has minted 300 million additional H and sold a total of approximately 450 million tokens, cashing out $34 million (ETH+BNB). The H liquidity pool on BSC has been drained to just $13. The price of H has plummeted 99.9% to $0.0009. Meanwhile, the perpetual contract price on the CEX is $0.09, a 100x discrepancy. In essence, the two have completely de-pegged and become unrelated tokens.


Odaily reported that according to Lookonchain monitoring, a Humanity hacker has minted an additional 100 million H tokens on the BSC chain. The hacker has already obtained 18,510 ETH (worth $30.83 million) and 1,548 BNB (worth $924,000) by selling H tokens. The hacker currently still holds 111.36 million H tokens (worth $14 million) for sale. On-chain liquidity is nearly depleted.

Odaily News: According to Onchain Lens monitoring, despite the hack on Humanity Protocol, a newly created wallet has received 62.68 million H tokens worth $7.65 million from BitGo. The wallet is suspected to belong to VC Framework Ventures, though this has not yet been verified.

Odaily reported that in response to the "Humanity hack incident," on-chain detective ZachXBT posted that this "incident" was very likely fabricated. He fundamentally does not believe the team's corresponding explanation, stating it is merely an excuse concocted by those with ill intentions to extricate themselves.
Prior news reported that ZachXBT stated the Humanity theft has not yet been confirmed as either a security attack or the project team's malicious dumping, and the sell-off of H tokens originated from a DEX rather than a CEX.

Odaily Odaily reports: In response to the "Humanity stolen over $31 million" incident, on-chain detective ZachXBT stated, "It is uncertain whether this is a hacker theft or malicious action by the project team. Looking at the candlestick chart, given the concentrated supply, the H team likely collaborated with an active market maker. However, all H tokens were sold off on decentralized exchanges (on-chain), not on centralized exchanges."

Odaily Planet Daily News: Terence, the founder of Humanity, has confirmed that the private key of a member of the Humanity Foundation has been leaked. As a precautionary measure, please refrain from interacting with the cross-chain bridge or any liquidity pools until security is confirmed. The foundation is working with security experts and exchange partners to address the issue and will provide ongoing updates.
Previous Report: The outflow of funds from addresses associated with the Humanity Protocol continues, with losses now exceeding $31 million.

Odaily星球日报讯 据 Onchain Lens 监测,Humanity Protocol 遭黑客攻击,损失超 3100 万美元。资金流失仍在持续,黑客正将 H 兑换为 ETH。

Odaily Odaily reports, OKX market data shows that H has fallen below 0.08 USDT, currently trading at 0.7946 USDT, with a 24-hour drop of 89.34%.
Previous news: Loss exceeds $19 million, Humanity Protocol-linked wallet suspected to be under attack.

Odaily星球日报讯 与 Humanity Protocol 关联或交互过的钱包正在被入侵,目前已有超过 17 个持有 H 代币的钱包被盗,总损失超过 1900 万美元。被盗原因尚不清楚,攻击模式显示受影响钱包可能存在与 Humanity Protocol 相关的共同风险敞口。







