PaymentProcessor V2 incident recovery underway; 9.04 WETH identified in compromised wallet pending return to affected users.
Security & Exploits ·
A PaymentProcessor V2 exploit that occurred on September 25, 2026 has triggered a coordinated recovery effort. According to recovery coordinators, approximately 9.04 WETH held in a wallet on mainnet is tied to the incident and remains available for return to affected users. The exploit initially compromised 29,048 NFTs; to date, 11,019 assets representing 37.9 percent of the rescued total have been returned, with 35 percent of all rescued assets already reclaimed.
Recovery coordinators are seeking cooperation to return the identified WETH and reconcile original losses across affected owners. A recovery portal at nftsaresafu.xyz has been established to help users reclaim assets, displaying specific token IDs and contract addresses for compromised items including Bored Ape Yacht Club, Otherside Koda, and Otherdeed NFTs. Donations and further support can be directed to nftsaresafu.eth.
It remains unclear whether the 9.04 WETH represents the entirety of recoverable funds or whether additional assets tied to the exploit remain unaccounted for. The timeline and mechanisms for distributing returned assets have not been detailed in available recovery communications.