SecondFi wallet service on Cardano exploited for 16M ADA due to wallet-generation software flaw, affecting 178 wallets.
Security & Exploits ·
A wallet service on Cardano called SecondFi has been exploited, resulting in the loss of 16 million ADA across 178 wallets. The incident was disclosed on X, with the vulnerability traced to a flaw in the service's wallet-generation software.
SecondFi is described as one of Cardano's established wallet services, built by one of Cardano's three founding entities. The wallet-generation flaw allowed attackers to compromise multiple accounts, though the exact mechanics of the exploit and timeline remain unclear from available reports.
It is not yet known whether SecondFi has issued a public statement, whether a fix has been deployed, or whether the service intends to compensate affected users. The scope of ongoing vulnerability and the full extent of the impact on the broader Cardano ecosystem also remain unconfirmed.