The post 0G Foundation reports losing $520K to DeFi hack appeared on BitcoinEthereumNews.com. A cyberattack on the 0G Foundation has resulted in the theft of overThe post 0G Foundation reports losing $520K to DeFi hack appeared on BitcoinEthereumNews.com. A cyberattack on the 0G Foundation has resulted in the theft of over

0G Foundation reports losing $520K to DeFi hack

A cyberattack on the 0G Foundation has resulted in the theft of over half a million dollars’ worth of cryptocurrency, according to the company.

The foundation, which is building what it describes as the world’s first decentralized and open AI operating system, reported that an attacker stole 520,010 $0G tokens that were later bridged out and routed through Tornado Cash. Additional losses included 9.93 ether and roughly $4,200 in USDT, bringing the total confirmed loss to around $520,000 at the time of the theft.

Exploit traced to leaked private key

According to the foundation, the attacker exploited an emergency withdrawal function in the affected reward contract after gaining access to a private key that had been inadvertently stored on a compromised cloud server.

The key was linked to an Alibaba Cloud instance responsible for managing NFT status and reward updates.

“The attacker accessed a leaked private key from an AliCloud instance,” the foundation said, adding that storing plaintext private keys locally was a critical operational failure, saying, “this is a practice we now know must never happen again.”

Further investigation revealed that the breach was not limited to a single server. The foundation said multiple AliCloud instances were compromised after attackers exploited a critical vulnerability in the popular Next.js web framework, tracked as CVE-2025-66478, on December 5. Using internal IP addresses, the attacker was able to move laterally across systems, affecting a wide range of services.

These included the alignment service, a validator node, the Gravity NFT service, node sale infrastructure, and several ecosystem products such as Compute, Aiverse, Perpdex, and Ascend.

However, the foundation has maintained that no additional losses tied directly to user-held assets have been identified.

CertiK, a blockchain security firm, flagged the suspicious withdrawals from a 0G-related reward contract earlier, estimating losses in line with figures that were later confirmed by the foundation.

What’s next for 0G Foundation?

0G foundation claims that it has implemented immediate security measures. The organization has also patched the Next.js vulnerability and rebuilt affected services.

As part of what 0G said it is doing to prevent a repeat incident, the foundation claims it will migrate all key-bearing services to Trusted Execution Environments (TEEs), implement multi-signature wallet requirements for critical fund management, and adopt zero-trust security principles across its infrastructure.

The hack incident that 0G Foundation reported comes after it raised over $290 million in November 2024, including a $40 million seed funding round led by Hack VC with participation from Delphi Ventures, OKX Ventures, Samsung Next, Animoca Brands, among other investors. That raise made it $325 million in committed funding for the platform.

0G conceded that the breach is “a painful but necessary wake-up call.” It also promised to release a full post-mortem report, which its community can look forward to knowing more about how the foundation lost $520,000 to bad actors.

Join Bybit now and claim a $50 bonus in minutes

Source: https://www.cryptopolitan.com/0g-foundation-reports-520k-defi-hack/

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

BitGo expands its presence in Europe

BitGo expands its presence in Europe

The post BitGo expands its presence in Europe appeared on BitcoinEthereumNews.com. BitGo, global leader in digital asset infrastructure, announces a significant expansion of its presence in Europe. The company, through its subsidiary BitGo Europe GmbH, has obtained an extension of the license from BaFin (German Federal Financial Supervisory Authority), allowing it to offer regulated cryptocurrency trading services directly from Frankfurt, Germany. This move marks a decisive step for the European digital asset market, offering institutional investors the opportunity to access secure, regulated cryptocurrency trading integrated with advanced custody and management services. A comprehensive offering for European institutional investors With the extension of the license according to the MiCA (Markets in Crypto-Assets) regulation, initially obtained in May 2025, BitGo Europe expands the range of services available for European investors. Now, in addition to custody, staking, and transfer of digital assets, the platform also offers a spot trading service on thousands of cryptocurrencies and stablecoins. Institutional investors can now leverage BitGo’s OTC desk and a high-performance electronic trading platform, designed to ensure fast, secure, and transparent transactions. Aggregated access to numerous liquidity sources, including leading market makers and exchanges, allows for trading at competitive prices and high-quality executions. Security and Regulation at the Core of BitGo’s Strategy According to Brett Reeves, Head of European Sales and Go Network at BitGo, the goal is clear: “We are excited to strengthen our European platform and enable our clients to operate smoothly, competitively, and securely.§By combining our institutional custody solution with high-performance trading execution, clients will be able to access deep liquidity with the peace of mind that their assets will remain in cold storage, under regulated custody and compliant with MiCA.” The security of digital assets is indeed one of the cornerstones of BitGo’s offering. All services are designed to ensure that investors’ assets remain protected in regulated cold storage, minimizing operational and counterparty risks.…
Share
BitcoinEthereumNews2025/09/18 04:28
LayerZero Foundation initiates buyback of 50 million ZRO from early backers

LayerZero Foundation initiates buyback of 50 million ZRO from early backers

The post LayerZero Foundation initiates buyback of 50 million ZRO from early backers appeared on BitcoinEthereumNews.com. Key Takeaways LayerZero Foundation has initiated a buyback for 50 million ZRO tokens. The buyback targets early investors who supported LayerZero during its early development stages. LayerZero Foundation, the non-profit entity overseeing the development of the LayerZero blockchain interoperability protocol, today initiated a buyback of 50 million ZRO tokens from early backers. The buyback targets tokens held by initial investors who provided funding during the project’s early development phases. Token buybacks in crypto are typically used to reduce circulating supply and signal long-term confidence in the protocol. ZRO launched in June 2024 with an initial fully diluted valuation of around $3.0 billion. The foundation distributed 8.5% of the token supply through an airdrop on launch day to bootstrap community participation. LayerZero’s protocol connects over 50 blockchains and has facilitated more than 100 million cross-chain messages since launch, enhancing liquidity across decentralized applications. Source: https://cryptobriefing.com/layerzero-zro-token-buyback-early-backers-2025/
Share
BitcoinEthereumNews2025/09/23 10:36
Top political stories of 2025: The Villar family’s business and political setbacks

Top political stories of 2025: The Villar family’s business and political setbacks

Rappler's Dwight de Leon recaps the challenges faced in 2025 by one of the Philippines' wealthiest families
Share
Rappler2025/12/25 09:00