• Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021
No Result
View All Result
CryptoABC.net
No Result
View All Result

Polymarket Vendor Breach Opens Door for $3M Crypto Heist

June 26, 2026
in Australian Crypto News
Reading Time: 2min read
0 0
A A
0
Polymarket Vendor Breach Opens Door for $3M Crypto Heist
0
SHARES
0
VIEWS
ShareShareShareShareShare
  • A compromised third-party vendor let attackers inject malicious code into Polymarket’s front-end, draining about US$3 million (AU$4.35 million) in user funds.
  • On-chain investigators at Bubblemaps found fewer than 15 accounts were affected, with the attackers converting stolen funds into roughly 1,893 ETH.
  • Polymarket pledged to refund impacted customers in full and said the front-end issue had been contained, but declined to name the breached vendor.

Polymarket confirmed Thursday that a hack on one of its third-party vendors allowed attackers to inject malicious code into the prediction market’s front-end, draining roughly US$3 million (AU$4.35 million) in user funds before the company contained the breach.

The attack did not target Polymarket’s smart contracts. Instead, the compromised vendor served a malicious script to some users’ browsers, which accessed their wallets and drained pUSD, the platform’s USDC-backed stablecoin used to settle all trades. 

This morning we discovered a 3rd party vendor had been compromised, injecting a malicious script into our frontend for some users. We’ve contained it & removed the affected dependency. We’re contacting impacted users & refunding them in full.

— Polymarket Traders (@PolymarketTrade) June 25, 2026

The attackers then bridged the stolen funds from Polygon to Ethereum and swapped them into about 1,893 ETH, consolidating the proceeds in a single wallet in a common move to obscure the trail and liquidate quickly. 

Because the malicious code lived in the website rather than the blockchain, affected users had little way to detect that the interface they trusted had been tampered with.

Related: Senate Democrats Demand Probe Into Trump Family Crypto Venture’s UAE Links

Damage Contained

On-chain investigators at Bubblemaps concluded the damage was largely contained, with fewer than 15 user accounts affected. 

Polymarket said it would refund impacted customers in full and confirmed the front-end issue had been contained and the affected dependency removed. The limited account count suggests the malicious script reached only a subset of users before the company caught and pulled it.

The company declined to name the compromised vendor or comment further, leaving open questions about how the supply-chain weakness was introduced and whether other platforms relying on the same provider could be exposed.

The breach was Polymarket’s second in two months. In May, a wallet exploit involving compromised employee credentials led to about US$700,000 (AU$1.02 million) in losses, attributed to a private-key compromise rather than a website flaw.

Together, the two episodes point to operational and third-party risk rather than weaknesses in the underlying protocol. 

Front-end and supply-chain attacks bypass audited smart contracts entirely, striking the website layer and outside dependencies that users rarely scrutinise, a vector that has become an increasingly attractive target as on-chain code itself grows harder to crack. 

Read more: Australian Crypto Unicorn Immutable Scales Back Game Development in AI Pivot  

Credit: Source link

ShareTweetSendPinShare
Previous Post

Trump curbs OpenAI launch as Polymarket prices Newsom at 20.7%

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

You might also like

Why Is Crypto Up Today? – October 15, 2025

Bitcoin Network Activity Erupts After Iran Peace Deal: Is The Bottom In For BTC?

June 20, 2026
XRP News: Why Ripple’s 9-Year Clock Divides the Community

XRP News: Why Ripple’s 9-Year Clock Divides the Community

June 24, 2026
BOJ hikes to 1% as Polymarket sees 70% odds the Fed makes zero 2026 cuts

Trump approval holds at 37% as Polymarket lifts July Fed hold to 77.5%

June 21, 2026
You Will Not Like Where Grok AI Predicts Bitcoin Going in The Next 30 Days

You Will Not Like Where Grok AI Predicts Bitcoin Going in The Next 30 Days

June 25, 2026
CGV Leads Expansion in Bitcoin Wallet Sector with UniSat Investment

Pudgy Penguins Expands Retail Reach With Target Card Launch

June 21, 2026
Bitcoin Has Entered A Rare Zone Against Gold, Fidelity Says

Ledn Adds Tether Gold Collateral For Crypto Loans

June 19, 2026
CryptoABC.net

This is an Australian online news/education portal that aims to provide the latest crypto news, real-time updates, education and reviews within Australia and around the world. Feel free to get in touch with us!

What's New Here!

Polymarket Vendor Breach Opens Door for $3M Crypto Heist

Polymarket Vendor Breach Opens Door for $3M Crypto Heist

June 26, 2026
Trump-Iran war deal nudges Israel PM market, Eizenkot leads at 38.55%

Trump curbs OpenAI launch as Polymarket prices Newsom at 20.7%

June 26, 2026

Subscribe Now

  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 cryptoabc.net - All rights reserved!

No Result
View All Result
  • Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021

© 2021 cryptoabc.net - All rights reserved!

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter CoinGecko Free Api Key to get this plugin works.