The post 402bridge private key leaks, 227 wallets drained in minutes appeared on BitcoinEthereumNews.com. 402bridge, the cross-layer protocol that builds upon the AI agent payments system x402, has been hacked, resulting in the theft of $17,000 in USDC from more than 200 victims. That’s according to crypto analyst PeckShield, which encouraged 402bridge users to revoke their allowances.  Pseudonymous X user “Ye in Web3” claims that after 402bridge’s contract was deployed, the private keys were leaked. They were then used to transfer ownership of the contract and drain users who had previously approved the contract to spend funds. In just 28 minutes, 227 users were affected. 402bridge added that the private leak led to the compromise of more than a dozen of the team’s test and main wallets. The protocol previously confirmed that private keys are stored on a server, which may have exposed admin privileges.  Due to this private key leak, more than a dozen of the team’s test and main wallets have also been compromised (ex. screenshot below). We have promptly reported the incident to law enforcement authorities and will keep the community informed with timely updates as the… pic.twitter.com/AZfgd1yWKG — 402bridge (@402bridge) October 28, 2025 Read more: ‘AI’ crypto trading agent, aixbt, hacked for $100K It said, “If a hacker obtains the private key, they can take over those privileges and reassign user funds to carry out an attack.” However, Ye in Web3 was also suspicious that the whole affair may be a rug pull coordinated by 402bridge. Specifically, they questioned the validity of 402bridge’s shared screenshot, and asked why the contract would include a feature allowing the contract owner to drain user funds.  For its part, 402bridge claims to have reported the incident to law enforcement authorities and is in the process of investigating and sharing details about the attack.  The founder of crypto security firm SlowMist, Yu Xian, also claimed… The post 402bridge private key leaks, 227 wallets drained in minutes appeared on BitcoinEthereumNews.com. 402bridge, the cross-layer protocol that builds upon the AI agent payments system x402, has been hacked, resulting in the theft of $17,000 in USDC from more than 200 victims. That’s according to crypto analyst PeckShield, which encouraged 402bridge users to revoke their allowances.  Pseudonymous X user “Ye in Web3” claims that after 402bridge’s contract was deployed, the private keys were leaked. They were then used to transfer ownership of the contract and drain users who had previously approved the contract to spend funds. In just 28 minutes, 227 users were affected. 402bridge added that the private leak led to the compromise of more than a dozen of the team’s test and main wallets. The protocol previously confirmed that private keys are stored on a server, which may have exposed admin privileges.  Due to this private key leak, more than a dozen of the team’s test and main wallets have also been compromised (ex. screenshot below). We have promptly reported the incident to law enforcement authorities and will keep the community informed with timely updates as the… pic.twitter.com/AZfgd1yWKG — 402bridge (@402bridge) October 28, 2025 Read more: ‘AI’ crypto trading agent, aixbt, hacked for $100K It said, “If a hacker obtains the private key, they can take over those privileges and reassign user funds to carry out an attack.” However, Ye in Web3 was also suspicious that the whole affair may be a rug pull coordinated by 402bridge. Specifically, they questioned the validity of 402bridge’s shared screenshot, and asked why the contract would include a feature allowing the contract owner to drain user funds.  For its part, 402bridge claims to have reported the incident to law enforcement authorities and is in the process of investigating and sharing details about the attack.  The founder of crypto security firm SlowMist, Yu Xian, also claimed…

402bridge private key leaks, 227 wallets drained in minutes

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

402bridge, the cross-layer protocol that builds upon the AI agent payments system x402, has been hacked, resulting in the theft of $17,000 in USDC from more than 200 victims.

That’s according to crypto analyst PeckShield, which encouraged 402bridge users to revoke their allowances. 

Pseudonymous X user “Ye in Web3” claims that after 402bridge’s contract was deployed, the private keys were leaked. They were then used to transfer ownership of the contract and drain users who had previously approved the contract to spend funds.

In just 28 minutes, 227 users were affected.

402bridge added that the private leak led to the compromise of more than a dozen of the team’s test and main wallets.

The protocol previously confirmed that private keys are stored on a server, which may have exposed admin privileges. 

Read more: ‘AI’ crypto trading agent, aixbt, hacked for $100K

It said, “If a hacker obtains the private key, they can take over those privileges and reassign user funds to carry out an attack.”

However, Ye in Web3 was also suspicious that the whole affair may be a rug pull coordinated by 402bridge.

Specifically, they questioned the validity of 402bridge’s shared screenshot, and asked why the contract would include a feature allowing the contract owner to drain user funds. 

For its part, 402bridge claims to have reported the incident to law enforcement authorities and is in the process of investigating and sharing details about the attack. 

The founder of crypto security firm SlowMist, Yu Xian, also claimed that “internal sabotage cannot be ruled out.” One such red flag he highlighted was the fact that 402bridge had already encountered a theft two days after it was registered

Xian also noted that this doesn’t imply collective wrongdoing by the whole 402bridge team, as “it’s not a typical rugpull.”

According to Xian, “this is the first publicly known theft case related to 402 protocol services.”

What is x402?

x402 is a payment protocol developed earlier this year by Coinbase that would allow AI agents, as well as humans, to pay for services without requiring an account or any authentication. 

Similar to the Hypertext Transfer Protocol (HTTP) 404 that appears as an error when content isn’t found, x402 is named after HTTP 402, another error that displays “payment required.”

This HTTP wasn’t widely adopted as it was made to be used in a future where microtransactions or digital cash payments made through browsers are the norm. Coinbase claims to have revived the system.

Read more: AI Agent BadCoin fumbles BSC launch, anti-sniping software flags traders

The use cases of its x402 system include:

  • API services paid per request
  • Allowing AI agents to autonomously pay for API access
  • Paywalls for digital content
  • Proxy services that aggregate and resell API capabilities
  • Microservices and tooling monetized via microtransactions

The streamlining of payment services within AI also made ground today when Sam Altman’s OpenAI announced that it had integrated PayPal into its AI software ChatGPT. 

Users will be allowed to search for any services or goods through the AI program and use their linked PayPal wallet to make a purchase. 

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

Source: https://protos.com/402bridge-private-key-leaks-227-wallets-drained-in-minutes/

Market Opportunity
CROSS Logo
CROSS Price(CROSS)
$0.07323
$0.07323$0.07323
-0.23%
USD
CROSS (CROSS) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge!

IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge!

The post IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge! appeared on BitcoinEthereumNews.com. Crypto News 17 September 2025 | 18:00 Discover why BlockDAG’s upcoming Awakening Testnet launch makes it the best crypto to buy today as Story (IP) price jumps to $11.75 and Hyperliquid hits new highs. Recent crypto market numbers show strength but also some limits. The Story (IP) price jump has been sharp, fueled by big buybacks and speculation, yet critics point out that revenue still lags far behind its valuation. The Hyperliquid (HYPE) price looks solid around the mid-$50s after a new all-time high, but questions remain about sustainability once the hype around USDH proposals cools down. So the obvious question is: why chase coins that are either stretched thin or at risk of retracing when you could back a network that’s already proving itself on the ground? That’s where BlockDAG comes in. While other chains are stuck dealing with validator congestion or outages, BlockDAG’s upcoming Awakening Testnet will be stress-testing its EVM-compatible smart chain with real miners before listing. For anyone looking for the best crypto coin to buy, the choice between waiting on fixes or joining live progress feels like an easy one. BlockDAG: Smart Chain Running Before Launch Ethereum continues to wrestle with gas congestion, and Solana is still known for network freezes, yet BlockDAG is already showing a different picture. Its upcoming Awakening Testnet, set to launch on September 25, isn’t just a demo; it’s a live rollout where the chain’s base protocols are being stress-tested with miners connected globally. EVM compatibility is active, account abstraction is built in, and tools like updated vesting contracts and Stratum integration are already functional. Instead of waiting for fixes like other networks, BlockDAG is proving its infrastructure in real time. What makes this even more important is that the technology is operational before the coin even hits exchanges. That…
Share
BitcoinEthereumNews2025/09/18 00:32
WaPo profile reveals Trump’s bizarre nickname for top health official

WaPo profile reveals Trump’s bizarre nickname for top health official

The Washington Post on Friday published a profile of an unknown political advisor to President Donald Trump's Department of Health and Human Services. And in that
Share
Alternet2026/03/13 22:19
Quantexa Launches Platform to Reduce Stablecoin Strain on Small Banks

Quantexa Launches Platform to Reduce Stablecoin Strain on Small Banks

The post Quantexa Launches Platform to Reduce Stablecoin Strain on Small Banks appeared on BitcoinEthereumNews.com. In brief Quantexa designed an AML solution for mid-size and community banks. It can help them identify crypto-powered crime, according to Quantexa’s Christopher Bagnall. Stablecoin legislation is expected to unlock new competitors. Quantexa, a data and analytics software firm, introduced a product on Wednesday that’s intended to help smaller financial institutions fight crypto-powered crime in the U.S. The London-based company is now offering a cloud-based, anti-money laundering (AML) solution through Microsoft’s cloud computing platform, which is “designed specifically for U.S. mid-size and community banks,” according to a press release. Quantexa said the pre-packaged product allows teams investigating financial crimes to make faster decisions with less overhead while maintaining accuracy, noting that banks are held to the same compliance standards across the U.S., despite what resources they may have. The product, dubbed Cloud AML, is also meant to reduce “false positives.”  A company survey published earlier this month found that 36% of AML professionals think digital assets will have the biggest impact on the AML industry within the next five years. The product’s debut follows the passage of stablecoin legislation in the U.S. this summer that’s expected to unlock competition from the likes of Bank of Ameerica and Citigroup. With federal rules in place, stablecoins are expected to become more mainstream. Some banks are taking a forward-looking approach toward their products, but most are more concerned about the ability to monitor inflows and outflows within the context of financial crime, Chris Bagnall, Quantexa’s head of financial crimes solutions for North America, told Decrypt. “They’re just trying to find a way to monitor it, and that’s pretty much it,” he said. “Only the most innovative banks, which is a small handful in this space, are focused on making it a business.” Banks may be able to see that a customer received or…
Share
BitcoinEthereumNews2025/09/18 11:28