Key Takeaways: Web3 platforms lost $3.1 billion in H1 2025, already surpassing full-year 2024 losses. Access control failures were the leading cause, followed by phishing and smart contract bugs. AI-related attack vectors rose by 1,025%, showing risks in inference layers and APIs. Web3 projects lost $3.1 billion to exploits and scams in the first half of 2025, according to the Hacken 2025 Half-Year Web3 Security Report published July 24 . 🚨 2025 is already the most expensive year in Web3 security, and we’re only halfway through. $3.1B lost. Social engineering. AI-driven exploits. Protocol design flaws. Our Half-Year Report breaks it all down and shows how to defend against what’s next: https://t.co/6x8JDjkmJT pic.twitter.com/hQjxTvpjlN — Hacken🇺🇦 (@hackenclub) July 24, 2025 The report states that the amount lost in H1 this year has already exceeded the total losses recorded across all of 2024. It attributes $1.83 billion of this amount to access control exploits, the majority of which occurred in Q1. AI-Related Exploits Explode by 10x in Web3 Phishing and social engineering attacks accounted for $600 million, a sharp increase from the previous year. Another $263 million was lost due to smart contract vulnerabilities, marking DeFi’s most damaging quarter since early 2023. Hacken identified a surge in AI-related exploits, with incident volume rising by 1,025% compared to H2 2024. These cases stemmed from issues such as insecure API design, improper model access restrictions, and weak user input filtering in AI inference layers. The single largest incident in the period was the $290 million Munchables breach, followed by $136 million lost in the Pike Finance series of attacks. The Uniswap V4 ecosystem also recorded its first major hook-related exploit, resulting in a $12 million loss. According to the report, Ethereum accounted for 61.4% of total losses, while BNB Chain and Arbitrum represented 20.2% and 11.4%, respectively. Exploits on Ethereum L2s and alt-L1s made up the remainder. Security Enhancements in Exigent Need “2025 has been a wake-up call,” said Hacken Co-Founder and CBDO Yevheniia Broshevan. “As blockchain reaches enterprise scale and regulations advance, cybersecurity becomes a core business function.” The report recommends continuous monitoring and automated defense systems to address rising threats. It also warns that standard auditing remains insufficient given the increased complexity of integrated systems and AI models in Web3 environments. DeFi protocols made up nearly 69% of all incidents tracked in H1 2025. CeFi incidents were fewer but tended to result in higher individual losses. The report also noted a growing overlap between financial and infrastructure attack vectors. The rise in AI-driven exploits exposes the challenge facing the crypto industry: the rapid adoption of complex technologies outpacing the development of security frameworks. At the same time, geopolitical actors and financially motivated groups have begun to treat blockchain infrastructure as high-value targets. The convergence of traditional cybersecurity threats with on-chain vulnerabilities may require new regulatory coordination between Web3-native firms, national agencies, and cybersecurity vendors. Frequently Asked Questions (FAQs) How might regulations like MiCA or the EU AI Act influence future Web3 security practices? These frameworks may impose formal governance, model validation requirements, and real-time monitoring standards that force protocols to integrate cybersecurity by design rather than after deployment. Are smaller protocols more vulnerable to these complex attacks? Yes. The report implies that limited technical resources and overreliance on third-party tooling leave smaller teams exposed, especially as AI integrations expand without clear defensive standards. Is there any indication of coordination between threat actors? While not explicitly detailed, the increase in sophisticated, cross-layer attacks suggests potential collaboration or tooling exchanges between financially motivated hackers and more organized adversarial groups.Key Takeaways: Web3 platforms lost $3.1 billion in H1 2025, already surpassing full-year 2024 losses. Access control failures were the leading cause, followed by phishing and smart contract bugs. AI-related attack vectors rose by 1,025%, showing risks in inference layers and APIs. Web3 projects lost $3.1 billion to exploits and scams in the first half of 2025, according to the Hacken 2025 Half-Year Web3 Security Report published July 24 . 🚨 2025 is already the most expensive year in Web3 security, and we’re only halfway through. $3.1B lost. Social engineering. AI-driven exploits. Protocol design flaws. Our Half-Year Report breaks it all down and shows how to defend against what’s next: https://t.co/6x8JDjkmJT pic.twitter.com/hQjxTvpjlN — Hacken🇺🇦 (@hackenclub) July 24, 2025 The report states that the amount lost in H1 this year has already exceeded the total losses recorded across all of 2024. It attributes $1.83 billion of this amount to access control exploits, the majority of which occurred in Q1. AI-Related Exploits Explode by 10x in Web3 Phishing and social engineering attacks accounted for $600 million, a sharp increase from the previous year. Another $263 million was lost due to smart contract vulnerabilities, marking DeFi’s most damaging quarter since early 2023. Hacken identified a surge in AI-related exploits, with incident volume rising by 1,025% compared to H2 2024. These cases stemmed from issues such as insecure API design, improper model access restrictions, and weak user input filtering in AI inference layers. The single largest incident in the period was the $290 million Munchables breach, followed by $136 million lost in the Pike Finance series of attacks. The Uniswap V4 ecosystem also recorded its first major hook-related exploit, resulting in a $12 million loss. According to the report, Ethereum accounted for 61.4% of total losses, while BNB Chain and Arbitrum represented 20.2% and 11.4%, respectively. Exploits on Ethereum L2s and alt-L1s made up the remainder. Security Enhancements in Exigent Need “2025 has been a wake-up call,” said Hacken Co-Founder and CBDO Yevheniia Broshevan. “As blockchain reaches enterprise scale and regulations advance, cybersecurity becomes a core business function.” The report recommends continuous monitoring and automated defense systems to address rising threats. It also warns that standard auditing remains insufficient given the increased complexity of integrated systems and AI models in Web3 environments. DeFi protocols made up nearly 69% of all incidents tracked in H1 2025. CeFi incidents were fewer but tended to result in higher individual losses. The report also noted a growing overlap between financial and infrastructure attack vectors. The rise in AI-driven exploits exposes the challenge facing the crypto industry: the rapid adoption of complex technologies outpacing the development of security frameworks. At the same time, geopolitical actors and financially motivated groups have begun to treat blockchain infrastructure as high-value targets. The convergence of traditional cybersecurity threats with on-chain vulnerabilities may require new regulatory coordination between Web3-native firms, national agencies, and cybersecurity vendors. Frequently Asked Questions (FAQs) How might regulations like MiCA or the EU AI Act influence future Web3 security practices? These frameworks may impose formal governance, model validation requirements, and real-time monitoring standards that force protocols to integrate cybersecurity by design rather than after deployment. Are smaller protocols more vulnerable to these complex attacks? Yes. The report implies that limited technical resources and overreliance on third-party tooling leave smaller teams exposed, especially as AI integrations expand without clear defensive standards. Is there any indication of coordination between threat actors? While not explicitly detailed, the increase in sophisticated, cross-layer attacks suggests potential collaboration or tooling exchanges between financially motivated hackers and more organized adversarial groups.

Hacken Report Flags $3.1B Web3 Meltdown, 1,025% Spike in AI Attacks

2025/07/25 00:17
3 min read

Key Takeaways:

  • Web3 platforms lost $3.1 billion in H1 2025, already surpassing full-year 2024 losses.
  • Access control failures were the leading cause, followed by phishing and smart contract bugs.
  • AI-related attack vectors rose by 1,025%, showing risks in inference layers and APIs.

Web3 projects lost $3.1 billion to exploits and scams in the first half of 2025, according to the Hacken 2025 Half-Year Web3 Security Report published July 24.

The report states that the amount lost in H1 this year has already exceeded the total losses recorded across all of 2024. It attributes $1.83 billion of this amount to access control exploits, the majority of which occurred in Q1.

Phishing and social engineering attacks accounted for $600 million, a sharp increase from the previous year. Another $263 million was lost due to smart contract vulnerabilities, marking DeFi’s most damaging quarter since early 2023.

Hacken identified a surge in AI-related exploits, with incident volume rising by 1,025% compared to H2 2024. These cases stemmed from issues such as insecure API design, improper model access restrictions, and weak user input filtering in AI inference layers.

The single largest incident in the period was the $290 million Munchables breach, followed by $136 million lost in the Pike Finance series of attacks. The Uniswap V4 ecosystem also recorded its first major hook-related exploit, resulting in a $12 million loss.

According to the report, Ethereum accounted for 61.4% of total losses, while BNB Chain and Arbitrum represented 20.2% and 11.4%, respectively. Exploits on Ethereum L2s and alt-L1s made up the remainder.

Security Enhancements in Exigent Need

“2025 has been a wake-up call,” said Hacken Co-Founder and CBDO Yevheniia Broshevan. “As blockchain reaches enterprise scale and regulations advance, cybersecurity becomes a core business function.”

The report recommends continuous monitoring and automated defense systems to address rising threats. It also warns that standard auditing remains insufficient given the increased complexity of integrated systems and AI models in Web3 environments.

DeFi protocols made up nearly 69% of all incidents tracked in H1 2025. CeFi incidents were fewer but tended to result in higher individual losses. The report also noted a growing overlap between financial and infrastructure attack vectors.

The rise in AI-driven exploits exposes the challenge facing the crypto industry: the rapid adoption of complex technologies outpacing the development of security frameworks.

At the same time, geopolitical actors and financially motivated groups have begun to treat blockchain infrastructure as high-value targets. The convergence of traditional cybersecurity threats with on-chain vulnerabilities may require new regulatory coordination between Web3-native firms, national agencies, and cybersecurity vendors.

Frequently Asked Questions (FAQs)

How might regulations like MiCA or the EU AI Act influence future Web3 security practices?

These frameworks may impose formal governance, model validation requirements, and real-time monitoring standards that force protocols to integrate cybersecurity by design rather than after deployment.

Are smaller protocols more vulnerable to these complex attacks?

Yes. The report implies that limited technical resources and overreliance on third-party tooling leave smaller teams exposed, especially as AI integrations expand without clear defensive standards.

Is there any indication of coordination between threat actors?

While not explicitly detailed, the increase in sophisticated, cross-layer attacks suggests potential collaboration or tooling exchanges between financially motivated hackers and more organized adversarial groups.

Market Opportunity
Threshold Logo
Threshold Price(T)
$0.006526
$0.006526$0.006526
+1.52%
USD
Threshold (T) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Exploring Market Buzz: Unique Opportunities in Cryptocurrencies

Exploring Market Buzz: Unique Opportunities in Cryptocurrencies

In the ever-evolving world of cryptocurrencies, recent developments have sparked significant interest. A closer look at pricing forecasts for Cardano (ADA) and rumors surrounding a Solana (SOL) ETF, coupled with the emergence of a promising new entrant, Layer Brett, reveals a complex market dynamic. Cardano's Prospects: A Closer Look Cardano, a stalwart in the blockchain space, continues to hold its ground with its research-driven development strategy. The latest price predictions for ADA suggest potential gains, predicting a double or even quadruple increase in its valuation. Despite these optimistic forecasts, the allure of exponential gains drives traders toward more speculative ventures. The Buzz Around Solana ETF The potential introduction of a Solana ETF has the crypto community abuzz, potentially catapulting SOL prices to new heights. As investors await regulatory decisions, the impact of such an ETF on Solana's value could be substantial, potentially reaching up to $300. However, as with Cardano, the substantial market capitalization of Solana may temper its growth potential. Why Layer Brett is Gaining Traction Amidst established names, a new contender, Layer Brett, has started to capture the market's attention with its early presale stages. Offering a low entry price of just $0.0058 and promising over 700% in staking rewards, Layer Brett presents a tempting proposition for those looking to maximize returns. Comparative Analysis: ADA, SOL, and $LBRETT While both ADA and SOL offer stable investment choices with reliable growth, Layer Brett emerges as a high-risk, high-reward option that could potentially offer significantly higher returns due to its nascent market position and aggressive economic model. Initial presale pricing lets investors get in on the ground floor. Staking rewards currently exceed 690%, a persuasive incentive for early adopters. Backed by Ethereum's Layer 2 for enhanced transaction speed and reduced costs. A community-focused $1 million giveaway to further drive engagement and investor interest. Predicted by some analysts to offer up to 50x returns in coming years. Shifting Sands: Investor Movements As the crypto market landscape shifts, many investors, including those traditionally holding ADA and SOL, are beginning to diversify their portfolios by turning to high-potential opportunities like Layer Brett. The combination of strategic presale pricing and significant staking rewards is creating a momentum of its own. Act Fast: Time-Sensitive Opportunities As September progresses, opportunities to capitalize on these low entry points and high yield offerings from Layer Brett are likely to diminish. With increasing attention and funds being directed towards this new asset, the window to act is closing quickly. Invest in Layer Brett now to secure your position before the next price hike and staking rewards reduction. For more information, visit the Layer Brett website, join their Telegram group, or follow them on X by clicking the following links: Website Telegram X Disclaimer: This is a sponsored press release and is for informational purposes only. It does not reflect the views of Bitzo, nor is it intended to be used as legal, tax, investment, or financial advice.
Share
Coinstats2025/09/18 18:39
Trump's 'pretty boring' State of the Union was a flop: MS NOW's Lemire

Trump's 'pretty boring' State of the Union was a flop: MS NOW's Lemire

Donald Trump's record-long State of the Union address got about as low of marks as possible from MS NOW’s Jonathan Lemire who claimed he couldn’t see it changing
Share
Rawstory2026/02/25 20:03
Ripple Links RLUSD Stablecoin to Franklin Templeton Fund on DBS Digital Exchange

Ripple Links RLUSD Stablecoin to Franklin Templeton Fund on DBS Digital Exchange

TLDR: DBS, Ripple, and Franklin Templeton will enable sgBENJI token trades using RLUSD stablecoin on DBS Digital Exchange. Investors can rebalance portfolios 24/7 and earn yield by holding tokenized money market funds on the XRP Ledger. DBS will explore repo lending, allowing sgBENJI tokens to serve as collateral for credit and wider liquidity access. Franklin [...] The post Ripple Links RLUSD Stablecoin to Franklin Templeton Fund on DBS Digital Exchange appeared first on Blockonomi.
Share
Blockonomi2025/09/18 13:21