Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesBotsEarnCopy
Hacker mints $5M in ZK tokens after admin account breach

Hacker mints $5M in ZK tokens after admin account breach

GrafaGrafa2025/04/16 21:40
By:Mahathir Bayena

A hacker exploited a ZKsync (CRYPTO:ZK) administrative account on April 15, minting $5 million worth of unclaimed airdrop tokens.

The attacker used the “sweepUnclaimed()” function to generate approximately 111 million ZK tokens, increasing the total token supply by 0.45%, according to ZKsync’s official statement.

The compromised account had administrative control over three airdrop distribution contracts.

While the attack significantly impacted the token supply, ZKsync assured users that their funds and the protocol’s core infrastructure remain secure.

“This was an isolated incident confined to the airdrop smart contract,” ZKsync stated, adding that no further exploits are possible through the same vulnerability.

ZKsync is actively coordinating recovery efforts with the Security Alliance (SEAL) and exchanges to recover the stolen funds.

The team has identified the attacker’s wallet address and encouraged them to negotiate for the return of the tokens.

The breach occurred as ZKsync was in the process of distributing 17.5% of its total token supply through an airdrop program.

The unauthorised minting caused significant market disruption, with ZK token prices dropping 16% shortly after the incident.

Although prices partially recovered to $0.047, they remain down by 7% over the past 24 hours.

The hack highlights ongoing security challenges in the cryptocurrency sector, where vulnerabilities in key administrative accounts can lead to significant financial losses.

According to industry data, crypto hacks have resulted in $2 billion in losses during the first quarter of 2025 alone, nearly matching total losses from 2024.

ZKsync is an Ethereum (CRYPTO:ETH) layer-2 protocol that uses zero-knowledge rollups to process transactions more efficiently.

Its platform currently holds $57.3 million in total value locked, according to DefiLlama data as of April 15.

Despite this setback, ZKsync emphasised that its governance and token contracts remain unaffected and that user funds were never at risk.

At the time of reporting, the ZKsync (ZK) price was $0.04766.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Locked for new tokens.
APR up to 10%. Always on, always get airdrop.
Lock now!

You may also like

Google Chrome’s success ‘impossible to recreate,’ exec testifies in DOJ antitrust trial

Share link:In this post: Parisa Tabriz believes Google Chrome would decline in another company’s hands, saying it would be hard to disentangle Google from the search engine’s success. Google plans to infuse artificial intelligence into Chrome to make it more agentic. OpenAI showed interest in buying Google Chrome.

Cryptopolitan2025/04/27 13:12

SEC Commissioner Hester Peirce calls for better crypto regulation

Share link:In this post: SEC Commissioner Hester Peirce has called for better crypto regulation in the United States. Peirce mentioned that financial firms have been approaching crypto in a way like playing “the floor is lava” children’s game. SEC commissioners want flexible regulation as SEC chairman Paul Atkins wants clear regulations for digital assets.

Cryptopolitan2025/04/27 13:12

Australian radio station used AI-generated DJ for months before being discovered

Share link:In this post: An Australian radio station has received backlash over the use of an AI-generated DJ for months without disclosure. The show, Workdays with Thy, used the AI-generated DJ for six months, airing by 11am every weekday. The general public has called for the need to formulate regulations to track the responsible use of artificial intelligence.

Cryptopolitan2025/04/27 13:12