Wyoming's security review found that LayerZero Labs lost control of a critical private key in a live FRNT deployment and failed to transfer production authorization to regulators, leading to deprecation of LayerZero. FRNT now uses Chainlink CCIP exclusively across eight chains, marking a regulatory decision favoring Chainlink's security over LayerZero's after previous compromises.
Thousands of legitimate small-business websites have been compromised to distribute malware through fake CAPTCHA prompts that trick users into running Windows commands. Netskope identified over 5,400 compromised sites across 2,200 organizations, with attackers using blockchain infrastructure to hide malicious instructions and evade detection.
A user reported receiving a suspicious authentication request from Tehran after providing Verizon credentials to the Instinct AI application, raising concerns about server compromise or mishandling of sensitive login information. The user deleted the application and contacted Instinct support without receiving a response.
ApeX Protocol's Trade-to-Earn Season 1 wallet was compromised via social engineering targeting a former team member's device, allowing an attacker to redeem BANANA for APEX tokens. The platform's smart contracts were not hacked and user funds remain secure. ApeX has revoked the compromised key, flagged attacker addresses, and is reviewing key-management procedures.
Security Alliance reported 48 incidents in the week of September 1-8, 2026, with reported losses totaling approximately $8.62M plus 100 BTC across categories including protocol compromise ($3.81M), infrastructure exploits ($3M), wallet compromise ($1.2M), and intrusions attributed to DPRK ($400K).