Posts

Showing posts with the label hacking

Tornado Cash user hacks SuperRare staking contract, steals $730K in RARE

A Tornado Cash user hacked the staking contract of NFT gallery firm SuperRare today, stealing roughly $730,000 worth of RARE tokens. Crypto security analysts Peckshield first noticed the substantial loss while Cyvers Alerts reported that the attacker had previously used crypto mixer Tornado Cash 186 days ago.  SlowMist claims the exploit was caused by a faulty permission check in the “updateMerkleRoot function” that allowed the hacker to modify the staking contract and claim tokens for themselves.  ALERTOur system has detected a malicious transaction targeting a @SuperRare staking contract. The attacker’s address, funded via @TornadoCash approximately 186 days ago, executed the exploit and gained 731K worth of $RARE. The stolen funds currently remain in the attacker’s… pic.twitter.com/9CZ6IG4b4B — Cyvers Alerts (@CyversAlerts) July 28, 2025 Read more: Roman Storm says he’s been ‘financially cancelled’ after payroll firm axe SuperRare is an NFT art fir...

US Nuclear Agency Data Compromised in New Microsoft SharePoint Hack

Image
A cyberattack on a US nuclear weapons agency has exposed sensitive information, highlighting significant vulnerabilities in government cybersecurity. The breach, which targeted the agency’s Microsoft SharePoint system, raises serious concerns about the security of critical national infrastructure in the digital age. Hackers reportedly breached the National Nuclear Security Administration and other parts of the Department of Energy through the Microsoft SharePoint vulnerability. https://t.co/ocYSWgg4MW pic.twitter.com/jdsuDZb8Md — Eric Geller (@ericgeller) July 23, 2025 Breach Details and Immediate Impact The compromised agency is responsible for overseeing the country’s nuclear arsenal, making the breach a matter of national security interest. Hackers exploited vulnerabilities within the Microsoft SharePoint platform used internally for document management and collaboration. While the full extent of the data accessed remains undisclosed, initial reports in...