More

    Compromised owner contract just let hackers print 5.2 million WEMIX stablecoins out of thin air, forcing a complete network freeze

    The WEMIX team said compromised ownership of a contract tied to its WEMIX$ stablecoin enabled approximately 5.23 million tokens to be minted without authorization, prompting it to suspend bridges, liquidity pools, and several services on the WEMIX3.0 network.

    Contract-owner breach tested WEMIX$’s 1:1 design

    The WEMIX3.0 whitepaper describes WEMIX$ as 100% collateralized by USDC held in a Treasury and says its supply should remain equal to the Treasury’s USDC volume. It also says minting is accessible only through Authorized Mint Access, which is granted solely to the DIOS stability protocol.

    WEMIX’s preliminary incident update said the abnormal transactions began at 18:17 on July 26 (UTC+9), or 09:17 UTC, after ownership of a WEMIX$-related contract was compromised.

    Taken together, the two documents show that owner-level control was used to produce tokens outside the whitepaper’s intended minting path. WEMIX has not disclosed the exact route by which that control was compromised, and its update does not establish that the USDC.e later moved by the attacker came directly from the Treasury.

    Related Reading

    Read More:  Is OpenUSD the answer to bank push back on CLARITY? Hints stablecoin yield concessions will fail

    Humanity Protocol hack turns one laptop breach into an identity-token crisis

    A $36 million H exploit shows how one custody failure can threaten a project built around digital identity trust.

    Jun 10, 2026 · Liam ‘Akiba’ Wright

    WEMIX said the 5,225,525 unauthorized WEMIX$ was converted into 30,736 units of the network’s native WEMIX token and 724,198.27 USDC.e, the bridged stablecoin used on WEMIX3.0. The company specifically said the converted USDC.e was bridged to Ethereum and BNB Smart Chain, swapped into assets including ETH and USDT, and distributed among multiple addresses. Some of those assets were later deposited at centralized exchanges.

    The nominal number of tokens minted does not establish a $5.23 million loss. WEMIX has not issued a final loss estimate or identified the exchanges involved. It said some exchanges froze attacker-associated addresses after receiving cooperation requests, but did not quantify the frozen amounts or state whether individual user balances suffered losses.

    Related Reading

    Read More:  SEC warning over crypto yield vaults puts DeFi’s secret human controllers in the crosshairs

    Polkadot Hyperbridge April Fools’ joke comes true as over 1 Billion fake DOT tokens were minted on Ethereum

    A proof replay bug let the attacker mint over $1 billion DOT tokens on Ethereum, yet shallow DOT pools capped the cashout near $240,000.

    Apr 13, 2026 · Oluwapelumi Adejumo

    Containment reached bridges, trading, games and NFTs

    WEMIX’s July 26 response listed every bridge connected to and from WEMIX3.0 as suspended, including its Chainlink CCIP route and PLAY Bridge. The announcement did not attribute the compromise to Chainlink or report a CCIP failure.

    CryptoSlate Daily Brief

    Daily signals, zero noise.

    Market-moving headlines and context delivered every morning in one tight read.