TL;DR
- SecondFi will shut down its providers after the theft of 16.1 million ADA, equal to roughly $2.6 million, because of a cryptographic flaw in its software program.
- The Groom Lake investigation recognized a complicated attacker with indicators probably linked to North Korea’s Lazarus Group.
- Restoration instruments based mostly on zero-knowledge proofs had been anticipated inside two weeks and at the moment are scheduled for August.
SecondFi introduced the closure of its operations after an exploit uncovered a essential vulnerability in its pockets software program and resulted within the theft of roughly 16.1 million ADA, valued at round $2.6 million. The platform, constructed on the Cardano community, confirmed the shutdown by means of an official assertion practically a month after the preliminary disclosure of the incident, which occurred in late June.
In keeping with the assertion, the assault affected 374 wallets and was executed by means of a cryptographic flaw in SecondFi’s personal software program. The corporate commissioned an unbiased investigation from Groom Lake, a blockchain intelligence supplier, whose findings recognized a complicated exterior actor behind the assault. The report additionally flagged indicators probably linked to the Lazarus Group, the cyberattack collective attributed to North Korea, though the corporate clarified that no formal attribution has been confirmed.
An replace relating to the current safety incident involving SecondFi
What occurred to SecondFi
Between June twenty first and twenty third, SecondFi skilled a safety incident that resulted in roughly 16.1 million ADA (~$2.6 million) being stolen from 374 wallets. We need to present…— SecondFi (@secondfiapp) July 22, 2026
SecondFi Stays in Restoration Course of
For the reason that exploit was disclosed, SecondFi instructed affected customers to not restore their restoration phrases in new Cardano wallets. The platform argued that shifting funds to a different service “doesn’t mitigate the danger” whereas the interior investigation continued. On June 27, the corporate communicated that it had recognized a restoration path and estimated the method would start in roughly two weeks, as soon as safety testing and critiques had been accomplished.

Almost a month later, that deadline was not met. The restoration instrument, based mostly on zero-knowledge proofs, stays below improvement and should endure exterior auditor evaluation earlier than its launch, which is now scheduled for August. The platform can be engaged on a pockets export function that may permit customers emigrate their property to a different service.
What SecondFi didn’t announce is a direct reimbursement plan or any compensation mechanism utilizing its personal funds. The protocol didn’t reply to inquiries relating to potential indemnification plans. EMURGO, the group linked to the Cardano ecosystem, additionally didn’t reply to requests for remark.


Consumer Frustration
The newest replace drew essential reactions from these affected. “However many people had been instructed our funds might be recovered inside two weeks. Now they’re asking us to attend even longer,” wrote one consumer in response to the official assertion.

