Close Menu
  • Latest News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Meme Coins
  • DeFi
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • Gaming
  • Legal
    • Taxes & Regulation
    • Adoption
  • Analysis
  • Learn
    • Education
    • Wallets and Exchanges
  • Tools
    • Market Overview
    • Converter
What's Hot

Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

June 5, 2025

Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

June 5, 2025

Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

June 5, 2025
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
Facebook X (Twitter) Instagram
Buy Crypto NewsBuy Crypto News
  • Latest News
    1. Bitcoin
    2. Ethereum
    3. Altcoins
    4. Meme Coins
    5. View All

    Vitalik’s Plan Can Bring ETH to $3,000 and Crypto (XRP, BTC) ‘More Popular’ Than Stocks in Korea

    June 5, 2025

    JPMorgan To Offer Clients Financing Against Bitcoin & Crypto ETFs

    June 5, 2025

    Bitcoin Price Prediction Today: 4th June

    June 4, 2025

    Institutions Pour $321,000,000 Into Ethereum Products As ETH Sees Six Straight Weeks of Inflows: CoinShares

    June 4, 2025

    Ethereum Consolidates Against BTC – Altseason Hopes Hinge On ETH/BTC Breakout

    June 5, 2025

    Ethereum: Whales now hold $365mln in ETH – Is a run to $3.4K loading?

    June 5, 2025

    Ethereum Price on the Edge: Vitalik, Whales, and Analysts Hint at a Breakout?

    June 5, 2025

    Ethereum Daily Chart Signals Strength Amid Market Uncertainty – Analyst

    June 4, 2025

    XRP Lawsuit End When? Expert Says SEC Dropped Appeal, 60-Day Delay Could Follow Ripple

    June 5, 2025

    Stablecoin Issuer Circle Targeting $7,200,000,000 Valuation in Upcoming IPO

    June 5, 2025

    Is an XRP ETF approval closer than ever? 93% Polymarket rating suggests…

    June 4, 2025

    Bitcoin To Face ‘One Last Speed Bump’ Before Rally To $140,000

    June 4, 2025

    Pepe, BMT, CAKE: Crypto Activity Heats Up

    March 18, 2025

    SHIB Burns Over Half a Billion Tokens, Price Surges Over 7%

    March 17, 2025

    DOGE Sees Massive User Growth: Active Addresses Up 400%

    March 15, 2025

    Shiba Inu (SHIB) Price Analysis: Bullish Hints, Bearish Trend

    March 15, 2025

    Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

    June 5, 2025

    Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

    June 5, 2025

    Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

    June 5, 2025

    Ethereum Consolidates Against BTC – Altseason Hopes Hinge On ETH/BTC Breakout

    June 5, 2025
  • DeFi

    Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

    June 5, 2025

    Systemic risk on the rise as leverage interdependencies tighten between CeFi, DeFi and crypto treasuries

    June 5, 2025

    COTI launches PriveX, a privacy-first platform for perp trading

    June 5, 2025

    Sui rallies past $1.75B TVL as bitcoin and stablecoin flows spike

    June 4, 2025

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025
  • Tech
    1. Blockchain
    2. Security and Privacy
    3. View All

    Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

    June 5, 2025

    Mogul Club, Ava Labs partner to bring tokenized real estate to web3 investors

    June 5, 2025

    Trump-Affiliated World Liberty Financial Airdrops Millions in USD1 Stablecoin

    June 5, 2025

    AI to Transform Web3 Into ‘Knowledge Coordination Layer,’ Says Openledger’s Ram Kumar

    June 5, 2025

    Cryptojacking Campaign Targets DevOps Servers Including Nomad

    June 3, 2025

    Sophisticated Malware Campaign Targets Windows and Linux Systems

    June 2, 2025

    US Treasury sanctions Philippines tech firm over aiding $200 million pig butchering spree

    May 31, 2025

    Fake Bitdefender Site Spreads Trio of Malware Tools

    May 28, 2025

    Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

    June 5, 2025

    Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

    June 5, 2025

    Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

    June 5, 2025

    Ethereum Consolidates Against BTC – Altseason Hopes Hinge On ETH/BTC Breakout

    June 5, 2025
  • Web 3
    1. Web3 News
    2. Gaming
    3. View All

    SPEC Resumes Global Collaboration with Companies on U.S. BIS Entity List

    June 5, 2025

    Notification of transactions in Columbus A/S shares and related securities by persons discharging managerial responsibilities and persons closely associated with them

    June 5, 2025

    How to earn a steady income every day, remotely start a Bitcoin mining machine with XRP using your phone or computer.

    June 4, 2025

    The Complete Guide to Bonk Arena: Solana’s First Kill-to-Earn Shooter Game

    June 4, 2025

    The Flappy Bird Crypto Game That’s Paying Out More Than You Think

    June 5, 2025

    ‘Flappy Bird’ Is Making a Crypto Gaming Push After All

    June 5, 2025

    Vi Powils Named CEO of World of Women as Project Enters New Growth Phase

    June 4, 2025

    Magic Eden’s “Official Trump Wallet” Backfires After Trump Family Disavows Project

    June 4, 2025

    Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

    June 5, 2025

    Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

    June 5, 2025

    Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

    June 5, 2025

    Ethereum Consolidates Against BTC – Altseason Hopes Hinge On ETH/BTC Breakout

    June 5, 2025
  • Legal
    1. Taxes & Regulation
    2. Adoption
    3. View All

    Moroccan police arrests suspect behind recent crypto-related kidnappings in France

    June 5, 2025

    Binance Breaks Silence After SEC Lawsuit Dismissal: Details

    June 5, 2025

    US-based ETFs offering staking set for growth despite some regulatory, macro tailwinds

    June 5, 2025

    SEC statement marks break from Gensler era on crypto staking

    June 5, 2025

    Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

    June 5, 2025

    Circle set to exceed IPO expectations after overwhelming investor demand

    June 5, 2025

    JPMorgan to accept Bitcoin ETFs as loan collateral, consider digital holdings in evaluations

    June 5, 2025

    Largest US economy, California, moves to accept Bitcoin for state fees by passing new bill to Senate

    June 4, 2025

    Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

    June 5, 2025

    Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

    June 5, 2025

    Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

    June 5, 2025

    Ethereum Consolidates Against BTC – Altseason Hopes Hinge On ETH/BTC Breakout

    June 5, 2025
  • Analysis

    Analyst Says Solana-Based Memecoin Setting Stage for ‘Full-Blown Parabola,’ Predicts New All-Time High for One Asset

    June 5, 2025

    XRPL faces scam influx amid institutional interest boom

    June 4, 2025

    Ethereum and XRP steals spotlight in daily gains after Bitcoin reclaimed $106k

    June 4, 2025

    XRP Price Prediction for June 4, 2025 

    June 4, 2025

    Binance Coin (BNB) Price Analysis and Short-term Prediction 

    June 4, 2025
  • Learn
    1. Education
    2. Wallets and Exchanges
    3. View All

    What is a Corporate Bitcoin Treasury? The Strategy Behind Companies Holding Crypto

    May 27, 2025

    What Are Tokenized Real-World Assets? Putting Physical Value On-Chain With RWAs

    May 19, 2025

    Users Taunt Grok After xAI Says Modifications Were Made to Spit out ‘White Genocide’ Claim

    May 16, 2025

    What Is Base? The Ethereum Layer-2 Network Launched by Coinbase

    April 29, 2025

    NGX becomes first public Norwegian firm to adopt the Bitcoin standard, stock surges 138%

    June 5, 2025

    Trump family denies involvement in new wallet launch

    June 4, 2025

    Tether invests in Orionx to boost stablecoin use in Latin America

    June 4, 2025

    Bitstamp finally folds into Robinhood in $200M merger, unlocking global crypto passport

    June 3, 2025

    Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

    June 5, 2025

    Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

    June 5, 2025

    Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

    June 5, 2025

    Ethereum Consolidates Against BTC – Altseason Hopes Hinge On ETH/BTC Breakout

    June 5, 2025
  • Tools
    • Market Overview
    • Converter
Buy Crypto NewsBuy Crypto News
Home»Web3»ZKsync Reveals Hack on Airdrop Tokens, Attacker Mints $5M Worth of Unclaimed ZK
Web3

ZKsync Reveals Hack on Airdrop Tokens, Attacker Mints $5M Worth of Unclaimed ZK

April 17, 2025No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

ZKsync Network Security Incident: $5 Million Worth of Unclaimed Airdrop Tokens Compromised

The ZKsync layer-2 network recently experienced a security breach when a compromised admin account led to the minting of approximately $5 million worth of unclaimed airdrop tokens on April 15. While user funds were not affected, this incident underscores the importance of securing leftover airdrop allocations to prevent them from becoming targets for malicious actors.

Unclaimed Airdrop Tokens Targeted

ZKsync conducted an airdrop of 3.6 billion ZK tokens in June 2024 to reward early adopters of ZKsync Era and ZKsync Lite. Despite the extensive distribution, millions of tokens remained unclaimed, totaling nearly $5 million. These unclaimed tokens were stored in three smart contracts overseen by an admin account that was compromised.

According to ZKsync’s statement, the attacker exploited a function called sweepUnclaimed() on the airdrop contract, resulting in the minting of 111 million ZK tokens. This action increased the circulating supply by approximately 0.45% of the total fixed supply of 21 billion tokens.

Although the function was intended for recovering unclaimed tokens after the claim period, it was gated behind admin-only access, which was breached due to the compromised admin key.

While $5 million may seem modest in the broader crypto space, unauthorized minting raises concerns about contract security and the handling of leftover tokens.

Scope of the Incident

ZKsync has clarified that the hack was limited to the airdrop contract and did not impact user wallets or the main ZK token contract. The governance framework and protocol remain unaffected, with no vulnerabilities reported beyond the compromised admin key. Additionally, ZKsync has confirmed that no further exploits are possible through the sweepUnclaimed() function as the attacker has already taken all mintable tokens.

See also  Adidas Reveals In-Game Apparel Drop for 'Xociety' Shooter on Sui

However, the incident has reignited discussions on contract design and admin key security. Best practices such as using multisig wallets, implementing time-locked operations, or designing contracts with immutable parameters could have mitigated or prevented the breach.

Following the disclosure of the hack, ZK’s value experienced volatility, initially dropping 16% to $0.040 before rebounding to around $0.047. Despite the recovery, the token remains down approximately 7% over the past 24 hours, reflecting ongoing market caution.

History of the Airdrop

The 2024 airdrop by ZKsync allocated a significant supply of tokens as a reward for ecosystem participants. While users received varying amounts of ZK based on their activity, a portion remained unclaimed and centralized under three distribution contracts, making them a valuable target for a security breach.

Response and Recovery Efforts

ZKsync has engaged the Security Alliance (SEAL) to mitigate further damage. The attacker’s wallet containing most of the minted tokens is closely monitored, and ZKsync has publicly requested the individual to return the funds. Legal action may be pursued if negotiation fails.

ZKsync assures that its architecture, governance mechanisms, bridging components, and token supplies are secure. The protocol has neutralized vulnerabilities stemming from the compromised admin key and states that no additional user-facing security measures are necessary at this time.

Looking Forward

The incident highlights the importance of securely storing and managing leftover airdrop tokens. While distributing tokens rewards early participants, unclaimed portions can pose a risk if controlled by a single privileged account.

ZKsync’s prompt response and transparent communication have contained the issue, but the return of stolen tokens by the attacker remains uncertain. As the network grows, users and developers will monitor additional security measures implemented by ZKsync to prevent future admin key compromises.

See also  W-Coin's Inactivity Penalty Explained: What It Means for the Upcoming Airdrop

Airdrop attacker Hack Mints reveals Tokens Unclaimed Worth ZKsync
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

SPEC Resumes Global Collaboration with Companies on U.S. BIS Entity List

June 5, 2025

Notification of transactions in Columbus A/S shares and related securities by persons discharging managerial responsibilities and persons closely associated with them

June 5, 2025

How to earn a steady income every day, remotely start a Bitcoin mining machine with XRP using your phone or computer.

June 4, 2025

The Complete Guide to Bonk Arena: Solana’s First Kill-to-Earn Shooter Game

June 4, 2025
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Trump crypto influence? USD1 mints $1B in an hour, rattles stablecoin market!

April 30, 2025

‘You Should Be Salivating’ – Investor Chris Burniske Says Crypto Market Flashing ‘Sweet’ Setup Heading Into 2025

December 30, 2024

Trader Who Nailed 2022 Crypto Meltdown Says ‘Up Only’ Season in Sight – But There’s a Catch

January 23, 2025
Price Chart


Explore insights on crypto, blockchain, taxes, and security. Stay informed with expert guides, tips, and the latest trends to navigate the digital asset world confidently


We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Sentient’s AI chatbot Dobby Plus challenges OpenAI with open-source, user-governed AI model

June 5, 2025

Reddit sues AI firm Anthropic over unauthorised data scraping for Claude

June 5, 2025

Circle Upsizes NYSE IPO to $1.05B — Here’s What Investors Should Watch

June 5, 2025
Get Informed

Subscribe to Updates

Get the latest creative news From BuyCryptoNews directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
© 2025 BuyCryptoNews - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.