Close Menu
    Facebook X (Twitter) Instagram
    • Privacy Policy
    • Terms Of Service
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Facebook X (Twitter) Instagram
    Fintech Fetch
    • Home
    • Crypto News
      • Bitcoin
      • Ethereum
      • Altcoins
      • Blockchain
      • DeFi
    • AI News
    • Stock News
    • Learn
      • AI for Beginners
      • AI Tips
      • Make Money with AI
    • Reviews
    • Tools
      • Best AI Tools
      • Crypto Market Cap List
      • Stock Market Overview
      • Market Heatmap
    • Contact
    Fintech Fetch
    Home»Crypto News»DeFi»Trusted Volumes Confirms $6.7M DeFi Resolver Exploit
    Cointelegraph
    DeFi

    Trusted Volumes Confirms $6.7M DeFi Resolver Exploit

    May 7, 20264 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email
    synthesia

    rewrite this content and keep HTML tags as is. This is content from rss feed and I don’t need their *Daily Debrief Newsletter*, their tags from bottom like this *Share this articleCategoriesTags*, Editorial Process section, phrases like *Featured image from Peakpx, chart from Tradingview.com*, SPECIAL OFFERS and similar sections – just remove such sections and save only article itself:

    TrustedVolumes, an independent market maker and resolver used by 1inch Fusion, confirmed it was exploited and said about $6.7 million in stolen funds are being held across three Ethereum addresses.

    In a Thursday X post, the market maker said the stolen funds were split across three wallets, with two addresses each holding about $3 million and a third holding about $700,000. TrustedVolumes said it was open to “constructive communication” over a bug bounty and a “mutually acceptable resolution.”

    The confirmation came after Web3 security company Blockaid said its exploit detection system had identified an ongoing Ethereum exploit targeting TrustedVolumes. Blockaid said the attack involved a TrustedVolumes-controlled custom swap infrastructure. Blockaid initially estimated that about $5.87 million had been extracted, including Wrapped Ether, USDT, Wrapped Bitcoin and USDC.

    Blockchain security company CertiK said the attacker registered as an allowed order signer through a public function, then used that authorization to execute orders that transferred funds from the targets.

    binance

    The incident highlights the risks around third-party infrastructure used in decentralized exchange execution, where resolvers and market makers can operate their own contracts even when the core protocol and ordinary users are not directly affected. TrustedVolumes operates independently as a liquidity provider for multiple protocols, including 1inch, which said its own systems, infrastructure and user funds were not affected.

    Cointelegraph reached out to TrustedVolumes for additional comment but had not received a response by publication. 

    Source: TrustedVolumes

    1inch says none of its protocols were breached

    In an X post, 1inch said reports linking it directly to the TrustedVolumes exploit were “misleading,” adding that “neither 1inch nor any of the 1inch protocols are involved.” The platform said there was “no impact on 1inch systems, infrastructure or user funds.”

    1inch co-founder Sergej Kunz also said TrustedVolumes operates independently and is not exclusive to 1inch. “While it is true that 1inch uses TrustedVolumes as a resolver, we are one of many,” Kunz said.

    Kunz said the framing of the exploit as a 1inch-related incident was “confusing and harmful,” adding that 1inch is monitoring the situation with security partners and will assist where appropriate.

    Related: Andre Cronje says DeFi is ‘no longer DeFi’ as builders debate circuit breakers

    Security researcher Vladimir Sobolev, known as Officer’s Notes on X, also told Cointelegraph there was “no risk for 1inch users,” adding that the exploit was related only to TrustedVolumes. 

    Sobolev said the exploit points to broader weaknesses in crypto security practices, where vulnerabilities can quickly produce immediate losses. 

    “We lack security in general. Blockchains just tend to have an immediate payoff,” Sobolev told Cointelegraph. “We need to pay more attention to kill switches, monitoring, circuit breakers, etc.”

    Both Blockaid and Sobolev noted that the attack was carried out by the same operator responsible for the March 2025 1inch Fusion V1 resolver exploit. However, Blockaid said the latest attack involved a different vulnerability.

    In March 2025, 1inch said a vulnerability affected resolvers using an outdated Fusion v1 implementation in their own contracts, while end-user funds remained safe. SlowMist later traced about $5 million in stolen assets, including USDC and Wrapped Ether.

    1inch and the affected resolver negotiated with the attacker, who returned most of the stolen funds under a bug bounty agreement, according to 1inch and Decurity’s postmortem.

    Magazine: North Korea denies crypto hacks, Upbit’s bank tests Ripple: Asia Express

    Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently.
    10web
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Fintech Fetch Editorial Team
    • Website

    Related Posts

    Cointelegraph

    Forgd Market-Maker Leaderboard Integrates With DefiLlama

    August 5, 2026
    Cointelegraph

    How Fake World Assets Became Crypto’s Latest Craze

    August 3, 2026
    Cointelegraph

    Aave Proposal Targets 50 Reserves in Six-Market Wind-Down

    July 31, 2026
    Cointelegraph

    Tokenized Gold Survives DeFi Test as Lending Adoption Lags

    July 30, 2026
    Add A Comment

    Comments are closed.

    Join our email newsletter and get news & updates into your inbox for free.


    Privacy Policy

    Thanks! We sent confirmation message to your inbox.

    aistudios
    Latest Posts
    Liam 'Akiba' Wright

    rewrite this title in other words: The crypto project trying to replace the US banking system just pulled its 10 trillion token filing

    August 5, 2026
    Moscow Exchange Adds XRP, Solana, Tron And BNB To Crypto Index Push

    rewrite this title in other words: Backpack Exchange Lists TRX Spot And Perpetual Markets

    August 5, 2026
    Cointelegraph

    rewrite this title in other words: Ethereum Proposal to Slash Staking Rewards Sparks Backlash

    August 5, 2026
    Cotton Comes Back to Close Mixed on Tuesday

    rewrite this title in other words: Cotton Comes Back to Close Mixed on Tuesday

    August 5, 2026
    CopilotKit Open Sources Channels SDK: An MIT Licensed Library That Runs Any AG-UI Agent Inside Slack And Microsoft Teams

    CopilotKit Open Sources Channels SDK: An MIT Licensed Library That Runs Any AG-UI Agent Inside Slack And Microsoft Teams

    August 5, 2026
    aistudios
    LEGAL INFORMATION
    • Privacy Policy
    • Terms Of Service
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Top Insights
    The SECRET SAUCE to Making Money with AI

    The SECRET SAUCE to Making Money with AI

    August 6, 2026
    BUY HEAVY! I Just Found the Next Nvidia

    BUY HEAVY! I Just Found the Next Nvidia

    August 6, 2026
    ledger
    Facebook X (Twitter) Instagram Pinterest
    © 2026 FintechFetch.com - All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.