Web Analytics
Finbold
2026-05-22 13:05:46

Polymarket confirms 6-year-old private key hack leads to a $700,000  loss

Polymarket, the largest web3-based prediction market platform, reported a compromise of its 6-year-old internal private key used for top-ups and rewards on May 22, 2026. As of press time, Polymarket had lost roughly $700,000, drained through the Polygon ( P O L ) network, according to on-chain metrics from Polygonscan analyzed by Finbold. The stolen funds were split across 16 addresses and routed through several crypto exchanges, including HTX, KuCoin, and ChangeNow. Transfers by Polymarket exploiter. Source: Polygonscan The incident was first reported by ZachXBT, an on-chain sleuth, who raised the alarm that Polymarket’s Universal Market Access (UMA) Conditional Token Framework (CTF) Adapter contract on Polygon was likely exploited. However, Josh Stevens, Polymarket’s Vice President of Engineering, confirmed that no internal contracts were exploited, but rather an old private key. As such, Stevens stated that users’ funds remain safe and the platform can be used as usual. “This was in the internal top-up config, which is why funds were being sent to it. We have rotated this key, revoked all prod permissions, and are moving all PKs to KMS keys from now on,” Stevens noted . What’s the market implication of the Polymarket attack? The successful attack on Polymarket, which managed to siphon funds for the first time, raised concerns among users. Moreover, Polymarket is heavily used by automated trading bots, which could lead to significant fund losses if the contracts were compromised. private key hygiene matters more than contracts — PolyBot (@TradePolyBot) May 22, 2026 Additionally, the notable security risk could be an advantageous edge for its competitors, led by the Kalshi prediction platform. Furthermore, this platform has amassed a significant user base in the recent past due to its deep on-chain liquidity backed by institutional investors. However, the severity of the recent attack may be minimal, as no user funds were stolen. ​ The post Polymarket confirms 6-year-old private key hack leads to a $700,000 loss appeared first on Finbold .

获取加密通讯
阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约