Home Humanity Protocol Reveals Laptop Compromise Behind $36M Bridge Hack

Humanity Protocol Reveals Laptop Compromise Behind $36M Bridge Hack

Share
Humanity Protocol Reveals Laptop Compromise Behind $36M Bridge Hack
News
Share
  • Humanity Protocol revealed that a compromised employee’s laptop enabled attackers to steal over $36 million in H tokens.
  • Attackers gained control of the protocol’s bridge administration after compromising three of six Gnosis Safe multisig keys.
  • The exploit affected both Ethereum and BNB Chain, allowing hackers to drain and mint millions of tokens.
  • Following the breach, the H token plunged more than 85%, while Humanity Protocol suspended bridge deposits and withdrawals.

Humanity Protocol is a decentralized identity network that verifies that users are genuine individuals rather than AI bots. It allows users to confirm their identities without disclosing personal information by exchanging non-invasive palm biometrics and zero-knowledge cryptography for invasive facial or iris scans.

According to Humanity Protocol, an employee’s laptop compromise allowed attackers to take control of bridges, upgrade contracts, and steal over $36 million in H tokens.

Humanity Protocol Reveals Laptop Compromise Behind $36M Bridge Hack

Source: TradingView

Humanity Protocol’s H token plunged more than 85%. However, the token later recovered some of its losses. At the time of writing, H was trading at $0.18, increasing 14% over the past 24 hours.

The protocol stated in an incident update on Tuesday that the Monday attack had an impact on the H token on both the Ethereum and BNB chains.

According to the team, attackers were able to take over bridge administration on both networks because three of the six Gnosis Safe owner keys were hacked.

According to Humanity, the attackers altered the bridge contracts into several harmful versions once they gained control. They depleted almost 141.2 million Ethereum coins. They generated 200 million tokens straight into their own wallet after adding a feature on BSC that allowed them to create an infinite number of tokens.

Terence Kwok, the founder of Humanity, told Cointelegraph that although the project’s multisignature controls were distributed among four people, some keys might have been compromised during setup. Kwok told Cointelegraph, “We think that some of the keys were inadvertently backed up to a compromised device.”

Multisig Keys Exposed

Humanity employs MPC for its operations treasury and “a licensed custodian for the majority of token treasury,” but “for certain contracts, multisig keys were set up in one place and then dispersed,” leaving some keys stored on a compromised device.

The event shows how the concentration of various authorities behind a limited number of keys can turn a compromised endpoint into a protocol-level problem. In order to reduce harm and look into recovery alternatives, Humanity said it has stopped deposits and withdrawals to the impacted bridges and is collaborating with exchanges and relevant parties.

Following the project’s disclosure of the private key compromise, the value of Humanity Protocol’s H token dropped by more than 85%. Kwok cautioned users from interacting with the bridge or liquidity pools at the time.

Blockchain detectives examined the matter to see whether the attack was solely an external compromise or related to anomalous token activity prior to an impending unlock, as some community members noted.

ZachXBT, a blockchain investigator, first questioned whether the exploit was related to Humanity’s market maker and over-the-counter (OTC) operations. After more investigation, he added, the market-maker and OTC activities seemed to be unrelated to the private key compromise.

As investigators dug deeper into the exploit, attention shifted from the breach itself to the onchain activity surrounding it.

Onchain Data Raises Doubts

Cyvers’ senior security operations lead, Hakan Unal, told Cointelegraph that because the attacker has legal admin access in both scenarios, the onchain pattern may first appear similar regardless of whether an incident is a real compromise or a staged event.

According to Unal, “the surrounding behavior is what distinguishes them.” “Funds rushed to new wallets, swaps at poor prices, mixer use, and no insider timing are characteristics of a true compromise that typically demonstrate speed and improvisation.”

A staged incident, on the other hand, can exhibit suspicious timing close to unlocks or vesting, concentrated supply, orderly movement, or proceeds that ultimately return to team-linked addresses or market makers, according to Unal.

“The question is open because the evidence is currently conflicting,” he continued.

Researcher Says Humanity Hack Shows Signs Of A Coordinated Operation

Elton Shehdula, research lead at Allium Labs, stated that the exploit’s onchain pattern suggested a possibly organized and coordinated operation rather than a lone opportunist.

Shehdula said that the minting authority was “warmed up” days prior to the attack, wallets were funded via an exchange and a mixer weeks in advance, and the dump happened concurrently across two chains.

The degree of setup and access, he claimed, was compatible with either an “insider or an outside actor” who had been secretly holding the compromised key for a while.

 

 

Stay informed with the latest trends in Web3, blockchain innovation, and cybersecurity updates at 3verseTV

 

 

Share

Leave a comment

Leave a Reply

Latest News

Hungary Moves To Decriminalize Crypto Trading In Major Policy Reversal
News

Hungary Moves To Decriminalize Crypto Trading In Major Policy Reversal

Hungary is preparing to decriminalize cryptocurrency trading, reversing some of the strictest digital asset rules introduced under former Prime Minister Viktor Orbán....

Ripple Expands Latin American Payments With MXNB Stablecoin On XRP Ledger
News

Ripple Expands Latin American Payments With MXNB Stablecoin On XRP Ledger

Ripple has expanded its partnership with Latin American fintech company Bitso by launching MXNB, a stablecoin backed by the Mexican peso and...

CFTC Approves Hyperliquid Perpetual Futures Trading On Kalshi
News

CFTC Approves Hyperliquid Perpetual Futures Trading On Kalshi

Kalshi now offers CFTC-regulated Hyperliquid (HYPE) perpetual futures trading in the United States. This expands the range of regulated crypto derivatives available...

DBS Bank To Offer Tokenized Gold Trading To Retail Customers In 2026
News

DBS Bank To Offer Tokenized Gold Trading To Retail Customers In 2026

DBS Bank in Singapore plans to offer tokenized gold trading to retail customers in the second half of 2026. The new product,...

Latest Blogs

Anyone Can Launch A Memecoin In 2026, Here’s Exactly How

Memecoins are rapidly gaining popularity and have become highly attractive these days because of the ease of launching them, the scope of...

Safest Crypto Of 2026! Why Is RWA Tokenization Gaining Momentum?

Did you know the tokenized RWA market increased 34 times from early 2023, reaching $33.78 billion in May 2026? That’s quite big,...

How To Spot The Next Big Memecoin

Inspired by online jokes and viral trends, memecoins are the not-so-serious and rather amusing part of digital coins that thrive on community...

AI & Web3: New Age Careers With High Income Potential?

The smartest move going forward right now is to build a career in next generation internet, AI and Web3. The good news...

Related Articles

Anyone Can Launch A Memecoin In 2026, Here’s Exactly How

Memecoins are rapidly gaining popularity and have become highly attractive these days...

Safest Crypto Of 2026! Why Is RWA Tokenization Gaining Momentum?

Did you know the tokenized RWA market increased 34 times from early...

How To Spot The Next Big Memecoin

Inspired by online jokes and viral trends, memecoins are the not-so-serious and...

AI & Web3: New Age Careers With High Income Potential?

The smartest move going forward right now is to build a career...