HighActiveNo recent activityExploitINC-641F04

Secret Network Bridge Exploit

Confidence95% · High
TypeExploit
Est. Loss$4.7M
Signals1
First DetectedJun 22, 2026, 4:06 AM
Last SignalJun 10, 2026, 12:00 AM

Overview

Vulnerable smart contract failed to verify inbound transfer source, enabling forged deposits to mint genuine saTokens.

An infinite mint bug in a Secret Network smart contract allowed an attacker to mint $4.67M in unbacked Axelar-wrapped tokens and drain escrowed assets.

Protocols
Secret NetworkAxelar
Chains
Secret NetworkEthereum
Assets
saUSDTsaUSDCsaDAIsaWETHsaWBTCsaWBNBsawstETH

Sources & Timeline

  1. NewCointelegraph95%

    Vulnerable smart contract failed to verify inbound transfer source, enabling forged deposits to mint genuine saTokens.

    Jun 22, 2026, 3:49 AMRead on Bytewit →