• bitcoinBitcoin (BTC) $ 77,095.00
  • ethereumEthereum (ETH) $ 2,407.30
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 1.47
  • bnbBNB (BNB) $ 644.48
  • usd-coinUSDC (USDC) $ 0.999804
  • solanaSolana (SOL) $ 88.49
  • tronTRON (TRX) $ 0.327228
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.02
  • dogecoinDogecoin (DOGE) $ 0.099078
  • whitebitWhiteBIT Coin (WBT) $ 56.02
  • usdsUSDS (USDS) $ 0.999669
  • hyperliquidHyperliquid (HYPE) $ 44.70
  • cardanoCardano (ADA) $ 0.258260
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • leo-tokenLEO Token (LEO) $ 10.14
  • bitcoin-cashBitcoin Cash (BCH) $ 454.48
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • memecoreMemeCore (M) $ 4.34
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • chainlinkChainlink (LINK) $ 9.61
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • ravedaoRaveDAO (RAVE) $ 26.43
  • moneroMonero (XMR) $ 346.56
  • ethena-usdeEthena USDe (USDE) $ 0.999947
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • stellarStellar (XLM) $ 0.174517
  • canton-networkCanton (CC) $ 0.148750
  • zcashZcash (ZEC) $ 335.32
  • susdssUSDS (SUSDS) $ 1.08
  • litecoinLitecoin (LTC) $ 56.47
  • daiDai (DAI) $ 0.999659
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • usd1-wlfiUSD1 (USD1) $ 0.999948
  • avalanche-2Avalanche (AVAX) $ 9.71
  • paypal-usdPayPal USD (PYUSD) $ 0.999838
  • wethWETH (WETH) $ 2,268.37
  • suiSui (SUI) $ 1.00
  • hedera-hashgraphHedera (HBAR) $ 0.090277
  • rainRain (RAIN) $ 0.007761
  • usdt0USDT0 (USDT0) $ 0.998824
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • the-open-networkToncoin (TON) $ 1.40
  • crypto-com-chainCronos (CRO) $ 0.071765
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,811.76
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.081038
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • bittensorBittensor (TAO) $ 257.39
  • pax-goldPAX Gold (PAXG) $ 4,814.35
  • global-dollarGlobal Dollar (USDG) $ 0.999710
  • mantleMantle (MNT) $ 0.685792
  • polkadotPolkadot (DOT) $ 1.34
  • uniswapUniswap (UNI) $ 3.47
  • pi-networkPi Network (PI) $ 0.188008
  • nearNEAR Protocol (NEAR) $ 1.42
  • okbOKB (OKB) $ 86.73
  • skySky (SKY) $ 0.078330
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • falcon-financeFalcon USD (USDF) $ 0.998021
  • aaveAave (AAVE) $ 115.07
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • aster-2Aster (ASTER) $ 0.691131
  • pepePepe (PEPE) $ 0.000004
  • htx-daoHTX DAO (HTX) $ 0.000002
  • usddUSDD (USDD) $ 1.00
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • internet-computerInternet Computer (ICP) $ 2.63
  • ripple-usdRipple USD (RLUSD) $ 0.999974
  • ethereum-classicEthereum Classic (ETC) $ 8.72
  • bitget-tokenBitget Token (BGB) $ 1.90
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • ondo-financeOndo (ONDO) $ 0.271661
  • bfusdBFUSD (BFUSD) $ 0.999812
  • pump-funPump.fun (PUMP) $ 0.002021
  • kucoin-sharesKuCoin (KCS) $ 8.69
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • gatechain-tokenGate (GT) $ 7.43
  • quant-networkQuant (QNT) $ 77.11
  • ethenaEthena (ENA) $ 0.124957
  • morphoMorpho (MORPHO) $ 1.95
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.24
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • algorandAlgorand (ALGO) $ 0.111618
  • kaspaKaspa (KAS) $ 0.035785
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • render-tokenRender (RENDER) $ 1.88
  • united-stablesUnited Stables (U) $ 1.00
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.091239
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • worldcoin-wldWorldcoin (WLD) $ 0.286129
  • cosmosCosmos Hub (ATOM) $ 1.85
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • nexoNEXO (NEXO) $ 0.920199
  • usdtbUSDtb (USDTB) $ 1.00
  • wbnbWrapped BNB (WBNB) $ 759.61
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.05
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • arbitrumArbitrum (ARB) $ 0.133830
  • aptosAptos (APT) $ 0.983184
  • filecoinFilecoin (FIL) $ 0.989811
  • blockchain-capitalBlockchain Capital (BCAP) $ 82.76
  • flare-networksFlare (FLR) $ 0.008413
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • official-trumpOfficial Trump (TRUMP) $ 3.02
  • jupiter-exchange-solanaJupiter (JUP) $ 0.187924
  • hash-2Provenance Blockchain (HASH) $ 0.011235
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • xdce-crowd-saleXDC Network (XDC) $ 0.031618
  • vechainVeChain (VET) $ 0.007358
  • midnight-3Midnight (NIGHT) $ 0.037635
  • dexeDeXe (DEXE) $ 13.22
  • beldexBeldex (BDX) $ 0.079963
  • ousgOUSG (OUSG) $ 114.95
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • justJUST (JST) $ 0.069736
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • yldsYLDS (YLDS) $ 0.999906
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • ghoGHO (GHO) $ 0.999537
  • stable-2​​Stable (STABLE) $ 0.025920
  • bonkBonk (BONK) $ 0.000006
  • clbtcclBTC (CLBTC) $ 76,920.00
  • usual-usdUsual USD (USD0) $ 0.998211
  • bianrensheng币安人生 (BinanceLife) (币安人生) $ 0.555422
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.232035
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.58
  • siren-2Siren (SIREN) $ 0.698858
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.761237
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • true-usdTrueUSD (TUSD) $ 0.999350
  • layerzeroLayerZero (ZRO) $ 1.95
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.007809
  • tbtctBTC (TBTC) $ 70,942.00
  • a7a5A7A5 (A7A5) $ 0.012354
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • edgexedgeX (EDGE) $ 1.35
  • dashDash (DASH) $ 36.94
  • adi-tokenADI (ADI) $ 4.35
  • blockstackStacks (STX) $ 0.240277
  • chilizChiliz (CHZ) $ 0.042268
  • ether-fiEther.fi (ETHFI) $ 0.524118
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • euro-coinEURC (EURC) $ 1.18
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • venice-tokenVenice Token (VVV) $ 9.12
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999432
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • monadMonad (MON) $ 0.034715
  • tezosTezos (XTZ) $ 0.377405
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • cocaCOCA (COCA) $ 1.30
  • aerodrome-financeAerodrome Finance (AERO) $ 0.439506
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • sei-networkSei (SEI) $ 0.058404
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • celestiaCelestia (TIA) $ 0.429895
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • usxUSX (USX) $ 0.999893
  • decredDecred (DCR) $ 21.69
  • kinesis-goldKinesis Gold (KAU) $ 155.76
  • hastra-primePRIME (PRIME) $ 1.03
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • lido-daoLido DAO (LDO) $ 0.427569
  • curve-dao-tokenCurve DAO (CRV) $ 0.240794
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • sun-tokenSun Token (SUN) $ 0.018740
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • spx6900SPX6900 (SPX) $ 0.369153
  • injective-protocolInjective (INJ) $ 3.37
  • doublezeroDoubleZero (2Z) $ 0.096529
  • apenftAINFT (NFT) $ 0.00000034
  • gnosisGnosis (GNO) $ 125.39
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • conflux-tokenConflux (CFX) $ 0.063436
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • bitcoin-svBitcoin SV (BSV) $ 16.42
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • bittorrentBitTorrent (BTT) $ 0.00000033
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • crvusdcrvUSD (CRVUSD) $ 0.999928
  • flokiFLOKI (FLOKI) $ 0.000032
  • plasmaPlasma (XPL) $ 0.127108
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • kaiaKaia (KAIA) $ 0.051396
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • kinesis-silverKinesis Silver (KAG) $ 79.71
  • jasmycoinJasmyCoin (JASMY) $ 0.006001
  • genius-3Genius (GENIUS) $ 0.914874
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • syrupMaple Finance (SYRUP) $ 0.250076
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06
  • the-graphThe Graph (GRT) $ 0.026442

‘Upgraded Tornado Cash’ Foom.Cash faces almost $2.3M loss in exploit

0 1


Foom.Cash, an Ethereum-based privacy protocol that positioned itself as an evolution of the sanctioned mixer Tornado Cash, has reportedly lost approximately $2.26 million in tokens after an attacker exploited a flaw in its cryptographic verification system, according to alerts issued by multiple blockchain security firms.

The attack, which struck contracts on both the Ethereum and Base networks, drained 24,283,773,519,600 FOOM tokens, the platform’s native asset, in what security researchers have described as a copycat exploit replicating a near-identical vulnerability targeted in a separate protocol just days earlier.

A single transaction on the Base network accounted for approximately $427,000 in losses attributed directly to the malicious actor. Transactions on Ethereum totaling around $1.83 million appear to have been part of a white-hat rescue operation.

How did the exploit happen?

BinanceLabs-led Web3 security network, GoPlus Security, flagged the attack, reporting that an incorrect verification key configuration allowed the attacker to forge zkSNARK proofs. This allowed them to fabricate cryptographic credentials that the protocol accepted as valid and then extract large volumes of tokens from the compromised contracts.

Blockchain security platform, Certik, wrote on X, “The root cause may be the delta2==gamma2 setting of the Groth16 verifier at 0xc043865fb4D542E2bc5ed5Ed9A2F0939965671A6. This enables the exploiter to compute ‘pC’ needed for different ‘nullifierHash’ while all other inputs are the same, and repeatedly collect ZOOM tokens.”

See also Coinbase crypto holding over $11 billion

In short, a protocol whose marketing emphasized the near-impossibility of reversing its cryptographic protections was undone by a misconfiguration.

BlockSec’s Phalcon monitoring system, which detected suspicious transactions across both networks in real time, stated that the incident appeared to be an imitation attack. The firm noted that the attack exploited the same root cause previously identified in the Veil Cash breach, which happened a few days prior.

Although it is worth mentioning that the Veil Cash breach was more limited in scale, with losses contained to a small number of $ETH, reportedly 2.9 $ETH.

What is Foom.Cash?

Foom.Cash positions itself as a “ZKProof-powered Private Lottery Protocol” that combines the anonymity of Zcash, which operates as a standalone privacy chain, the accessibility of Ethereum’s DeFi ecosystem, and a built-in randomized reward mechanism.

It is touted as an upgrade to Tornado Cash and an alternative to Zcash on Ethereum. Tornado Cash was sanctioned by the US Treasury in 2022, but the department lifted its sanctions on the platform in March 2025.

According to the platform, it processes more daily transactions than Tornado Cash, boasts over eight million dollars in liquidity, and generates annual returns of 50 to 80% for liquidity providers.

Privacy in DeFi has been experiencing renewed interest, with Zcash registering a significant price increase in recent months, and Foom.Cash sought to capitalize on that trend by offering privacy natively within Ethereum’s existing infrastructure.

See also Stablecoins are better than CBDC: Bank of Australia Governor

The platform used a specific variant called zkSNARKs, which is one of the key ingredients behind privacy guarantees in well-established protocols such as Zcash.

What is Foom.Cash doing to recover funds and resolve the exploit?

So far, the only mention of a recovery is tied to the second transaction of about $1.83 million, which security firms report to have been part of a white-hat rescue operation.

However, the Foom.Cash team has yet to mention or acknowledge the hack. So, as of the time of writing, there is no information on the extent of the impact from the protocol or what the protocol is doing to mitigate future attacks.

The whitehat recovery hints that the team may be working behind the scenes to recover the funds and resolve the underlying issues.



Source link

Leave A Reply

Your email address will not be published.