Express

GoPlus Annual Security Report: Over 1200 Serious Security Incidents Result in Over $3.5 Billion in Total Losses, Attackers Show Trend of Precise Targeting and Wide Net Casting Strategies

Summary: According to GoPlus RektDatabase data, in 2025, there were over 1200 serious security incidents in the Web3 sector, resulting in total losses exceeding $3.5 billion. The most common types of attacks and fraud were private key theft (based on virus trojans and social engineering), phishing attacks, and Rug Tokens (fraudulent tokens). Notably, the theft events ...

According to GoPlus RektDatabase data, in 2025, there were over 1200 serious security incidents in the Web3 sector, resulting in total losses exceeding $3.5 billion. The most common types of attacks and fraud were private key theft (based on virus trojans and social engineering), phishing attacks, and Rug Tokens (fraudulent tokens). Notably, the theft events at Bybit (February 21, $1.5 billion), Cetus (May 22, $223 million), and Balancer (November 2, $128 million) were the top 3 events in terms of damages in 2025. The security situation shows a significant increase in the number of large-scale incidents and a significant decrease in the cost of small-scale fraud for users, indicating a trend of attackers showing precise targeting and wide net casting strategies. It is worth noting that in 2025, there were a total of 12 attacks with individual losses exceeding $30 million, with 7 of them in the CeFi sector. The main reasons were theft of administrator private keys and hot wallet private keys, exposing significant risks.

  • The Road to 2026: Where Is the Web3 Ecosystem Heading Next? December 7, 2025
  • Vishwa Advances Agentic Infrastructure Research Through Contribution to Emerging Framew... November 22, 2025
  • BitMart US Launches Operations with 49-State Licensing and Zero-Fee Program November 17, 2025
  • Global Financial Giants Enter Stablecoin Arena in Pivotal Shift October 30, 2025
  • CRYPTO'S NEW PLAY: 24/7 STOCK TRADING October 29, 2025
  • You need to login to comment.