Back to blog

Understanding Recent Security Breaches on Solana

3 min read

Security vulnerabilities in the web3 ecosystem continue to pose significant risks, particularly on platforms like Solana, as recent events highlight. According to recent reports, several notable incidents have occurred, reflecting both technical and social engineering tactics utilized by hackers.

Recent Victims on Solana

The source indicates several individuals have fallen victim to these security breaches. Printer, for example, reportedly lost $150,000 due to a fraudulent transaction related to Ethereum. Additionally, Orangie’s wallet on Solana was flagged, containing a balance of 53.5 SOL. Another victim, Smokey Titan, lost 450 USDC through malware on Solana.

Furthermore, a major incident involved a whale losing approximately 783 BTC, equating to about $91 million, following a hardware wallet hack. Another DeFi trader lost nearly one million dollars through a fake Uniswap swap, allegedly exploiting EIP-7702.

Methods of Attack

The provided information indicates the use of various tactics by attackers. Many employ phishing sites and fake airdrops that trick users into signing dangerous approvals. Some utilize malicious browser extensions to inject drainers into digital wallets.

Another critical vector is EIP-7702, which allows attackers to gain full access to victims’ wallets with a single click. Additionally, malware applications target seed phrases, compromising wallet security. Other attackers use a “slow drain” technique to stealthily siphon off funds over time to evade detection.

Tips for Staying Secure

To safeguard against these threats, the source emphasizes the importance of employing several protective strategies. Key recommendations include:

  • Utilize cold wallets for storing substantial funds.
  • Keep hot wallets small and separate for regular transactions.
  • Regularly revoke approvals using tools like Revoke cash.
  • Trust only reputable extensions and platforms.
  • Enable centralized exchange (CEX) withdrawal whitelists and hardware-based two-factor authentication (2FA).
  • Ensure Apple devices are updated with the latest security patches, such as CVE-2025-43300.

The source succinctly notes that drainers are increasingly blending technological exploits with social manipulation, making vigilance imperative.

Frequently Asked Questions

What are the recent security incidents on Solana? Recent incidents on Solana include significant financial losses through phishing schemes, malware, and hardware wallet hacks, as highlighted in the source.

How do phishing sites impact Solana users? The source suggests phishing sites trick users into granting wallet approvals, leading to unauthorized access and fund drainage.

What preventive measures can be taken? Utilizing cold wallets for large assets, minimizing hot wallet balances, and employing two-factor authentication are recommended to enhance security.

How does EIP-7702 exploit occur? Based on the source, this exploit involves attackers gaining full wallet access through a single click, emphasizing the need for caution.

Why are regular security updates critical on Apple devices? Security updates, such as CVE-2025-43300, protect devices from vulnerabilities that attackers might exploit.

Conclusion

As security threats on Solana and broader web3 platforms persist, it’s crucial for users to stay informed about potential risks and implement robust security practices. By adopting measures such as cold storage and regular approval checks, users can significantly mitigate the risk of falling victim to these sophisticated attacks. For additional resources, consult FailSafe’s transaction monitoring and other security solutions.

    This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

    Ready to secure your project?

    Get in touch with our security experts for a comprehensive audit.

    Contact Us