WEMIX Network Experiences $724,000 Smart Contract Breach
Layer-1 blockchain WEMIX suspended network services after an attacker compromised a stablecoin contract, stealing approximately $724,000 in digital assets and distributing them across multiple blockchains.
Smart Contract Compromise Exposes WEMIX to Significant Theft
Layer-1 blockchain platform WEMIX experienced a substantial security incident after an attacker obtained unauthorized control over a contract linked to its WEMIX$ stablecoin. The breach resulted in approximately $724,000 in digital assets being stolen and moved across multiple blockchain networks within hours of detection.
According to WEMIX’s incident statement, the compromise occurred on Sunday at 9:17 UTC when an attacker exploited a vulnerability to gain control of a stablecoin-linked contract. Leveraging this access, the attacker generated approximately 5.23 million WEMIX$ tokens without authorization, representing an unauthorized expansion of the stablecoin supply. The newly created tokens were systematically converted into other cryptocurrency assets, yielding roughly 30,736 WEMIX tokens and 724,198.27 USDC.e (the bridged version of Circle’s USD Coin).
Assets Channeled Across Multiple Networks
The attacker moved the stolen USDC.e holdings across blockchain networks using bridge protocols, transferring funds to both Ethereum and the BNB Smart Chain. Once positioned on these networks, the stolen assets were swapped for additional cryptocurrencies, including Ether and Tether’s USDT, and distributed across multiple wallet addresses controlled by the attacker. Investigation revealed that portions of the stolen cryptocurrency were deposited into centralized cryptocurrency exchanges.
Upon identifying the attacker’s wallet addresses, WEMIX coordinated with cryptocurrency exchanges and stablecoin issuers to request immediate asset freezes on accounts connected to the incident. Multiple exchanges responded by implementing freeze orders on addresses linked to the breach.
Comprehensive Response and Ongoing Investigation
WEMIX deployed comprehensive protective measures to contain the incident and prevent further unauthorized activity. The network suspended all bridges connecting WEMIX3.0 to external blockchain networks, including infrastructure powered by Chainlink’s CCIP cross-chain protocol and the PLAY Bridge. Trading was suspended in liquidity pools vulnerable to exploitation, and foundation-provided liquidity was withdrawn from affected pools.
The platform temporarily halted the WEMIX$ Module and the PNIX decentralized exchange to allow security teams to investigate the breach thoroughly. WEMIX cautioned that both the root cause of the compromise and the full scope of the incident remain under investigation, with preliminary loss figures potentially subject to revision as details emerge.
This incident underscores persistent vulnerabilities in smart contract infrastructure and highlights how quickly attackers can move stolen assets across decentralized finance ecosystems. For the crypto market broadly, the breach reinforces the critical importance of robust security audits, rapid incident response protocols, and enhanced cross-chain security coordination to protect users and platform integrity.
Source: WEMIX, via Cointelegraph. Not financial advice.