More than $10 million stolen from crypto platform THORChain
2026-05-18T08:51:55Z•f31903bd4e11c187a3ed366c33f5be9263dc6cfad7d6c25e4617e812c6931602
$10.7MCISACisco SD-WANDream MarketODNIOpenAIPyPITHORChainTanStackarrestauthentication-bypasscrypto-theftdarknetelection-securityforeign-election-threatslaw-enforcementmacOSnpmpatchingsupply-chain-attackunauthenticated-exploitvault-compromise
What happened
Multiple security incidents and responses: THORChain reported a compromise of one of six vaults, losing about $10.7M; an ongoing investigation is underway. CISA ordered all federal agencies to urgently patch a Cisco SD-WAN vulnerability (Cisco published a patch) that can allow unauthenticated remote attackers to bypass authentication and obtain administrative privileges. OpenAI urged macOS users to update after a supply‑chain campaign targeting the TanStack library and other npm and PyPI packages tied to several AI firms. The Office of the Director of National Intelligence designated officials
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- f31903bd4e11c187a3ed366c33f5be9263dc6cfad7d6c25e4617e812c6931602
- Enrichment time
- 2026-05-18T08:51:55Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.