Radiant Capital’s $50 Million Breach Reveals New Crypto Vulnerabilities

Multi-signature security compromised via hardware wallet malware

  • Radiant Capital lost approximately $50 million due to a security breach.
  • Sophisticated malware compromised three developers’ hardware wallets.
  • Attackers used legitimate-looking transactions to mask malicious activity.
  • Industry-standard procedures failed to detect the multi-signature exploit.
  • U.S. law enforcement and ZeroShadow are working to recover stolen assets.

On October 16, 2024, Radiant Capital faced a catastrophic security breach, losing nearly $50 million USD.

- Advertisement -

This incident rocked the crypto world, as attackers infiltrated the defenses of a decentralized autonomous organization (DAO) known for its robust security measures.

The breach, which compromised three developers using hardware wallets, raises critical questions about the vulnerabilities in multi-signature setups, a previously trusted line of defense.

A Methodical Attack

According to Radiant Capital, the attackers targeted trusted contributors within the Radiant DAO, strategically planting sophisticated malware on their devices.

These developers, who were geographically dispersed, followed industry-standard operating procedures.

- Advertisement -

They used Safe{Wallet} (formerly known as Gnosis Safe) and Tenderly for transaction simulations and verifications.

However, the attack’s sophistication lay in the malware’s ability to present legitimate-looking transactions, only to execute malicious ones in the background, bypassing all manual checks.

The Illusion of Security

During a routine multi-signature emissions adjustment, the attackers exploited the normalcy of transaction failures to extract multiple compromised signatures.

This method allowed them to execute a transferOwnership action, draining funds from Radiant’s core markets on Arbitrum and Binance Smart Chain (BSC).

The breach went undetected during manual reviews and simulations, as confirmed by external security teams, SEAL911 and Hypernative.

Identifying Vulnerabilities

The breach exposed serious gaps in current DeFi security practices.

Despite multiple layers of verification, including checks on Tenderly and display of blind-signing signatures on Ledger hardware wallets, the attackers masked their malicious intent.

This attack underscores the need for immediate improvements in security protocols. Recommended strategies include developing a multi-layer signature verification system and using an independent device for transaction verification to ensure transparency and prevent similar breaches.

A Community in Crisis

The Radiant DAO is working around the clock with U.S. law enforcement and ZeroShadow to recover the stolen assets.

All users have been urged to revoke approvals on all chains. Radiant’s contributors have implemented preventative measures such as creating new cold wallet addresses and reducing the number of required signers in multi-signature setups to enhance security.

They are also using input data decoders on Etherscan to verify transaction data before signing.

A Call for Change

This breach highlights the ever-evolving challenges facing the DeFi community. As Radiant Capital rebuilds, it plans to deploy new Safes for RIZ markets and introduce timelock contracts for added protection, although these measures are not foolproof.

By distributing responsibilities across multiple roles, the DAO aims to prevent any single point of failure.

Radiant Capital’s breach reflects a crucial turning point in the crypto industry. It serves as a stark reminder that even the most trusted systems can fall prey to determined adversaries.

As the community grapples with the implications, it is clear that innovation in security measures is not just necessary but urgent.

The incident should galvanize all stakeholders in the crypto sphere to re-evaluate their defenses, ensuring that vulnerabilities are addressed before they are exploited.

Previous Articles:

- Advertisement -

Latest News

SEC Commissioner Caroline Crenshaw Resigns; Crypto Win Ahead

Caroline Crenshaw has resigned from the Securities and Exchange Commission, announced in a Friday...

CryptoQuant: Whale ‘Reaccumulation’ Narrative Overstated Now

Onchain data from CryptoQuant indicate claims of large-scale Bitcoin reaccumulation by whales are overstated.Exchange...

XRP Eyes Rally as ETFs and Buy Signal Boost 2026 Hopes Surge

Ripple settled its US lawsuit in 2025, helping XRP reach a $3.65 all-time high...

Bitfinex Hacker Ilya Lichtenstein Freed Early via First Step

Ilya Lichtenstein was released from prison after serving 14 months of a five-year sentence...

Waymo’s 2026 Expansion Could Drive Big Gains for GOOGL Surge

Alphabet rallied more than 60% in 2025 and enters 2026 with investor optimism tied...
- Advertisement -

Must Read

17 Best Cryptocurrency Wallets

If you are looking for a list with the best cryptocurrency wallets, then you've landed on the right page. Cryptocurrency, as we all know,...
Bitcoin (BTC) $ 90,230.00 1.96%
Ethereum (ETH) $ 3,136.21 4.80%
XRP (XRP) $ 2.02 7.95%
Bittensor (TAO) $ 249.49 9.12%
Polkadot (DOT) $ 2.14 6.97%
Cardano (ADA) $ 0.394763 10.74%
Chainlink (LINK) $ 13.39 6.59%
Hyperliquid (HYPE) $ 24.51 1.81%
Monero (XMR) $ 423.70 0.58%
Hedera (HBAR) $ 0.122171 7.56%
Toncoin (TON) $ 1.81 6.41%