Share this article

Multisig Failures Dominate as $2B Is Lost in Web3 Hacks in the First Half

A wave of multisig-related hacks and operational misconfiguration led to catastrophic losses in the first half of 2025.

Alt

What to know:

  • Over $2 billion was lost to Web3 hacks in the first half of the year, with the first quarter alone surpassing 2024’s total.
  • Multisig wallet mismanagement and UI tampering caused the majority of major exploits.
  • Hacken urges real-time monitoring and automated controls to prevent operational failures.

Crypto investors lost around $2 billion to hacks in the first half of the year, with the first quarter alone topping all the losses of 2024, according to a report from security firm Hacken.

The most intriguing finding was that multisignature wallets, which require several people to sign a transaction before it is executed were frequently compromised due to user interface tampering and signer mismanagement.

jwp-player-placeholder
STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

The infamous first-quarter hack of centralized exchange Bybit resulted in a $1.46 billion breach when a compromised safe‑wallet interface tricked authorized signers.

It was the third quarter in a row in which the single largest hack originated from multisig lapses.

The first half also saw $300 million in rug pulls. Phishing and social engineering campaigns also contributed heavily, chalking up nearly $100 million. Smart contract vulnerabilities were negligible, accounting for less than 2% of total losses.

Access-control issues remain the dominant theme, responsible for over 80% of every stolen dollar this year.

Hacken urged a shift from reactive auditing to real-time operational defenses. Its report recommends the use of of AI-powered monitoring systems that continuously validate multisig transactions, detect deviations in signer activity and trigger automated safeguards.

It also recommends that both CeFi and DeFi projects treat signer protocols, multisig front-ends, and human workflows as security-critical infrastructure, bolstering them with automation, training and tighter governance.

Oliver Knight

Oliver Knight is the co-leader of CoinDesk data tokens and data team. Before joining CoinDesk in 2022 Oliver spent three years as the chief reporter at Coin Rivet. He first started investing in bitcoin in 2013 and spent a period of his career working at a market making firm in the UK. He does not currently have any crypto holdings.

Oliver Knight

More For You

Scaramucci Says Bitcoin Treasury Trend Will Fade Despite Saylor’s Success

Consensus 2025: Anthony Scaramucci, Founder, SkyBridge Capital

The SkyBridge founder told Bloomberg that companies adding crypto to their balance sheets is temporary.

What to know:

  • Anthony Scaramucci said the bitcoin treasury strategy is only a short-term trend.
  • The success of Strategy sparked other companies to adopt the approach.
  • Some firms have started adding ether or XRP to their treasuries.