Share this article

Defi Hacks Remain a Major Threat Despite 50% Decline in 2023: Halborn

The report warns that protocols should improve security by using multi-sig wallets and vetting counterparty code.

Updated Aug 12, 2024, 2:23 p.m. Published Aug 12, 2024, 12:15 p.m.
(Mika Baumeister/Unsplash)
(Mika Baumeister/Unsplash)
  • Total amount stolen in 2023 dropped by 50% compared to the previous year.
  • Off-chain hacks including private key theft are on the rise, accounting for 57.5% of the amount stolen in 2023.
  • Halborn warns that 21% of hacked protocols used multi-sig wallets and that the majority of hacks occurred on protocols that were not audited.

Decentralized finance (DeFi) hacks remain a major threat to the industry despite a decline in the amount stolen in 2023, according to a report by blockchain security firm Halborn.

The report summarizes the top 100 DeFi hacks between 2016 and 2023, the accumulated total of which comes to $7.4 billion with the majority of attacks occurring on Ethereum, Binance Smart Chain and Polygon.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

Although on-chain hacks including smart contract exploitation, price manipulation and governance attacks are most prevalent, off-chain attacks like private key theft represent 29% of the total number of attacks and 34.6% of the funds stolen in general. In 2023 off-chain attacks made up 56.5% of total attacks and accounted for 57.5% of the stolen amount.

The report adds that just 21% of hacked protocols used multi-sig wallets, which is a security method that requires multiple people to approve a transaction at the same time.

Halborn also warns that the majority of on-chain attacks occurred on protocols that were not audited and that protocol's lack of faulty input verification or validation is the main cause of loss in terms of smart contract exploitation.

Cross-chain bridges also remain as a key attack vector for bad actors, Halborn adds that protocols should "review the code carefully" before using a cross-chain bridge.

Last week, the Ronin Bridge has hacked resulting in a loss of $12 million, that followed a $625 million exploit to the same protocol two years prior.

An Immunefi report earlier this year showed that hacks targeting DeFi had resulted in the loss of $473 million in the first half of 2024.

More For You

KuCoin Hits Record Market Share as 2025 Volumes Outpace Crypto Market

16:9 Image

KuCoin captured a record share of centralised exchange volume in 2025, with more than $1.25tn traded as its volumes grew faster than the wider crypto market.

What to know:

  • KuCoin recorded over $1.25 trillion in total trading volume in 2025, equivalent to an average of roughly $114 billion per month, marking its strongest year on record.
  • This performance translated into an all-time high share of centralised exchange volume, as KuCoin’s activity expanded faster than aggregate CEX volumes, which slowed during periods of lower market volatility.
  • Spot and derivatives volumes were evenly split, each exceeding $500 billion for the year, signalling broad-based usage rather than reliance on a single product line.
  • Altcoins accounted for the majority of trading activity, reinforcing KuCoin’s role as a primary liquidity venue beyond BTC and ETH at a time when majors saw more muted turnover.
  • Even as overall crypto volumes softened mid-year, KuCoin maintained elevated baseline activity, indicating structurally higher user engagement rather than short-lived volume spikes.

More For You

Stablecoins moved $35 trillion last year but only 1% of it was for 'real world' payments

A Visa card being held to next to a payment terminal. (CardMapr.nl/Unsplash)

While stablecoins settled around $35 trillion last year, only around 1% of that represented genuine payments like remittances and payroll, a new report found.

What to know:

  • Stablecoins processed more than $35 trillion in transactions last year, but only about 1% of that reflected real-world payments, a report by McKinsey and Artemis Analytics found.
  • The study estimated that roughly $390 billion in genuine stablecoin payments, such as vendor payments, payrolls, remittances and capital markets settlements.
  • Despite rapid growth and increasing interest from traditional payment firms like Visa and Stripe, true stablecoin payments still account for just a tiny fraction of the more than $2 quadrillion global payments market, the report said.