Share this article

DeFi Has Become Crypto Crime’s Main Arena, Crystal Blockchain Says

Hackers and scammers have shifted from breaching centralizing entities to exploiting decentralized projects, according to a new report.

Updated May 11, 2023, 4:18 p.m. Published Jul 27, 2022, 2:00 p.m.
Crypto criminals are increasingly targeting DeFi protocols. (Andrey_Popov/Shutterstock)
Crypto criminals are increasingly targeting DeFi protocols. (Andrey_Popov/Shutterstock)

More than $14.5 billion in crypto has been lost to hacks and scams since 2011, and DeFi (decentralized finance) is attackers’ new favorite target, says analytics firm Crystal Blockchain.

In the past 11 years, there have been 167 hacks of DeFi protocols and 123 security breaches on centralized exchanges, according to Crystal's new report. While breaching centralized platforms accounted for over $3.2 billion in crypto stolen, more than $4 billion was funneled out of exploited DeFi projects. The remaining billions were lost to scammers.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

Since 2021, hackers’ attention has shifted notably toward decentralized protocols. This year, decentralized projects have been hacked 20 times more often than centralized ones, the report says, and funds stolen from the top 10 DeFi attacks exceeded $2.5 billion.

The main reason for the acceleration of attacks on DeFi projects is the sector’s growth, Nick Smart, Crystal’s director of blockchain intelligence and data, told CoinDesk. While projects are rushing to market with insufficient testing, centralized exchanges are improving their security, he said, bowing to user demand and heightened attention from regulators.

“There is a saying that nothing is unhackable – all you need is enough time, talent and creativity and you'll get there,” Smart said. “And some illegal hacking groups, like nation-state backed ones such as North Korea's Lazarus, are very effective and very focused on exploiting such opportunities.”

Type of crimes on the crypto market  / Crystal Blockchain
Type of crimes on the crypto market / Crystal Blockchain

“The most popular method of crypto-theft until 2021 was the infiltration of crypto-exchange security systems – currently the tendency has moved to DeFi hacks,” the report says. “CEX hacks are currently causing the least amount of financial damage.” The largest-ever hack of a CEX (centralized exchange) is the 2018 Coincheck breach in which $535 million of NEM tokens were stolen.

The largest DeFi attack was March’s Ronin network hack, when more than $650 million's worth of crypto was funneled from the popular Axie Infinity NFT (non-fungible token) game and laundered through the Tornado Cash mixer. The service received around 350,000 ether in the first half of 2022, which is more than half of all ETH that ever went through Tornado Cash, according to Crystal.

Read more: Ronin Attack Shows Cross-Chain Crypto Is a ‘Bridge’ Too Far

In addition to hacks, the crypto market has seen some 74 fraudulent schemes blow up since 2011, leading to more than $7.3 billion going to scammers, according to the report.

Another surging kind of crypto crime comes in the form of so-called rug pulls, whereby a project’s founders either run away with users’ money or dump the token they created on the community. Rug pulls became the most popular kind of fraud in 2022, Crystal said. Out of 36 cases of fraud, 34 were associated with rug pulls, mostly on Binance Smart Chain (BSC), a blockchain network run by major global centralized exchange Binance. Twenty-three rug pulls out of 34 happened on BSC, Crystal said.

But in dollar terms, the most money has been stolen on the Ethereum blockchain – probably because it’s the most popular DeFi platform overall. It’s followed by Solana, Binance Smart Chain, Fantom and Polygon, Crystal said.

On Ethereum, $31 million's worth of crypto had been stolen through scams and rug pulls, along with $26 million on Binance Smart Chain, $10 million on Solana and $2 million on Fantom.

More For You

Protocol Research: GoPlus Security

GP Basic Image

What to know:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.

More For You

Pye Finance Raises $5M Seed Round Led by Variant and Coinbase Ventures

Scattered pile of $1 bills (Gerd Altmann/Pixabay, modified by CoinDesk)

The platform aims to make locked Solana staking positions tradable via an onchain marketplace.

What to know:

  • Pye Finance raised a $5 million seed round led by Variant and Coinbase Ventures, with participation from Solana Labs, Nascent and Gemini.
  • The startup is building an onchain marketplace on Solana for time-locked staking positions that can be traded.
  • Pye says the product targets Solana’s large pool of staked SOL, worth roughly $75 billion, and aims to give validators and stakers more flexibility over terms and reward flows.