SecondFi will wind down after a $2.6 million ADA theft, while users still await recovery tools that were initially expected within weeks of the exploit. Cardano-based wallet SecondFi is preparing to shut down after a security breach exposed issues around wallet security and left hundreds of users awaiting recovery options. SecondFi said it will wind down SecondFi and Yoroi wallet services after attackers stole about 16.1 million ADA, worth roughly $2.6 million, due to a cryptographic flaw in its wallet software, according to an update published on Wednesday. The platform said an independent investigation by blockchain intelligence provider Groom Lake identified a sophisticated external actor behind the attack and found indicators potentially linked to North Korea’s Lazarus Group, although no attribution has been confirmed. It added that the breach affected 374 wallets. Read more
SecondFi says it has completed forensic investigations, taken a final balance snapshot and is preparing to return assets. Cardano wallet SecondFi has identified a recovery path for users affected by Tuesday's exploit and expects to begin returning assets in about two weeks, following testing and security reviews. According to a Saturday statement by Phillip Pon, CEO of SecondFi developer Emurgo, the company completed forensic investigations and established a recovery pathway for affected users. Pon said the coming week would be spent building the solution, followed by another week of testing before assets begin to be returned. Pon urged users to refrain from migrating assets or taking actions outside official guidance, saying the recovery process was designed around existing wallet states and that independent action could complicate the secure return of funds. Read more