Cointime

Download App
iOS & Android

Major Web3 Security Incidents in 2022

Validated Individual Expert

In early January, a major study “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research” was published. It was jointly created by the companies Beosin, Buidler DAO, Legal DAO and Footprint Analytics. The study consisted of an overview of the ten largest security incidents of 2022 in Web3, global statistics on crypto crimes and regulatory policies of different countries in relation to crypto. Also, this document contains instructions that will help protect yourself in Web3 and the authors’ forecasts for 2023.

According to the study, in 2022 there were more than 167 major attacks in Web3. The total losses from attacks of all types were about $3.6 billion, which is 47.4% higher than in 2021 (approximately $2.44 billion). Most of the losses were caused by attacks on cross-chain bridges — 12 incidents with losses totalling $1.89 billion. And most other attacks (113) were directed at the DeFi sector.

Loss Amount & Count by Project Type. Source: “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research”

If we take into account all crimes related to crypto, including pyramid schemes, scams, money laundering, attacks/exploits and others (without financial crimes), the losses for 2022 amount to more than $13.7 billion.

2022 Crypto Crimes. Source: “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research”

The report linked the decrease of global TVL in 2022 to these events. As we can see from the graph below, the events such as Beanstalk, Luna Crash, Harmony, Nomad, Tornado Cash Sanction, The Merge, Wintermute, BNB Chain, Mango Markets, FTX collapse were all followed by withdrawal of capital from the crypto markets.

2022 TVL Trend. Source: “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research”

Furthermore, the study presents a list of the ten largest security incidents for 2022. We have summarised this list, highlighting data about the type of attack and the amount of losses incurred:

  1. Ronin Network (Loss: $624 Million; Attack Type: Social engineering)
  2. BSC Token Hub (BNB Chain) (Loss: $560 Million; Attack Type: Blockchain vulnerability)
  3. FTX hack (Loss: $440 Million; Attack Type: Suspected rugpull)
  4. Wormhole (Loss: $326 Million; Attack Type: Contract vulnerability — validation issue)
  5. Nomad bridge (Loss: $190 Million; Attack Type: Contract vulnerability — validation issue)
  6. Beanstalk (Loss: $182 Million; Attack Type: Flashloan)
  7. Wintermute (Loss: $160 Million; Attack Type: Private key compromise)
  8. Mango markets (Loss: $116 Million; Attack Type: Price manipulation)
  9. Elrond (Loss: $113 Million; Attack Type: VM issue)
  10. Harmony (Loss: $100 Million; Attack Type: Private key compromise)
Top 10 Loss Projects. Source: “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research”

As for the chains that were victims of the attacks, number one for losses went to the Ethereum blockchain with losses mounting to more than $2.01 billion and 59 incidents. The second place was taken by the BNB Chain, which lost about $0.8 billion, but was ahead in the number of incidents — 72. The third place was held by the Solana blockchain with losses of about $0.51 billion and 7 incidents.

Loss Amount & Count by Chain. Source: “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research”

In 2022, according to the study, 243 rug pulls were carried out. The total amount of damage to the industry from rug pulls was about $425 million (excluding $440 million FTX incident)

Rug Pulls by Month. Source: “Global Web3 Security Report 2022 & Crypto Regulatory Compliance Research”

As for the regulation of cryptocurrencies, in 2022, countries like the United States, EU member countries, Hong Kong SAR, Singapore, Japan, South Korea, Malaysia and the United Arab Emirates actively participated in this legislative sphere. The authors of the study note that in 2023 the main trend in regulatory policy will be “systematization”.

“In 2022, crypto ‘bombshells’ exploded frequently, accompanied by a dramatic market downturn that caused severe turmoil in the industry. 2023 will certainly see a response from global regulators. A number of regulatory trends are already emerging in 2022. In our view, one of the overarching themes of global crypto regulatory developments in 2023 is likely to be the “systematisation of the regulatory framework”. A large number of jurisdictions with rapidly growing crypto industries (e.g. the US, UK, Canada, etc.) have not yet developed a systematic regulatory framework. In these jurisdictions, there have been a large number of regulations issued by various regulatory or enforcement bodies, but the fragmentation has left many of the underlying legal concepts poorly answered and has made practice difficult. The good news is that we are seeing a clear trend towards ‘systematisation’ in 2022.”

The authors of the study also talked about what can be expected in the security sector in 2023. They wrote that the global regulatory system will develop, the entire infrastructure will be strengthened, stolen funds will be returned more often, more attacks will be blocked before they begin, and users will be more aware of basic security rules.

In conclusion, we recommend you familiarize yourself with the third chapter of this study, which describes security guidelines for Web3 users. And we continue to observe.

Comments

All Comments

Recommended for you

  • Trump: Details of US-Iran Agreement to Be Released After Signing on 19th

    On June 16, during the G7 summit in Évian-les-Bains, France, U.S. President Trump stated that the details of the US-Iran agreement will be made public after its official signing on the 19th. (Xinhua News Agency)

  • Iranian Foreign Minister Announces Memorandum Signing on June 19

    On June 15, Iranian Foreign Minister Amir-Abdollahian stated that a meeting between the heads of the Iranian and American negotiating delegations is expected to take place in Switzerland on June 19, during which a memorandum of understanding between Iran and the United States will be signed, followed by the first round of subsequent negotiations. (CCTV International News)

  • U.S. Senior Officials: U.S. and Iran Sign Memorandum of Understanding

    On June 16, a senior U.S. official stated that the United States has signed a memorandum of understanding with Iran. U.S. President Trump and Vice President Pence signed the memorandum, and the Speaker of the Iranian Islamic Consultative Assembly also signed the document. The official also mentioned that the agreement stipulates the immediate opening of the Strait of Hormuz and the lifting of U.S. sanctions on Iran. Traffic in the strait will significantly increase starting immediately.

  • BTC Surpasses $67,000

    Market data shows that BTC has surpassed $67,000, currently priced at $67,197.47, with a 24-hour increase of 4.94%. The market is highly volatile, so please ensure proper risk management.

  • Musk's Wealth Reaches $1.2 Trillion as SpaceX Surpasses TSMC in Valuation

    On June 15, according to the latest global billionaire rankings released by Forbes, Elon Musk, the head of Tesla and SpaceX, has seen his personal wealth soar to an astonishing $1.2 trillion, setting a historical record. He became the world's first 'trillionaire' in the previous trading day. This wealth phenomenon is primarily attributed to the strong performance of his two flagship companies. Recent market data shows that SpaceX (SPCX) has reached a total valuation of $2.28 trillion (approximately $2.28 trillion), surging 8% in a single day, officially surpassing semiconductor giant TSMC (TSM), which has a market value of $2.26 trillion, and entering the top tier of U.S. stock market valuations, ranking sixth. Currently, the top three in the U.S. stock market by total market value are Nvidia ($5.05 trillion), Google, and Apple. SpaceX, with its absolute dominance in the commercial space and Starlink sectors, continues to see its valuation skyrocket, becoming the core pillar of Musk's trillion-dollar fortune.

  • Philadelphia Semiconductor Index Soars 4.7% in Early Trading

    On June 15, the Philadelphia Semiconductor Index opened high, rising by 4.7%. Nvidia's stock price increased by 2.67%, TSMC's stock price rose by 3.76%, Broadcom's stock price went up by 3.37%, Micron Technology's stock price surged by 9.31%, Advanced Micro Devices' stock price climbed by 6.61%, and ASML's stock price gained 1.47%.

  • SpaceX Raises Approximately $85.7 Billion in Initial Public Offering

    On June 15, SpaceX announced that underwriters have fully exercised their over-allotment option in the IPO, purchasing an additional 83.33 million shares. SpaceX has raised approximately $85.7 billion through the IPO.

  • Nasdaq Golden Dragon China Index Rises Over 1%

    On June 15, the Nasdaq Golden Dragon China Index rose over 1%. Canaan Inc. increased by 13.84%, EHang soared by 10.86%, Zai Lab gained 5.59%, Xunlei rose by 5.16%, and Kingsoft Cloud climbed by 5.31%.

  • Anthropic Sued by User for Allegedly Inflating Subscription Usage Limits

    On June 15, according to The Wall Street Journal, a consumer is seeking compensation from Anthropic for its highest-tier subscription plan and has accused the company of exaggerating the usage limits provided. The lawsuit claims that Anthropic misled consumers regarding the usage restrictions of its Max 5x and Max 20x subscription plans. The cheapest Pro subscription for individual users costs between $17 and $20 per month, while the Max 5x costs $100 per month and the Max 20x costs $200 per month. The lawsuit alleges that Anthropic advertised the Max 5x and Max 20x plans as having 5 times and 20 times the usage limits of the Pro plan, respectively, but the actual limits are difficult to determine and appear to be far below the advertised levels. The lawsuit seeks to qualify for a class action on behalf of users who purchased these packages since April of last year.

  • Web3 data and AI company Validation Cloud completes $10 million in new round of financing

     Web3 data and AI company Validation Cloud announced a $10 million financing round from True Global Ventures. The company plans to use the funds to expand its AI products and achieve seamless access to Web3 data.