Incident case file
Sign in to watchAllbridge Phantom CCTP Deposit Exploit — Base Router Drain
0 views
Estimated loss
Victims identified
Investigation
Facts and investigation
Ledger
Attacker
Funds moved to
Linked
Chronology
1 beatJul 25/26, 2026, 20:32:55 UTC: Attacker calls Circle's MessageTransmitterV2.sendMessage on Polygon (tx 0x2a88d79756b4547b33fea7b3c1420793680e2b8952bef4c65e99879e16b22140), constructing a forged CCTP-style message declaring a 1,000,000 USDC transfer with no actual USDC burned. Circle's attestation service signs the message as authentic, since it only verifies the message content was not tampered with — not that a mint actually occurred. The message sits attested for 24 days. Aug 19, 01:47:11 UTC (block 50157342): A legitimate CCTP deposit from another user mints ~191,112 USDC into Allbridge's Base router, bringing its balance to ~191,156 USDC. Aug 19, 01:47:17 UTC (block 50157345, six seconds later): Attacker's transaction 0x9f906fcd8fceaa6745e8d1c004861dcfa9b5e6a893fe1e8c5d0013a4e982e6a8 redeems the forged message via CCTPTokenMessenger.receiveCctpMessage. The contract lacks checks on the message sender (should equal the remote TokenMessenger) and recipient (should equal Circle's TokenMessengerV2), so it credits the fabricated 1,000,000 USDC as a real deposit without confirming any balance increase. An Aave flash loan tops the router to the declared figure; Router.receiveToken pays out 999,000 USDC after a 0.1% fee. Attacker repays the flash loan plus premium, netting 189,752 USDC — draining the router's entire balance, most of which belonged to the in-flight legitimate deposit. 02:12-02:46 UTC: A copycat (0xf33f3504...) reproduces the exploit twice within 25-59 minutes, draining the router's residual ~1,000 USDC fee balance down to $0.001. 05:15:52-09:31:00 UTC: Allbridge's owner deregisters the CCTP and LayerZero OFT messengers across Base, Polygon, and Arbitrum as a kill switch (not a code fix); receiveCctpMessage itself remains unpatched. 06:28:35-06:37 UTC: Attacker withdraws and launders proceeds into ~99 ETH, unmoved since. Aug 22, 2026: SlowMist independently publishes a fully convergent post-mortem ('A Cross-Chain Attack Spanning One Month'), confirming Defimon's technical reconstruction and recommending that redeemable deposits only be created after an observed balance increase. As of publication, Allbridge has issued no official public statement about the incident.
Sources and coverage
- Articledefimon.xyzhttps://defimon.xyz/blog/allbridge-hack-august-2026
- Articleslowmist.medium.comhttps://slowmist.medium.com/a-cross-chain-attack-spanning-one-month-analysis-of-the-allbridge-hack-32a6183bce08
- Articlex.comhttps://x.com/SlowMist_Team/status/2091308436129579289
- Articlehacked.slowmist.iohttps://hacked.slowmist.io/
- Articlebasescan.orghttps://basescan.org/address/0xaA119F7442Ecc28b9a8f236707aDa8362cFF24fF
Victim testimonies
No testimonies yet.
+ Add my testimony → (coming soon)