← Radar

Incident case file

Sign in to watch

TAC Protocol Cross-Chain Bridge Exploit — White Hat Resolution

Incident date May 13, 2026

0 views

ResolvedTONCross-chain bridge exploitCluster: TAC-TON-2026-05

Estimated loss

$2.8M

Victims identified

1
Victim group joining is coming soon.

Investigation

85%

Facts and investigation

Attacker: Unidentified (white hat resolution, anonymous; accepted ~10% bounty)

Funds moved to: Returned to TAC team after white hat bounty acceptance; ~10% retained as bug bounty
No attacker EOAs publicly disclosed. The exploit targeted only the TON side of TAC's cross-chain bridge. ERC-20 assets bridged from Ethereum and the native TAC token were not affected. The hacker accepted approximately 10% of the stolen amount as a bug bounty, allowing TAC to classify the incident as a white hat resolution.

Timeline: On May 13, 2026, an attacker exploited a vulnerability on the TON side of TAC Protocol's cross-chain bridge, draining approximately $2.8M in assets (including USDT, BLUM tokens, and tsTON). TAC immediately paused the bridge upon detection. Within the following 24 hours, the team engaged with the hacker on-chain and offered a 10% bug bounty in exchange for the return of remaining funds. The hacker accepted, and TAC publicly relabeled the incident as a white hat operation. Importantly, TAC clarified that only the TON-side contracts were impacted; ERC-20 bridge counterparties on Ethereum and the native TAC token remained intact. The team published a post-mortem and committed to full compensation for affected users, financed through Foundation reserves. SEAL 911 and law enforcement were notified during the negotiation window as a precaution.

Sources and coverage

Victim testimonies

No testimonies yet.

+ Add my testimony → (coming soon)