Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
DeFi Smart Contract Weaknesses Face Examination Following UXLINK's $11 Million Breach

DeFi Smart Contract Weaknesses Face Examination Following UXLINK's $11 Million Breach

Bitget-RWA2025/09/25 12:43
By:Coin World

- UXLINK suffered a $11.3M hack via a delegateCall vulnerability, enabling attackers to mint 2B tokens and drain $4.5M in stablecoins, 3.7 WBTC, and 25 ETH. - The project deployed a fixed-supply Ethereum mainnet contract post-audit, removing minting/burning functions to prevent future exploits and coordinate token migration. - Hackers later lost 542M UXLINK tokens to a phishing attack, while UXLINK froze most stolen assets and partnered with PeckShield and exchanges to trace funds. - The breach triggered a

DeFi Smart Contract Weaknesses Face Examination Following UXLINK's $11 Million Breach image 0

UXLINK has completed an extensive security review of its updated token contract, representing a major milestone in addressing the $11.3 million security breach that took place on September 22, 2025. The attack exploited a "delegateCall" flaw in the project’s multi-signature wallet, allowing the perpetrator to create roughly 2 billion UXLINK tokens and withdraw assets such as $4.5 million in stablecoins, 3.7 WBTC, and 25 ETH. The team has confirmed that the revised contract is now live on the

mainnet, with minting and burning functions removed to ensure a capped supply and reduce future vulnerabilities [1].

The exploit led to a dramatic 70% drop in UXLINK’s token value, plummeting from $0.30 to $0.09 and wiping out about $70 million in market cap. Chainalysis reports indicate that 490 million tokens were sold through decentralized exchanges (DEXes), converting to 6,732 ETH (worth $28.1 million). Centralized platforms like Upbit and OKX halted deposits from flagged wallets to prevent additional losses [2]. This incident also exposed deeper weaknesses in decentralized systems, with experts warning that such exploits could erode confidence in unaudited smart contracts [3].

To address the situation, UXLINK is executing a 1:1 swap of old tokens for those on the new contract, working closely with leading exchanges to ensure a smooth transition. The redesigned system shifts cross-chain functionality to off-chain solutions or partner networks, lessening dependence on on-chain minting. The team has stressed its commitment to transparency, collaborating with PeckShield and law enforcement to track stolen funds and freeze hacker-controlled addresses. Exchanges such as OKX and Bybit have agreed to support the migration, which is set to begin on September 23, 2025 [1].

In an unexpected development, the attacker—after making off with $28.1 million—became a victim of a phishing scam associated with the Inferno Drainer network. This secondary breach resulted in the theft of over 542 million UXLINK tokens, highlighting the persistent dangers within decentralized finance. Nevertheless, UXLINK stated that the majority of stolen assets remain frozen, and investigations are ongoing to follow the money trail and recover funds [3].

This event has brought renewed attention to the importance of smart contract security, especially for social infrastructure projects. While UXLINK’s 55 million users were not directly impacted, the breach poses indirect risks to the platform’s reputation. The project’s rapid actions—including audits, exchange partnerships, and regular updates—reflect a broader industry push for tighter regulations and mandatory audits in the evolving DeFi sector of 2025 [2].

Industry observers point out that the hack’s aftermath saw trading volumes soar by 1,360% to $478 million. Although panic selling caused significant value loss, the potential for price recovery depends on UXLINK’s efforts to rebuild trust through open governance and a fixed token supply. By focusing on supply limits and cross-chain collaborations, the project aims to restore investor confidence in a stablecoin market valued at $280 billion [3].

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

AVNT Plunged by 1059.99% Within a Day During Intense Market Fluctuations

- AVNT plummeted 1059.99% in 24 hours on Sep 28, 2025, with 3155.62% 7-day losses amid extreme volatility. - Analysts attribute the crash to shifting market sentiment, algorithmic trading, and large participant positioning realignment. - Technical analysis and backtesting strategies are being evaluated to assess systematic risk mitigation and momentum shifts. - Despite short-term declines, AVNT rose 6816.05% over 1 month and 1 year, highlighting complex market dynamics.

Bitget-RWA2025/09/28 05:52
AVNT Plunged by 1059.99% Within a Day During Intense Market Fluctuations

WLFI Jumps 53.27% in a Day as Price Spikes Briefly

- WLFI surged 53.27% in 24 hours and 548.78% in a week, but fell 1109.21% over 1 month and 1 year. - Short-term bullish momentum contrasts with long-term bearish trends, attracting retail and institutional investors. - Technical indicators suggest potential upward pressure, though caution is advised due to broader bearish context. - Analysts link gains to on-chain activity or strategic shifts by major holders, despite no official announcements.

Bitget-RWA2025/09/28 05:42
WLFI Jumps 53.27% in a Day as Price Spikes Briefly

Fed Rate Cut Hopes Fade as Crypto ETFs See $660M Outflow

- Bitcoin and Ethereum ETFs recorded $660M net outflows as macroeconomic uncertainty and regulatory scrutiny drove investor caution. - Major issuers like Fidelity (FBTC/FETH) and Grayscale (GBTC/ETHE) led redemptions, with cumulative Ethereum ETF outflows hitting $500M. - Prices fell 1.7% for Bitcoin and 1.5% for Ethereum, while the Crypto Fear and Greed Index hit 32, signaling extreme bearish sentiment. - Analysts warn of deeper corrections if key support levels break, with institutional flows and U.S. in

Bitget-RWA2025/09/28 05:18
Fed Rate Cut Hopes Fade as Crypto ETFs See $660M Outflow

Investors Rush to MoonBull’s Structured Presale: 27.40% Surge Drives 24,540% ROI Pursuit

- MoonBull ($MOBU) offers 24,540% ROI via a 23-stage presale with 27.40% price hikes per stage, targeting $0.00616 listing price. - Structured incentives include 95% APY staking, 2% transaction reflections, and 1% token burns to drive value appreciation and liquidity. - A 15% referral bonus and audited smart contracts aim to build trust, contrasting with Shiba Inu's speculative model through fixed supply and locked liquidity. - The project's Ethereum-based infrastructure and 73.2B token supply prioritize c

Bitget-RWA2025/09/28 05:18
Investors Rush to MoonBull’s Structured Presale: 27.40% Surge Drives 24,540% ROI Pursuit