Aztec Network Exploited for $2.19M via ZK Proof Mismatch
SlowMist confirmed that a deprecated Aztec Connect smart contract was exploited for approximately $2.19 million. The root cause was identified as a validation flaw resulting from a mismatch between ZK proof verification and Layer 1 settlement.
Additional reporting confirmed the Aztec Network exploit at $2.19M with SlowMist attributing it to a deprecated Aztec Connect contract, complementing the ZK proof mismatch root cause identified June 15.
Story timeline · 11 days
- Jun 24, 20265Jaredfromsubway Hacker Routes Stolen Funds to Tornado Cash, Declines 50% Bounty
Attacker declined the offered 50% bounty and routed stolen funds to Tornado Cash rather than returning them.
- Jun 22, 20265Jaredfromsubway MEV Bot Exploited for $7.5M via Transaction Approval Trap
Exploit loss confirmed at $7.5M; mechanism identified as transaction approval trap; DeFi security risk framing added.
- Jun 21, 20265Tornado Cash Used in JaredFromSubway Exploit Fund Laundering
Attacker who executed the MEV bot reversal attack on jaredfromsubway.eth transferred a portion of the $7.5M exploit proceeds into Tornado Cash.
- Jun 20, 20265Aztec Legacy Contract Exploit Causes $300K+ Additional Losses; Second Incident in One Week
Aztec suffered a second exploit within the same week; Starknet AMM mySwap separately drained for $300K in a distinct incident on the same day.
- Jun 18, 20265Aztec Suffers Second Exploit in Under a Week for $2.1M
SlowMist confirmed Aztec suffered a second exploit of approximately $2.1M within less than a week of the first $2.19M exploit, both attributed to deprecated contract vulnerabilities.
- Jun 16, 20265· this storyAztec Network Exploited for $2.19M via ZK Proof Mismatch
Additional reporting confirmed the Aztec Network exploit at $2.19M with SlowMist attributing it to a deprecated Aztec Connect contract, complementing the ZK proof mismatch root cause identified June 15.
- Jun 16, 20264Dubai VARA Mandates Quarterly Data-Driven Risk Model Updates for Crypto Businesses
VARA issued specific requirements for crypto firms to use data-driven risk models with mandatory quarterly updates, expanding on general AML tightening reported June 14.
- Jun 15, 20266Aztec Network Exploited for $2.15M via ZK Proof–L1 Settlement Mismatch
Aztec Network suffered a $2.15M exploit with root cause confirmed as a ZK proof–L1 settlement mismatch, consistent with prior warnings about legacy DeFi contract risk.
- Jun 14, 20265AI-Speed Hackers Identified as Emerging Threat to Crypto Codebases
CoinDesk specifically flagged AI-speed hackers as the next potential billion-dollar threat to crypto, building on prior AI exploit acceleration reporting.
- Jun 12, 20265AI Accelerating Discovery of DeFi and Smart Contract Exploits; Legacy Contracts Flagged as Ongoing Risk
A new report highlights AI systems actively accelerating the identification of DeFi attack vectors, adding a systematic threat dimension to the isolated exploit incidents reported previously.
- Jun 11, 20265DeFi Exploits Drain $36M+ Via Unverified Contracts; Governance Attack Drains Balancer Pool