Skip to content

Polymarket suffers security breach as attacker drains internal wallet

Polymarket suffers security breach as attacker drains internal wallet
Paul L.

The world’s largest decentralized prediction market platform, Polymarket, suffered a security incident that resulted in the loss of approximately $520,000 to $700,000 in cryptocurrency.

In this line, Blockchain investigator ZachXBT first highlighted the suspicious activity on May 22 after noticing large outflows from contracts linked to the platform on the Polygon (POL) blockchain.

The incident involved rapid withdrawals, with reports indicating that an attacker drained around 5,000 POL tokens every 30 seconds from addresses associated with Polymarket’s UMA CTF Adapter.

Polymarket exploit transfers. Source: Arkham

The adapter serves as a key integration for market settlement through UMA’s Optimistic Oracle system. Funds, primarily in USDC and POL, flowed to an attacker-controlled address beginning with 0x8F98. The systematic nature of the drains suggested the use of an automated script.

Polymarket responded swiftly, with the team clarifying that the breach did not stem from a vulnerability in the platform’s core smart contracts or a compromise of user funds.

Instead, the incident originated from the exposure of a private key belonging to an outdated internal operations wallet, reportedly six years old, used for rewards payouts and system top-ups. The wallet held treasury funds rather than customer deposits or trading collateral.

Polymarket response 

Engineers immediately rotated keys, revoked the compromised access, and collaborated with ZachXBT and various exchanges to trace and recover portions of the stolen assets.

According to updates, the platform successfully recovered about $164,000 of the total drained amount, which ranged between $573,000 and $700,000 depending on token price fluctuations at the time.

Notably, trading on Polymarket continued without interruption throughout the event, and market resolutions remained unaffected.

As one of the most prominent prediction markets, Polymarket processes significant trading volumes, making such incidents particularly visible within the decentralized finance space.

Best Crypto Exchange for Intermediate Traders and Investors

  • Invest in cryptocurrencies and 3,000+ other assets including stocks and precious metals.

  • 0% commission on stocks - buy in bulk or just a fraction from as little as $10. Other fees apply. For more information, visit etoro.com/trading/fees.

  • Copy top-performing traders in real time, automatically.

  • eToro USA is registered with FINRA for securities trading.

30+ million Users worldwide
Securities trading offered by eToro USA Securities, Inc. (“the BD”), member of FINRA and SIPC. Cryptocurrency offered by eToro USA LLC (“the MSB”) (NMLS: 1769299) and is not FDIC or SIPC insured. Investing involves risk, and content is provided for educational purposes only, does not imply a recommendation, and is not a guarantee of future performance. Finbold.com is not an affiliate and may be compensated if you access certain products or services offered by the MSB and/or the BD
Finbold Career

Join Finbold's newsroom, become a Sales Executive today!

Apply now to join Finbold as a crypto/finance news writer!

Latest posts

Finance Digest

By subscribing you agree with Finbold T&C’s & Privacy Policy

Related posts

Home

IMPORTANT NOTICE

Finbold is a news and information website. This Site may contain sponsored content, advertisements, and third-party materials, for which Finbold expressly disclaims any liability.

RISK WARNING: Cryptocurrencies are high-risk investments and you should not expect to be protected if something goes wrong. Don’t invest unless you’re prepared to lose all the money you invest. (Click here to learn more about cryptocurrency risks.)

By accessing this Site, you acknowledge that you understand these risks and that Finbold bears no responsibility for any losses, damages, or consequences resulting from your use of the Site or reliance on its content. Click here to learn more.