Currencies38306
Market Cap$ 2.27T-0.59%
24h Spot Volume$ 25.07B+51.1%
DominanceBTC56.76%+0.25%ETH10.20%+1.49%
ETH Gas1.83 Gwei
Cryptorank
/

On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach


On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach

Share:

AI Overview

Triple-A, a Singapore-based stablecoin payments firm, said it discovered unauthorized access to wallets holding its own digital assets on July 25, placed certain services in maintenance for about three hours and later restored operations while insisting client funds were held separately in trust. On-chain analysis shows 12 inbound transfers totaling 5,287.08568411 ETH into address 0x01F83B5d4fb30E8AA3daC1681B4048D9135253b1, but Triple-A has not disclosed the treasury loss or attack vector and is working with cybersecurity, blockchain-forensics teams and MAS and police authorities, raising security and custody risk for crypto operations.

Bearish

Predictions Markets

See what traders are focused on

View analytics →
Prediction Banner

Triple-A, a Singapore-based stablecoin payments firm, said unauthorized access to wallets holding its own digital assets was contained without affecting client money. The company has not disclosed the size of its treasury loss or explained how the wallets were accessed.

Triple-A said it identified the incident on July 25. In its July 27 statement, the firm said it does not custody digital assets for clients and holds client funds separately in trust accounts with safeguarding institutions that were not exposed.

Certain services were placed in maintenance mode for approximately three hours while the company secured the affected infrastructure and ran security checks. Triple-A later said all services had been restored and that transactions and settlements were processing normally across all markets.

Polymarket suffers live POL drain as team rules out feared contract exploit
Related Reading

Polymarket suffers live POL drain as team rules out feared contract exploit

Team statements point to a Polymarket private key compromise rather than core contracts or user funds.
May 22, 2026 · Liam 'Akiba' Wright

The company said the financial impact was limited to specific operational accounts and was being fully absorbed from treasury reserves. It also said the affected wallets were operated by Triple A Technologies Pte. Ltd., its Singapore entity, and that other group entities and operations were unaffected. The statement disclosed no asset list, wallet addresses or loss figure, though Triple-A said it remained able to meet its liabilities.

Infographic separating Triple-A's wallet-incident claims, visible Ethereum transfers and unresolved questions

What the public wallet trail shows

Onchain analyst Specter identified 0x01F83B5d4fb30E8AA3daC1681B4048D9135253b1 as an Ethereum address where funds linked to the incident were being consolidated. Etherscan records show 12 inbound transfers of more than 0.01 ETH into that address on July 24 and July 25, totaling 5,287.08568411 ETH.

Crypto hacks hit a record count but the biggest threat isn’t smart contracts
Related Reading

Crypto hacks hit a record count but the biggest threat isn’t smart contracts

The industry's security problem is changing shape: more hacks, lower typical losses, and a handful of infrastructure compromises still defining the first half's damage.
Jul 5, 2026 · Liam 'Akiba' Wright

Those transfers establish the flow into the cited address, but they do not establish when the unauthorized access began or how much Triple-A lost. The company has not confirmed the address, identified the source wallets, or described their account roles and original assets before swaps and bridges. That missing link also means the public flows do not contradict Triple-A's client-fund segregation claim but cannot independently verify it.

The Monetary Authority of Singapore lists Triple A Technologies Pte. Ltd. as a Major Payment Institution authorized for domestic and cross-border transfers, merchant acquisition and digital payment token services. MAS says institutions in that license class must comply with customer-money protection requirements. The directory establishes the regulatory obligation, not whether Triple-A satisfied it during this incident.

Why crypto hacks don't end and continue even when the money is gone
Related Reading

Why crypto hacks don't end and continue even when the money is gone

A crypto exploit can empty a wallet in minutes, but the full damage often unfolds for months. Tokens keep falling, treasuries shrink, hiring freezes set in, and projects that survive the theft can still lose their future in the aftermath.
Mar 22, 2026 · Andjela Radmilac

Triple-A said it is working with cybersecurity and blockchain-forensics specialists, the Singapore Police Force and other authorities to trace assets and support recovery. The two central unknowns remain the size of the treasury loss and the route by which the wallets were accessed.

The post On-chain data shows 5,280 ETH draining into single address following quiet Triple-A wallet breach appeared first on CryptoSlate.

Read the article at CryptoSlate

In This News

Coins

$ 1.93K

+0.89%

$ 0.0032

-0.09%

$ 0.0756

-1.73%

Predictions Markets

See what traders are focused on

View analytics →
Prediction Banner

Share:

In This News

Coins

$ 1.93K

+0.89%

$ 0.0032

-0.09%

$ 0.0756

-1.73%

Predictions Markets

See what traders are focused on

View analytics →
Prediction Banner

Share:

Read More

SEC warning over crypto yield vaults puts DeFi’s secret human controllers in the crosshairs

SEC warning over crypto yield vaults puts DeFi’s secret human controllers in the crosshairs

The commissioner’s fact-specific framework reaches strategy, allocator appointment an...
Japan Sets 2028 Bitcoin ETF Deadline as Asia’s Policy Engine Leaves the West Behind

Japan Sets 2028 Bitcoin ETF Deadline as Asia’s Policy Engine Leaves the West Behind

Japan target Bitcoin ETFs by 2028 while South Korea opens institutional access and Ru...