Invezz
2026-01-22 10:41:46

Saga pauses SagaEVM after $7M exploit drains bridged assets

Saga, a Layer-1 blockchain protocol designed for high-throughput decentralized applications, has suspended its SagaEVM chainlet following a major security incident that resulted in the unauthorised transfer of approximately $7 million in bridged assets to Ethereum. The protocol confirmed the breach in a Jan. 21 announcement , stating that the exploit involved a carefully orchestrated series of contract deployments, cross-chain operations, and liquidity extractions. According to the project team, the decision to halt the Ethereum-compatible SagaEVM chain was taken “out of an abundance of caution,” freezing the chain at block height 6,593,800 while investigations continue. In the meantime, Saga has confirmed that the core infrastructure remains intact, noting there was “no consensus failure, validator compromise, or signer key leakage.” Further, its mainnet, Saga SSC, and other chainlets were not impacted, and protocol-level consensus continues to function without issue. The impact of the attack was immediately visible across the protocol’s ecosystem. Saga Dollar, the network’s flagship stablecoin pegged to the US dollar, lost its peg at approximately 10:16 pm UTC on Jan. 21, falling to a low of $0.75, according to CoinGecko. Meanwhile, the total value locked on the network also dropped sharply as network users started moving funds out. Data from DeFiLlama showed that TVL on Saga collapsed from over $37 million to just $16 million within 24 hours of the exploit. A coordinated attack While Saga has yet to publish an official post‑mortem, several community‑led theories have emerged around the exploit. One such assessment came from threat researcher Vladimir S, who suggested the attacker may have executed a multi‑step strategy involving IBC mechanisms and custom message payloads, potentially allowing Saga’s stablecoin to be minted without corresponding collateral. According to Vladimir, the exploit appeared to bypass bridge validation by abusing precompile logic, enabling the attacker to mint Saga Dollar ($D) “out of thin air.” Another theory came from a pseudonymous X user going by Spectre, who speculated that the attack may have been the result of a private key compromise. The incident also affected Saga’s Colt and Mustang environments, which were tied into the same cross-chain infrastructure. Post incident safeguards in play While full technical details are yet to be disclosed, an on-chain wallet, 0x2044697623afa31459642708c83f04ecef8c6ecb, has been identified as the destination of the stolen funds. Saga said it is working with exchanges and bridge operators to blacklist the address and prevent further movement of the assets. In the meantime, it has enacted several emergency safeguards, including restricting relevant cross-chain activities and reviewing execution traces and archive node data to fully understand the exploit’s scope. Engineers are now working to patch vulnerabilities and strengthen SagaEVM’s components before any potential restart. The chainlet will remain offline until the remediation process is completed and the team is confident that no further risk exists. No timeline has been provided for resuming operations. “We recognize that a pause is disruptive. We made this decision because the safety of our community comes first,” the team wrote in its latest status update. The Saga incident adds to a growing list of targeted attacks in the crypto space. Chainalysis estimates that total crypto hack-related losses reached $3.41 billion in 2025 . The post Saga pauses SagaEVM after $7M exploit drains bridged assets appeared first on Invezz

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.