AFX to unveil goodwill plan for $24 million bridge exploit victims
The decentralized derivatives protocol AFX disclosed that a social‑engineering attack against one of its developers compromised its internal development infrastructure, leading to the theft of about $24.15 million USDC from its custody bridge on July 22. The exploit targeted only AFX’s bridge, leaving Arbitrum’s native bridge untouched, and the stolen USDC was converted into roughly 12.5 ETH on Ethereum. AFX has rebuilt the compromised infrastructure, introduced zero‑trust segmentation, enhanced monitoring, and rotated credentials. The protocol announced a goodwill plan that will detail recovery and compensation options for affected investors, employees and early supporters, with the full proposal to be published on August 3. The Italian‑language release attributes the attack to threat group UNC4899 (TraderTraitor), linked to North Korea.
Entities: AFX · Arbitrum · Ethereum · UNC4899 (TraderTraitor) · USDC