Galaxy Digital's testnet suffers hack but no client funds or information were compromised

BTC1,29%

Galaxy Digital (GLXY), the digital asset financial services firm founded by Mike Novogratz, said it recently contained a cybersecurity incident involving unauthorized access to an isolated development workspace, according to a statement from a company spokesperson.

“An immaterial amount of company funds used for testing within the isolated development workspace was impacted,” the spokesperson said in emailed comments. The loss was less than $10,000, according to a person with knowledge of the matter.

The firm emphasized that the affected environment was used solely for research and development and was not connected to its core infrastructure, production systems, trading platforms or client accounts.

Galaxy said it detected the intrusion and moved quickly to contain it, secure the compromised workspace and implement additional precautionary measures across its on-chain infrastructure.

“No client funds or client account information were accessed or at risk at any point based on our review to date,” Galaxy said, adding that all platforms and services remain fully operational and secure for clients.

Hacks and exploits remain a persistent risk in the crypto industry, where the combination of open-source code, large pools of onchain liquidity and uneven security practices creates an attractive target for attackers.

Billions of dollars are lost to smart contract exploits, phishing schemes and infrastructure breaches, with industry estimates often exceeding $1–2 billion annually in recent years.

Even when incidents are contained, and client assets are not impacted, breaches can erode trust, trigger heightened regulatory scrutiny and underscore the operational risks facing firms operating in largely irreversible, always-on financial systems.

Galaxy is a diversified financial services and investment firm focused on the digital asset and blockchain sector, providing institutional clients with trading, asset management, lending, advisory and custody services.

The firm operates across several core business lines, including global markets, asset management and digital infrastructure, while also running businesses in areas like crypto mining, staking and data center operations.

Positioned as a bridge between traditional finance and crypto, Galaxy offers institutional-grade access to digital assets and related technologies, alongside investments in blockchain ventures and emerging areas such as AI-powered infrastructure.

The company said it is continuing to review the incident and will provide updates as appropriate.

Read more: Bitcoin’s quantum threat is real, but far from an existential crisis, Galaxy says

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

CoW Swap Issues Security Alert After Frontend Attack Detected by Blockaid

Blockaid has identified a frontend attack on CoW Swap, marking its domain as malicious. Users are advised to cease interactions, revoke wallet authorizations, and await further updates from the CoW Swap team.

GateNews1h ago

The Ethereum Foundation uses it too! The CoW Swap frontend was hacked, and DeFi leaders advise revoking approvals

The Ethereum DeFi platform CoW Swap experienced DNS hijacking on April 14, which may put users at risk of phishing. Although the protocol itself was not compromised, the risk of frontend attacks remains high. The industry recommends that users revoke approvals before taking any future actions. CoW Swap offers batch transaction functionality and protects against MEV attacks, and its security incident may affect the entire DeFi ecosystem.

ChainNewsAbmedia2h ago

Cowswap Frontend Under Attack, Users Urged to Revoke Permissions

Blockaid's security system detected a frontend attack on Cowswap, flagging the website COW.FI as malicious. Users are urged to revoke wallet permissions and refrain from interacting with the DApp.

GateNews5h ago

Polymarket reviews and weeds out early-stage projects in its ecosystem, targeting insider trading and market manipulation behaviors

Polymarket announced an audit of some of the onboarded startup projects that have been accused of using allegedly insider trading account information to steer users into making trades. The move is intended to strengthen compliance management and address external concerns about the risks of insider trading.

GateNews7h ago

In Q1 2026, Web3 projects suffered losses of over $460 million from hacks and scams, with phishing attacks leading the way.

Hacken’s report shows that in the first quarter of 2026, Web3 projects lost $464.5 million due to hacker attacks and scams, with phishing and social engineering attacks accounting for $306 million in losses. In addition, hardware wallet scams accounted for the bulk of the losses. Moreover, losses were also significant due to smart contract vulnerabilities and access control failures. In terms of regulation, the European legal framework has increased security monitoring requirements.

GateNews11h ago

RAVE’s hype surge triggers a flood of copycat coin mania, as FF and INX expose the “pump-and-dump” scheme

Recently, altcoins represented by RAVE have sparked a fierce investment craze, but some old star projects like FF and INX have used this wave of hype to carry out “pump-and-dump” operations—rapidly driving up coin prices to lure retail investors to buy, and then dumping them heavily, causing the price to plunge rapidly. Such behavior not only exposes the project team’s funding difficulties, but also damages investors’ trust. Investors need to stay alert to signals like abnormal short-term surges in order to avoid the risk of being manipulated by the market.

MarketWhisper15h ago
Comment
0/400
No comments