BadgerDAO Contacts Hacker Seeking Settlement; BitMart Exchange Loses $200M

BadgerDAO seeks redress, but BitMart attack shows centralized exchanges are not immune from large scale thefts either.

article-image

BadgerDAO; Source: Blockworks

share
  • BadgerDAO smart contracts remain paused following website exploit that cost users $120 million, as community pursues investigation and reaches out to the thief in hopes of striking a deal
  • BitMart Exchange suffered an even larger loss after two hot wallet private keys were compromised

A bitcoin-focused DeFi protocol, BadgerDAO, had its web server compromised for roughly two weeks, allowing an unknown attacker to surreptitiously steal millions of dollars worth of digital assets from users of the platform, Blockworks reported.

On Sunday, representatives of the DAO attempted to contact the party responsible for the theft using a message published in a transaction on the Ethereum network and on Twitter:

Loading Tweet..

According to a website set up to provide updates on the case, the group has enlisted blockchain forensic analysis platform Chainalysis and cybersecity firm Mandiant, to help with the investigation. The latest update said that BadgerDAO’s DeFi services remain temporarily shut down:

“Smart Contracts have not yet been reactivated and therefore users remain unable to deposit, claim rewards, or withdraw from either the Badger app (app.badger.com) or at the smart contract level. Badger is working to ensure that the smart contracts can be safely reactivated without further risk to funds.”

The system has a “Guardian” role, that has permission to pause the DeFi strategies employed by the protocol, which is “intended to be a trusted party that can act fast in emergency situations,” according to the Badger.com documentation. The Guardian is controlled by a developer multi-signature wallet, whose five members are elected by the DAO’s BADGER token holders. Any single member of the multisig can pause the smart contracts, but it requires three out of the five signers to reactivate them.

Security company PeckShield reports the total loss to BadgerDAO’s users at $120.3 million, based primarily on the theft of 2,100 BTC and 151 ETH. The largest affected user of the protocol has been linked to cryptocurrency lending platform Celsius.

BitMart Exchange loses $200 million in breach

Sheldon Xia, founder and CEO of the centralized exchange BitMart.com, revealed on Sunday that two of the exchange’s hot wallets were compromised in a security breach that saw upwards of $150 million in assets disappear on the Ethereum and Binance Smart Chain networks.

Loading Tweet..

Xia said that an exchange private key was used to withdraw the funds, and pledged via Twitter, to make users whole.

“BitMart will use our own funding to cover the incident and compensate affected users. We are also talking to multiple project teams to confirm the most reasonable solutions such as token swaps. No user assets will be harmed.”

PeckShield, which initially pointed out a pattern of suspicious transactions early Sunday morning, has estimated the loss, comprised of a variety of small cap tokens, as totaling $200 million.


Get the day’s top crypto news and insights delivered to your inbox every evening. Subscribe to Blockworks’ free newsletter now.


Tags

Decoding crypto and the markets. Daily, with Byron Gilliam.

Upcoming Events

Javits Center North | 445 11th Ave

Tues - Thurs, March 24 - 26, 2026

Blockworks’ Digital Asset Summit (DAS) will feature conversations between the builders, allocators, and legislators who will shape the trajectory of the digital asset ecosystem in the US and abroad.

recent research

Research Report Templates (5).png

Research

ERC 8004 introduces a new trust layer for AI agents by standardizing onchain identity, reputation, and validation. As agents begin handling capital and coordinating autonomously, trust becomes the key constraint to broader adoption. The rollout mirrors the early x402 narrative, where adoption lagged the initial launch until major integrations and a viral use case pulled attention into the ecosystem. If ERC 8004 follows a similar path, downstream infrastructure tied to the standard could see outsized benefit as the narrative gains traction. The primary beneficiaries are likely to be agent frameworks and launchpads at the distribution layer, agent to agent coordination platforms that enable delegation and payments, and validation providers that offer stronger security and execution guarantees.

article-image

BTC finished the week up 1.6%, while L2s, RWAs and the treasury trade continued to grind lower

article-image

DTCC moves DTC-custodied Treasuries onchain via Canton, while Lighter’s LIT launches trading at a fees multiple in Hyperliquid territory

article-image

In the 90s, rapt audiences worldwide watched a coffee pot — will that fascination ever turn to crypto?

article-image

Some systems improve by failing — and crypto has no choice

article-image

Yield Basis introduces an IL-free AMM design that already dominates BTC DEX liquidity

article-image

Maybe tokenholders don’t need the rights that corporate shareholders have come to expect

Newsletter

The Breakdown

Decoding crypto and the markets. Daily, with Byron Gilliam.

Blockworks Research

Unlock crypto's most powerful research platform.

Our research packs a punch and gives you actionable takeaways for each topic.

SubscribeGet in touch

Blockworks Inc.

133 W 19th St., New York, NY 10011

Blockworks Network

NewsPodcastsNewslettersEventsRoundtablesAnalytics