The post Matcha Meta SwapNet Security Breach Drains $16.8 Million appeared first on Coinpedia Fintech News Blockchain security platform PeckShieldAlert has flaggedThe post Matcha Meta SwapNet Security Breach Drains $16.8 Million appeared first on Coinpedia Fintech News Blockchain security platform PeckShieldAlert has flagged

Matcha Meta SwapNet Security Breach Drains $16.8 Million

2 min read
Unleash Protocol Hack Drains $3.9M After Multisig Exploit, PeckShield Reveals

The post Matcha Meta SwapNet Security Breach Drains $16.8 Million appeared first on Coinpedia Fintech News

Blockchain security platform PeckShieldAlert has flagged a major security breach involving SwapNet, affecting users who interact through Matcha Meta. Meanwhile, attackers exploited token approvals to drain $16.8 millions in crypto. 

PeckShieldAlert data reveal how disabled safety settings exposed users to unexpected losses.

How the SwapNet Hack Happened

According to PeckShieldAlert, the hack did not happen due to a flaw in Matcha Meta itself, but because of how some users managed token approvals.

Matcha Meta offers a One-Time Approval feature, which limits token access to a single transaction. However, users who turned off this feature and instead gave direct, long-term allowances to individual aggregator contracts exposed themselves to higher risk.

Attackers took advantage of these permanent approvals linked to SwapNet. Once access was granted, the hacker could move funds freely without needing further user confirmation. This is how wallets were drained without users actively signing new transactions.

On-Chain Activity Confirms Fund Movement

Blockchain data shows that the attacker focused heavily on the Base network. Around $10.5 million worth of USDC was swapped for roughly 3,655 ETH. Shortly after, the attacker began bridging the funds from Base to Ethereum, a common tactic used to reduce traceability.

onchain data of MAtcha Meta hack

Additional transaction records reveal large USDC transfers exceeding $13 million, along with Uniswap V3 liquidity interactions. Altogether, PeckShieldAlert estimates that approximately $16.8 million in crypto was stolen.

Matcha Meta and SwapNet’s Response

Matcha Meta quickly acknowledged the incident and confirmed it is working closely with the SwapNet team. As an immediate step, SwapNet temporarily disabled its contracts to prevent further exploitation.

To protect users going forward, Matcha Meta removed the option to set direct aggregator allowances, ensuring this type of exposure cannot happen again. The platform also urged users to revoke all existing approvals outside of 0x’s One-Time Approval contracts, especially those linked to SwapNet’s router contract.

Investigations are ongoing, and both teams have promised continuous updates as they work to understand the full impact and monitor the stolen funds.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Tom Lee’s BitMine Hits 7-Month Stock Low as Ethereum Paper Losses Reach $8 Billion

Tom Lee’s BitMine Hits 7-Month Stock Low as Ethereum Paper Losses Reach $8 Billion

The post Tom Lee’s BitMine Hits 7-Month Stock Low as Ethereum Paper Losses Reach $8 Billion appeared on BitcoinEthereumNews.com. In brief Shares of BitMine Immersion
Share
BitcoinEthereumNews2026/02/06 04:47
Headwind Helps Best Wallet Token

Headwind Helps Best Wallet Token

The post Headwind Helps Best Wallet Token appeared on BitcoinEthereumNews.com. Google has announced the launch of a new open-source protocol called Agent Payments Protocol (AP2) in partnership with Coinbase, the Ethereum Foundation, and 60 other organizations. This allows AI agents to make payments on behalf of users using various methods such as real-time bank transfers, credit and debit cards, and, most importantly, stablecoins. Let’s explore in detail what this could mean for the broader cryptocurrency markets, and also highlight a presale crypto (Best Wallet Token) that could explode as a result of this development. Google’s Push for Stablecoins Agent Payments Protocol (AP2) uses digital contracts known as ‘Intent Mandates’ and ‘Verifiable Credentials’ to ensure that AI agents undertake only those payments authorized by the user. Mandates, by the way, are cryptographically signed, tamper-proof digital contracts that act as verifiable proof of a user’s instruction. For example, let’s say you instruct an AI agent to never spend more than $200 in a single transaction. This instruction is written into an Intent Mandate, which serves as a digital contract. Now, whenever the AI agent tries to make a payment, it must present this mandate as proof of authorization, which will then be verified via the AP2 protocol. Alongside this, Google has also launched the A2A x402 extension to accelerate support for the Web3 ecosystem. This production-ready solution enables agent-based crypto payments and will help reshape the growth of cryptocurrency integration within the AP2 protocol. Google’s inclusion of stablecoins in AP2 is a massive vote of confidence in dollar-pegged cryptocurrencies and a huge step toward making them a mainstream payment option. This widens stablecoin usage beyond trading and speculation, positioning them at the center of the consumption economy. The recent enactment of the GENIUS Act in the U.S. gives stablecoins more structure and legal support. Imagine paying for things like data crawls, per-task…
Share
BitcoinEthereumNews2025/09/18 01:27
European Blockchain Convention Drives Digital Finance Revival Amid 90% Blockchain Job Postings Decline

European Blockchain Convention Drives Digital Finance Revival Amid 90% Blockchain Job Postings Decline

The post European Blockchain Convention Drives Digital Finance Revival Amid 90% Blockchain Job Postings Decline appeared on BitcoinEthereumNews.com. This content is provided by a sponsor. PRESS RELEASE. Global leaders convene in Barcelona showcasing resilience as EU advances digital euro and fintech investment reaches €3.6bn in H1, 2025. Barcelona, Spain, September 22nd — The 11th European Blockchain Convention (EBC11) will gather global leaders in Barcelona on October 16-17 to challenge perceptions of European decline […] Source: https://news.bitcoin.com/european-blockchain-convention-drives-digital-finance-revival-amid-90-blockchain-job-postings-decline/
Share
BitcoinEthereumNews2025/09/23 07:16