The post Crypto Hackers are Shifting Focus to RWA Projects, CertiK Report Shows appeared on BitcoinEthereumNews.com. A new report from CertiK assessed the RWA (real-world assets) market in 2025 and found a growing wave of hacks. Criminals have started shifting their approach during the first half of the year, hammering on the technology’s weaknesses. Also, the report highlights how the majority of tokenized assets sit on Ethereum and a few dominant protocols. This concentration means a single major exploit could ripple through the entire $13.9 billion+ RWA sector. RWA Hacks on the Rise Blockchain security researchers at CertiK published their Skynet RWA Security Report today. It shows how threats against RWA projects have evolved since 2023, and the attack surface now extends across both on and off-chain assets. RWA Hacks By Year. Source: Certik From January to July, the RWA sector lost $14.6 million to hacks and frauds, which is almost as much as the entirety of 2023. So far, there are no signs of stopping, especially since RWAs received a lot of market attention this year. Unique Hybrid Vulnerabilities Nonetheless, CertiK doesn’t ascribe economic forces as the reason for this shift. In previous years, RWA crime focused on off-chain threats, with credit and loan defaults representing a substantial chunk of all incidents. Today, however, the RWA market is undoubtedly becoming more susceptible to hacks: “The data highlights a clear transformation in the RWA threat landscape. The first half of 2025 shows a complete shift: losses jumped to nearly $14.6 million, and were caused entirely by on-chain and operational failures. The threat has evolved from exploiting external financial arrangements to attacking the core technology…itself,” CertiK claimed. And yet, RWA’s unique integration with TradFi makes it vulnerable to hacks on both ends. Oracles are the key link between the on-chain and off-chain worlds, which means a single breach here can cause smart contracts to behave irrationally. It… The post Crypto Hackers are Shifting Focus to RWA Projects, CertiK Report Shows appeared on BitcoinEthereumNews.com. A new report from CertiK assessed the RWA (real-world assets) market in 2025 and found a growing wave of hacks. Criminals have started shifting their approach during the first half of the year, hammering on the technology’s weaknesses. Also, the report highlights how the majority of tokenized assets sit on Ethereum and a few dominant protocols. This concentration means a single major exploit could ripple through the entire $13.9 billion+ RWA sector. RWA Hacks on the Rise Blockchain security researchers at CertiK published their Skynet RWA Security Report today. It shows how threats against RWA projects have evolved since 2023, and the attack surface now extends across both on and off-chain assets. RWA Hacks By Year. Source: Certik From January to July, the RWA sector lost $14.6 million to hacks and frauds, which is almost as much as the entirety of 2023. So far, there are no signs of stopping, especially since RWAs received a lot of market attention this year. Unique Hybrid Vulnerabilities Nonetheless, CertiK doesn’t ascribe economic forces as the reason for this shift. In previous years, RWA crime focused on off-chain threats, with credit and loan defaults representing a substantial chunk of all incidents. Today, however, the RWA market is undoubtedly becoming more susceptible to hacks: “The data highlights a clear transformation in the RWA threat landscape. The first half of 2025 shows a complete shift: losses jumped to nearly $14.6 million, and were caused entirely by on-chain and operational failures. The threat has evolved from exploiting external financial arrangements to attacking the core technology…itself,” CertiK claimed. And yet, RWA’s unique integration with TradFi makes it vulnerable to hacks on both ends. Oracles are the key link between the on-chain and off-chain worlds, which means a single breach here can cause smart contracts to behave irrationally. It…

Crypto Hackers are Shifting Focus to RWA Projects, CertiK Report Shows

3 min read

A new report from CertiK assessed the RWA (real-world assets) market in 2025 and found a growing wave of hacks. Criminals have started shifting their approach during the first half of the year, hammering on the technology’s weaknesses.

Also, the report highlights how the majority of tokenized assets sit on Ethereum and a few dominant protocols. This concentration means a single major exploit could ripple through the entire $13.9 billion+ RWA sector.

RWA Hacks on the Rise

Blockchain security researchers at CertiK published their Skynet RWA Security Report today. It shows how threats against RWA projects have evolved since 2023, and the attack surface now extends across both on and off-chain assets.

RWA Hacks By Year CertikRWA Hacks By Year. Source: Certik

From January to July, the RWA sector lost $14.6 million to hacks and frauds, which is almost as much as the entirety of 2023. So far, there are no signs of stopping, especially since RWAs received a lot of market attention this year.

Unique Hybrid Vulnerabilities

Nonetheless, CertiK doesn’t ascribe economic forces as the reason for this shift. In previous years, RWA crime focused on off-chain threats, with credit and loan defaults representing a substantial chunk of all incidents.

Today, however, the RWA market is undoubtedly becoming more susceptible to hacks:

And yet, RWA’s unique integration with TradFi makes it vulnerable to hacks on both ends. Oracles are the key link between the on-chain and off-chain worlds, which means a single breach here can cause smart contracts to behave irrationally. It may totally untether the RWA from the underlying assets, allowing for profitable exploits.

In other words, a firm may offer RWAs solely based on “rock solid” assets like gold or US Treasury bonds, but a well-placed hack could cause the entire security structure to collapse.

Plenty of firms base RWAs on other sturdy assets like real estate, but the illiquid nature of this market also enables oracle manipulation. Most RWAs on the US market currently consist of assets like these, not private credit, but that doesn’t necessarily offer real protection.

RWA Underlying AssetsRWA Underlying Assets. Source: Certik

Security Measures and TradFi’s Role

CertiK describes a few layers of security, some of which may be a little counterintuitive. To be clear, it prioritizes the classic hallmarks of crypto protection, but it also includes other steps.

For example, CertiK firmly stressed the importance of legally sound contracts as “a poorly drafted agreement might…render the entire structure unenforceable.” This would be catastrophic in the event of a major breach.

For this reason, the firm claimed that TradFi institutional participation is a vital component of RWA security. Firms like BlackRock already have well-established principles for most of CertiK’s recommendations, from legal language, solid asset storage, administrative guardrails, and more.

Unfortunately, this makes JPMorgan’s recent report that TradFi institutions are losing interest in RWAs all the more concerning. If crypto-native firms will soon represent the bulk of the RWA market, they’ll need diligent preparations to avoid this growing hack wave.

For now, this report details many measures that can be taken, and it assesses all the largest players in today’s RWA market on their security principles. As long as these companies keep proactively improving their security posture, they can outpace these attacks.

The post Crypto Hackers are Shifting Focus to RWA Projects, CertiK Report Shows appeared first on BeInCrypto.

Source: https://beincrypto.com/rwa-hacks-surge-certik-report-highlights-2025/

Market Opportunity
Threshold Logo
Threshold Price(T)
$0.008139
$0.008139$0.008139
+0.06%
USD
Threshold (T) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Crypto-Fueled Rekt Drinks Sells 1 Millionth Can Amid MoonPay Collab

Crypto-Fueled Rekt Drinks Sells 1 Millionth Can Amid MoonPay Collab

The post Crypto-Fueled Rekt Drinks Sells 1 Millionth Can Amid MoonPay Collab appeared on BitcoinEthereumNews.com. In brief Rekt Brands sold its 1 millionth can of its Rekt Drinks flavored sparkling water. The Web3 firm collaborated with payments infrastructure company MoonPay on a peach-raspberry flavor called “Moon Crush.” Rekt incentivizes purchasers of its drinks with the REKT token, which hit an all-time high market cap of $583 million in August. Web3 consumer firm Rekt Brands sold its 1 millionth can of its Rekt Drinks sparkling water on Friday, surpassing its first major milestone with the sold-out drop of its “Moon Crush” flavor—a peach raspberry-flavored collaboration with payments infrastructure firm MoonPay.  The sale follows Rekt’s previous sellout collaborations with leading Web3 brands like Solana DeFi protocol Jupiter, Ethereum layer-2 network Abstract, and Coinbase’s layer-2 network, Base. Rekt has already worked with a number of crypto-native brands, but says it has been choosy when cultivating collabs. “We have received a large amount of incoming enquiries from some of crypto’s biggest brands, but it’s super important for us to be selective in order to maintain the premium feel of Rekt,” Rekt Brands co-founder and CEO Ovie Faruq told Decrypt.  (Disclosure: Ovie Faruq’s Canary Labs is an investor in DASTAN, the parent company of Decrypt.) “We look to work with brands who are able to form partnerships that we feel are truly strategic to Rekt’s goal of becoming one of the largest global beverage brands,” he added. In particular, Faruq highlighted MoonPay’s role as a “gateway” between non-crypto and crypto users as a reason the collaboration made “perfect sense.”  “We’re thrilled to bring something to life that is both delicious and deeply connected to the crypto community,” MoonPay President Keith Grossman told Decrypt.  Rekt Brands has been bridging the gap between Web3 and the real world with sales of its sparkling water since November 2024. In its first sale,…
Share
BitcoinEthereumNews2025/09/20 09:24
Solana Price Prediction from Standard Chartered

Solana Price Prediction from Standard Chartered

Solana (SOL) is currently navigating a high-stakes technical test, trading near its 10-month lows as the market digests a 60% drawdown from its 2025 peak. Despite
Share
Ethnews2026/02/04 07:15
The Staggering $750M Unrealized Deficit Shaking Corporate Crypto Strategy

The Staggering $750M Unrealized Deficit Shaking Corporate Crypto Strategy

The post The Staggering $750M Unrealized Deficit Shaking Corporate Crypto Strategy appeared on BitcoinEthereumNews.com. MicroStrategy Bitcoin Loss: The Staggering
Share
BitcoinEthereumNews2026/02/04 06:49