Dear SingularityNET Community,
On September 19, an unauthorized party gained access to part of our cloud infrastructure and used it to mint tokens and withdraw assets through our bridge infrastructure. Treasury and exchange wallets were not affected, and FET held in your own wallet or on an exchange was not impacted. We revoked the compromised access and deactivated the affected bridges and conversion contracts, and our team and security partners responded as soon as the activity was detected.
Actions Taken:
- We revoked the identified compromised access
- Deactivated the bridges and conversion contracts
- Paused AGIX and NTX transfers on Ethereum
- Tracing and monitoring are ongoing, and we are working with exchanges and security partners
Current Status:
- FET: FET was withdrawn from the token converter. FET has been secured, and its minting controls were not affected. No action is required from token holders; your own wallets are not at risk from this incident.
- AGIX: Our team is working on a secure and compliant way for eligible holders to transfer their tokens, and we will share details as they are confirmed.
- NTX, WMTX, CGV: Unauthorized tokens were minted. We recognize the disruption this has caused these communities and their project teams, and we are in direct contact with each of them.
Next steps:
- Independent security review: We have been working closely with our security partners since the incident began. The bridges will stay deactivated until an independent security review confirms they are safe to restore, and we will share additional findings as they become available.
- AGIX holders: AGIX migration is paused. We are working on a legitimate, verified path forward for eligible holders, in a way that is legally sound, and we will share details as they are confirmed.
- Other affected tokens: We are working with each project team on next steps. Each team will communicate about its own token through its official channels.
- Exchanges and tracing: Monitoring continues, and we are sharing data with exchanges and partners who need it.
- Law enforcement: We are working with law enforcement in the relevant jurisdictions and will provide updates when available.
We are committed to working with every affected community and project team, and we will keep updating you as facts are confirmed. All updates will come only through our official channels. Do not trust information from any other source.
This was a coordinated, multi-stage attack with a high degree of automation. Our systems are audited regularly and we follow industry security standards, but attacks like this are accelerating and becoming more sophisticated. We encourage every team in this space to review their external cloud critical infrastructure now.