Odaily Planet Daily reports: WEMIX has released an analysis of the causes and updated response measures regarding the WEMIX security incident. On July 26, ownership of two smart contracts—DIOS and AMA—was transferred to an unauthorized third party. The attacker deployed a malicious contract in a single transaction, gained control over both contracts, and executed nine rounds of flash loans and swap transactions, resulting in the unauthorized minting of 5.2255 million WEMIX tokens. WEMIX stated that this incident did not involve any compromise of WEMIX’s internal systems or leakage of administrator private keys; rather, the attacker exploited vulnerabilities in publicly accessible on-chain smart contracts.
WEMIX Reports 522.55 Million Tokens Illegally Minted via Smart Contract Exploit
KuCoinFlashShare
On July 26, 2026, WEMIX reported a security incident in which attackers exploited a known smart contract vulnerability. The attackers transferred two smart contracts—DIOS and AMA—to unauthorized third parties and deployed a malicious contract. They executed nine rounds of flash loans and swap transactions, illegally minting 5.2255 million WEMIX tokens. WEMIX confirmed no internal systems were compromised and no private keys were leaked. The incident underscores the importance of regular smart contract audits to prevent similar exploits.
Source:Show original
Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information.
Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.