Taiko Pauses Ethereum Layer-2 After Bridge Exploit

Taiko halted block production after an attacker exploited its bridge and drained about $1.7 million. The incident adds to a difficult year for crypto bridges, with forged cross-chain messages tied to hundreds of millions of dollars in losses in 2026.

Taiko Pauses Ethereum Layer-2 After Bridge Exploit

What happened?

Taiko halted block production after an attacker exploited its bridge and drained about $1.7 million. The incident adds to a difficult year for crypto bridges, with forged cross-chain messages tied to hundreds of millions of dollars in losses in 2026.

Why it matters

The development matters because bridges remain one of crypto’s most exposed infrastructure points. Taiko’s loss was limited compared with other major bridge incidents this year, but the attack used the same broad weakness in cross-chain messaging that has driven more than $340 million in losses across at least 14 bridge exploits in 2026.

Taiko, an Ethereum layer-2 network, stopped block production on Monday after an attacker exploited its bridge and stole about $1.7 million. The project told users to withdraw funds and asked centralized exchanges to suspend deposits of its TAIKO token while it investigated the incident.

The development matters because bridges remain one of crypto’s most exposed infrastructure points. Taiko’s loss was limited compared with other major bridge incidents this year, but the attack used the same broad weakness in cross-chain messaging that has driven more than $340 million in losses across at least 14 bridge exploits in 2026.

According to Taiko, the attacker forged the proofs used to confirm that withdrawals corresponded to real deposits. That allowed fake withdrawal requests to be accepted on Ethereum without matching transactions on Taiko, draining assets from the bridge and token vault before the team halted activity.

Security firm BlockSec said its initial investigation pointed to a likely exposed signing key for Raiko, the proving stack Taiko uses to verify transactions. If such a key is compromised, an attacker can make fraudulent proofs appear legitimate to the verifier, enabling real assets to be released on Ethereum.

Taiko said the exploit had been contained by around 2 a.m. ET, with withdrawals through the main bridge and token vault halted. CoinDesk reported that the exploiter had moved about 2 million TAIKO, worth roughly $170,000, to an account on MEXC, and that Taiko was preparing a full incident report.

Source: CoinDesk

Keep exploring

Related stories

Bitget to Leave Japan and Close Remaining Positions by Year-End

Bitget to Leave Japan and Close Remaining Positions by Year-End

Bitget plans to exit the Japanese market and close all remaining positions by the end of the year. The move adds to ongoing shifts among crypto companies navigating Japan’s regulatory environment.

Read
State of Crypto countdown highlights key industry developments

State of Crypto countdown highlights key industry developments

CoinDesk’s State of Crypto coverage counts down recent developments shaping the crypto policy and market landscape. The report frames these changes as important for how companies and participants navigate the sector.

Read
Strategy Keeps STRC Dividend at 12%

Strategy Keeps STRC Dividend at 12%

Strategy said it is holding the dividend on its STRC preferred stock at 12%. The decision keeps the payout unchanged for investors in the company’s yield-focused security.

Read