Cybersecurity in the crypto world: advances, risks, and lessons learned from 2025d in the crypto world: advances, risks, and lessons learned from 2025

  • aplicacion - banner 728px

The year 2025 was marked by record losses in attacks and fraud in the cryptocurrency universe. In the first half of the year alone, thefts already totaled $2.17 billion, surpassing the total value recorded in 2024, according to Chainalysis. Projections indicate that 2025 could end with more than $4 billion in diverted assets, an all-time high. ESET, a leading company in proactive threat detection, reviews some of the main cases that occurred in 2025 and how seemingly simple vulnerabilities resulted in millionaire robberies that shook the cryptocurrency market. This scenario of vulnerability contrasts with the growing institutionalization of the sector where cryptocurrency ETFs registered record inflows of $5.95 billion and corporate investors such as Strategy (formerly MicroStrategy) announced new Bitcoin purchases, the market exposed its security weaknesses. “The BBC pointed out that the $1.5 billion attack on the Bybit exchange, attributed to hackers linked to North Korea, was the largest in history, thus symbolizing this contradiction: even with regulatory and technical advances, known flaws continue to be exploited,” comments Camilo Gutiérrez Amaya, Head of the Research Laboratory at ESET Latin America.

You can also read: Karl-Anthony Towns surprises with finding of Yamamoto "1-of-1" card sold for US$72,000

The year 2025 is consolidating as a period of historic losses for the cryptoasset market. According to CertiK, the industry lost almost $2.5 billion to attacks and scams in the first six months of the year alone. Chainalysis, on the other hand, noted that the volume of stolen cryptoassets in the same period exceeded the $2.17 billion mark recorded throughout 2024. At this rate, according to ESET, losses could exceed $4 billion by the end of the year, making 2025 the year with the most assets diverted in the history of cryptocurrencies. ESET analyzes the most significant incidents of the year, illustrating how vulnerabilities of different nature can result in multimillion-dollar losses: 1. Attacks on exchanges and centralized platforms (CEX): Among the most emblematic episodes is the attack on Bybit, which resulted in the theft of approximately 1.5 billion dollars in Ethereum, the largest ever recorded in the history of cryptocurrencies.

In this case, the attackers did not directly violate the exchange's servers, but rather compromised an external provider of the platform, changing the wallet address where the funds were transferred. ByBit thought it was transferring the funds to its own digital wallet, but sent it all to the hackers. The sophistication of the operation revealed how trust chains and external integrations can become entry points for highly specialized criminals.

ESET - Press Release
  1. Exploits in DeFi protocols: The attack on Balancer, which caused losses of over 100 million dollars, highlighted one of the recurring weaknesses in the DeFi space: errors in the code. A bug in the smart contract allowed unauthorized withdrawals, exposing how small logical flaws can be exploited to compromise an entire protocol. The impact extended to derivative projects, such as Beets Finance, which also reported million-dollar losses. These incidents reinforce the importance of continuous and independent audits, a challenge for protocols that prioritize innovation and speed of launch.
  2. Phishing scams: While large platforms suffered coordinated attacks, individual users remained the preferred targets. Phishing scams, in which victims are tricked into voluntarily giving up their credentials, generated 410 million dollars in losses, according to Certik. It is estimated that attacks targeting individuals accounted for 23.35% of all funds stolen in the period, a sign that social engineering remains as efficient as technical intrusions.
  3. Historical attacks and bridge vulnerabilities: Although no major incidents related to bridges occurred in 2025, this type of attack remains one of the most destructive. The memory of the Ronin bridge case, in 2022, when 600 million dollars were stolen, remains a permanent alert. These failures show how the interconnectivity between networks, essential for the scalability of the cryptographic ecosystem, also amplifies the attack surface and can turn a single code error into a systemic collapse.
    "Recent attacks reveal the increasing level of professionalization of cybercrime related to cryptocurrencies. Even with the growing technical and regulatory maturity of the ecosystem, cybercriminals have shown that they are still one step ahead in 2025, improving methods, exploiting known loopholes and diversifying targets. While the industry has matured in regulation, transparency and infrastructure, many of the attacks exploited human errors, poorly managed integrations and unaudited code, points that innovation alone does not eliminate", Gutierrez Amaya highlights.

In the spotlight

  • aplicacion - banner 300px

  • banner altices 300x250 junio 2025

Explore more

91-year-old Catalan marathon runner becomes a father for the seventh time

A 91-year-old Catalan man has become a father again, surprising those around him and generating debate about the limits of fatherhood at an advanced age. Pierre Sablé recently celebrated the birth of his daughter Louisa María, the result of his relationship with Aïcha, 39 years old. The little one, who is currently seven months old, […]

Casa Brugal Gallery opens space in Blue Mall

Santo Domingo.- Casa Brugal announces the opening of Casa Brugal Gallery, an exclusive space located on the second level of BlueMall Santo Domingo, dedicated to the sensory experience and the commercialization of the most emblematic and elevated expressions of its portfolio.  Conceived as a meeting point for connoisseurs, enthusiasts, and visitors, Casa Brugal Gallery invites you […]

Scientific studies calculate climate change as a health hazard, while Trump calls it a 'hoax'

The Trump administration on Thursday revoked a scientific finding that established that climate change poses a danger to public health, an idea that President Donald Trump called a "hoax." However, repeated scientific studies indicate that this is documented and quantifiable damage. Again and again, research has found an increase in illnesses and deaths — thousands […]

Central American exports increase 11.5% in 2025, according to the IDB

Central America's exports registered an increase of 11.5% in 2025, a performance that has far surpassed the average of Latin America and the Caribbean and has left behind the stagnation evidenced the previous year, according to the report “Estimates of Trade Trends: Latin America and the Caribbean 2026” from the Inter-American Development Bank (IDB). This […]

Voluntary departures of detained migrants in 2025 reach a record 28%, according to CBS

Los Angeles.- 28% of immigrants detained by immigration authorities in 2025 who were deported chose to abandon their cases before a judge and voluntarily leave the country, which represents a record number of foreigners who give up fighting for their processes, revealed this Thursday a CBS study. The analysis based on decades of court records […]

Four earthquakes with a magnitude of up to 4.6 hit northwest China

Beijing.- Four earthquakes with magnitudes between 3.2 and 4.6 were recorded in the early hours of this Friday in the autonomous region of Xinjiang, in northwestern China, according to data from the China Earthquake Networks Center, without any damage being reported at the moment. The first of the tremors occurred at 01:19 local time, in […]