Vulnerabilities Increase in DeFi Protocols Following Recent Cross-Chain Attacks
Three major cryptocurrency exploits result in losses exceeding $35 million, while experts warn of rising vulnerabilities in legacy smart contracts.

# What Happened
In recent weeks, a series of attacks on decentralized finance (DeFi) protocols and blockchain networks have caused multimillion-dollar losses and raised alarms within the crypto community. The Drift protocol (renamed Velocity), operating on Solana, suffered a massive $285 million hack in April, and recently its attacker resumed moving funds through the Tornado Cash mixer, according to reports from Onchain Lens and Crypto Banter.
Additionally, on July 23, three separate exploits were reported across different projects, accumulating losses of approximately $35.55 million. The affected include @AFX_XYZ, which lost $24.15 million due to a failure in its Arbitrum cross-chain bridge, @VerusCoin with $7.55 million, and @BSquaredNetwork with $3.86 million, according to reports from CoinDesk and Coinpapercom.
Meanwhile, Cointelegraph noted that although artificial intelligence is not the direct cause of these attacks, there is a strong increase in the exploitation of legacy vulnerabilities in smart contracts that continue to pose a growing risk to DeFi users.
# Why It Matters
These incidents highlight the ongoing fragility of some DeFi systems in their security infrastructure, as well as the complexity of protecting digital assets in an increasingly sophisticated ecosystem. The reuse of old methods to exploit smart contracts underscores the importance of updating and strengthening protocols to prevent substantial losses.
The activation of the Tornado Cash mixer in moving stolen funds also raises concerns regarding regulatory and traceability aspects, potentially complicating asset recovery and identification of those responsible.
On the technological front, Google DeepMind announced Gemini 3.5 Flash Cyber, a lightweight AI model designed to help security teams detect and fix vulnerabilities before they are exploited, representing a new tool to mitigate risks in critical digital infrastructures.
# What Remains Unconfirmed
No additional details are available regarding possible fund recovery measures or ongoing investigations into the recent attacks. The long-term impact of these exploits and how affected projects will respond to improve their technical security and protect users remain unconfirmed.
# Sources
- GoogleDeepMind: https://x.com/GoogleDeepMind/status/2080321516814647630
- Crypto Banter: https://x.com/crypto_banter/status/2080215267796275527
- Cointelegraph: https://x.com/Cointelegraph/status/2080432850180956230
- CoinDesk: https://x.com/CoinDesk/status/2080229708139028731
- Coinpapercom: https://x.com/Coinpapercom/status/2080156757347701109
_Disclaimer: This article is based on public posts from social media and specialized media outlets. The information requires further verification and should not be considered financial advice or a guarantee of future events._