Aethir Hack
What happened
On April 9-10, 2026, attackers compromised Aethir ATH bridge adapters on alternate chains. Aethir said the canonical ATH supply on Ethereum and the ETH-ARB Squid bridge were unaffected, disconnected the compromised adapters, and committed to compensate affected users.
The bridge adapter contracts permitted an unauthorized actor to mint or release bridged ATH, creating an access-control failure at the bridge boundary even though the canonical Ethereum ATH supply was not changed.
Case & protocol details
Market Context at Time of Hack
How it happened
The attacker used unauthorized access to bridge adapter contracts to fraudulently mint ATH on Solana and Base, which unlocked ATH backed by assets held in the bridge adapter on Ethereum. Aethir and counterparties disconnected the affected contracts and removed liquidity to contain the incident.
Evidence & learning
Attack pattern
Compare incidents →Sources and on-chain records
- report Report x.com
- analysis Website reference x.com
- analysis Website reference x.com
- analysis Aethir: ATH Security official statement t.me
- analysis DefiLlama: Aethir security incident defillama.com
- analysis Smart Contract Hacking: Aethir Hack smartcontractshacking.com
Build your security review skills
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.