Oraichain Hack
What happened
On August 8–9, 2026, Oraichain disclosed unauthorized ORAI minting through a vulnerable EVM cross-chain transfer path. The network was halted on August 9, bridges and public interfaces were restricted, and the project later reported that the mint path was patched and on-chain restoration was complete.
Oraichain's official update attributes the incident to a vulnerability in an EVM cross-chain transfer path that enabled unauthorized ORAI minting.
How it happened
The attacker used the vulnerable EVM cross-chain transfer path to create unauthorized ORAI. Oraichain halted the network, restricted bridges and cross-chain routes, coordinated with exchanges over approximately 3.9 million unauthorized ORAI deposited before the halt, and began burning unauthorized balances and reconciling protocol state.
Protocol details
Security review history
- Halborn View report
Evidence
Build your security review skills
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.