Cardano [ADA] is in the middle of new security concerns after a mammoth SecondFi exploit worth $2.4 million. However, ADA traders don’t seem shaken at all!
SecondFi shuts down after 16.1 million ADA theft
SecondFi is winding down after attackers stole 16.1 million ADA, worth about $2.4 million, from 374 wallets. The breach came from a flaw in the wallet’s transaction-signing software.
The flaw allowed attackers to derive private key material from transaction-signing data, giving them access to affected wallets. Importantly, the Cardano network was not breached, and hardware wallet users were unaffected.
…given the gravity of this event and as previously announced, we have made the difficult decision to wind down SecondFi and Yoroi wallet.
SecondFi patched the vulnerability and secured 129 million ADA before attackers could reach it, but the service will not return to normal operations. It plans to release wallet export tools in early August, followed by a zero-knowledge recovery portal later that month.
Blockchain intelligence firm Groom Lake found signs that may point to North Korea’s Lazarus Group, but no link has been confirmed. A separate attacker also targeted other wallets during the same period.
ADA holds, derivatives traders keep positions open
ADA was trading near $0.17 at the time of writing, with no notable sell-off after news of the SecondFi wallet theft. On the daily chart, the token was at $0.1725, down only slightly during the session. ADA had already pulled back from its early-July rise toward $0.19, but has since recovered and stayed steady.
The RSI indicated balanced pace, with a modest positive tilt.

The derivatives numbers look similarly unbent. Aggregated Open Interest rose to above $210 million before settling near $206.3 million. Meanwhile, the Average Funding Rate proved that long traders were still willing to pay to keep their positions open.

Traders have not rushed to reduce leveraged exposure following the exploit; however, they seem measured in their approach.
Just an isolated wallet issue?
The exploit exposed private key material, affected 374 wallets, and led SecondFi to shut down. The involvement of a second attacker and the possible [but unconfirmed] Lazarus Group link add to things.
While there is no evidence that the vulnerability extends beyond SecondFi, the incident highlights the importance of continued security reviews across the wider Cardano wallet ecosystem.
Final Summary
- SecondFi is shutting down after a signing flaw led to the theft of 16.1 million ADA.
- ADA held its price, there was no broad bearish reaction.

