SwissBorg’s SOL Earn Wallet Exploited for $41.5M After Partner’s API Is Compromised

Select Language

Logo

Tech

Share this article

Roughly 192,600 SOL was drained from a counterparty wallet tied to a SOL Earn product on Swissborg. The crypto exchange committed to making the losses whole.

By Shaurya Malwa|Edited by Sheldon Reback

Updated Sep 9, 2025, 10:03 a.m. Published Sep 9, 2025, 9:25 a.m.

(JP Valery/Unsplash)
  • Crypto exchange SwissBorg reported the theft of approximately 192,600 SOL, valued at $41.5 million, from an external wallet used for its SOL Earn strategy.
  • The incident was due to a compromise of a partner’s API not a hack of the SwissBorg platform.
  • SwissBorg said the exploit affected fewer than 1% of users, all other funds are secure and it will cover any losses.

Crypto exchange SwissBorg said about 192,600 SOL ($41.5 million) was stolen from an external wallet used exclusively for its SOL Earn strategy on Monday.

The exploit stemmed from a partner’s compromised application programming interface (API), a mechanism that allows software systems to communicate with one another, affecting a single counterparty, the exchange said in a post on X. It was not a hack of the SwissBorg platform.

STORY CONTINUES BELOW

Don’t miss another story.Subscribe to the The Protocol Newsletter today.See all newslettersBy signing up, you will receive emails about CoinDesk products and you agree to ourterms of useandprivacy policy.

The loss affected fewer than 1% of users and represented about 2% of SwissBorg’s total assets, the firm said.

All other funds and strategies remain secure, and user balances within the SwissBorg app are unaffected. SOL Earn redemptions are paused while recovery efforts proceed.

SwissBorg says it will cover any shortfall, ensuring no user losses. The company is working with white-hat hackers, security firms and law enforcement to recover the funds. A full incident report will follow once investigations conclude.

This exploit arrives amid a sharp rise in crypto thefts, with over $2.17 billion already stolen in 2025.

More For You

By Margaux Nijkerk, AI Boost|Edited by Nikhilesh De

15 hours ago

ledger-wallet-nano-review-inserted

According to Guillemet, the malicious code — already pushed into packages with over 1 billion downloads — is designed to silently swap crypto wallet addresses in transactions. That means unsuspecting users could send funds directly to the attacker without realizing it.

What to know:

  • Charles Guillemet, chief technology officer at hardware wallet maker Ledger, warned on X on Monday that a large-scale supply chain attack is underway after the compromise of a reputable developer’s Node Package Manager (NPM) account.
  • According to Guillemet, the malicious code — already pushed into packages with over 1 billion downloads — is designed to silently swap crypto wallet addresses in transactions. That means unsuspecting users could send funds directly to the attacker without realizing it.

 

Leave a Reply

Your email address will not be published. Required fields are marked *