Disclaimer
The financial data provided here is based on our own monitoring system and calculated based on the USD value of the cryptocurrency involved at the time of the incident, and is therefore accurate. Due to cryptocurrency price volatility, the actual total loss may differ from the current token valuation.
Furthermore, the financial data may not fully reflect the true "amount stolen" from the incident. This is especially true for fraud cases, as the total amount stolen is often mixed with the initial amount injected by the fraudsters.
Key Information
1. BNB Chain's losses from hacks and fraud have decreased for the third consecutive year, reflecting continuous improvements in security measures.
2. A total of 120 security incidents occurred in 2025, resulting in total losses of $61 million.
3. This represents a 3% decrease in the amount of losses and a 20% decrease in the number of incidents compared to 2024.
4. September saw the most significant losses, with 11 incidents and losses amounting to $23.5 million.
5. The third quarter was the worst-performing quarter, with 31 incidents resulting in losses of $30 million.
6. The most financially damaging attack method was human error (phishing/social engineering/private key leaks), resulting in losses of $30 million.
7. BNB Chain ranked sixth in total losses across all blockchains, accounting for 2.2% of total Web3 losses. Ethereum ranked first, accounting for 66% of total losses, with $1.87 billion lost in 207 incidents.
Overview
BNB Chain has far surpassed its early stages, becoming the most widely used Layer 1 blockchain in Web3. Dubbed "the people's chain," it provides fast, low-cost transactions, powering the daily DeFi, gaming, and payments for millions of users worldwide.
2025 marked the fifth anniversary of the BNB chain and was a breakthrough year for it, with record-breaking achievements across various sectors: daily active users averaged between 2 million and 5 million (leading all other blockchains), weekly transaction volume frequently exceeded 100 million to 170 million transactions, and decentralized exchange (DEX) trading volume also captured a significant market share. For the first time since 2021, opBNB's spot trading volume surpassed Ethereum during a key period.
Key milestones included:
All metrics reached all-time highs: Daily active users (DAU) peaked at over 5 million, leading all Layer 1 blockchains for most of the year (averaging approximately 4.3 million at the end of the year). opBNB (Layer 2) also led other Layer 2 blockchains in DAU. Decentralized exchange (DEX) cumulative trading volume surpassed $2 trillion, stablecoin supply saw strong growth (reaching approximately $14 billion), and meme coins remained active. The Maxwell hard fork (June 2025) reduced block time to approximately 0.75 seconds, lowered average gas fees to approximately $0.01, reduced malicious MEVs by over 95%, and enabled a peak of 17.6 million daily transactions—laying the foundation for expansion to over 100 million daily transactions. Driven by the RWA boom (including BlackRock's BUIDL, Ondo Finance, and Franklin Templeton's BENJI integrated through Securitize) and over 60 AI-driven projects, Total Value Locked (TVL) rebounded strongly, reaching $11 billion by early December. Gas-free initiatives, such as the extended 0-Fee Carnival and Megafuel upgrades, further enhanced the seamless sign-up experience for users. Emerging Protocols Drive Momentum: Aster, as a leading perpetual DEX and liquidity engine, has emerged with a significant surge in its TVL (reportedly reaching $1.75 billion) and has captured a substantial share of the global perpetual market through cross-chain functionality and incentive programs. Four.meme spearheaded the launch of memecoin, peaking at approximately $1.4 million in daily revenue and achieving a low-friction launch with tight integration with Binance Wallet, triggering viral participation from retail investors. Protocols such as Lista DAO, Orderly Network, and the resurgent PancakeSwap have driven growth in DeFi, lending, and prediction markets, combining retail activity with institutional tools and solidifying BNB Chain's position as a high-throughput mainstream blockchain.
Increasing Security Threats
With BNB Chain reaching new heights in 2025, boasting millions of daily active users, explosive growth in DeFi trading volume, and the memecoin craze, its momentum is strong. Inevitably, this has brought more shadows. Success makes targets clearer, and the speed at which threats are evolving is unprecedented.
Initially common scams, such as wallet theft and phishing, have become increasingly sophisticated and always launch attacks at the height of market frenzy. A "whale" user of a major lending protocol was scammed out of millions of dollars in an elaborately staged attack. The platform's social media accounts were hacked and used to spread false airdrop panics. Emerging platforms faced brutal front-running in chaotic liquidity pools, with critical vulnerabilities causing funds to be wiped out overnight. Fake websites, identity theft, and hasty approvals during bull market peaks turned what should have been exciting moments into painful lessons for retail investors.
These are not isolated incidents. They reflect the growing pains experienced by a truly large, well-funded platform. In a frenzied market, a single careless click can wipe everything out. However, in the midst of the storm...The ecosystem's rapid response, community vigilance, and continuous security upgrades effectively mitigated the damage, paving the way for a more resilient future.
Event Timeline
Loss Breakdown Pie Chart
How BNB Chain's Growth and Security Are Closely Linked
BNB Chain's Emerging Security Solutions in 2025
As threats became more sophisticated in 2025, BNB Chain didn't react passively but fought back with smarter, multi-layered defenses, turning potential disasters into close calls and restoring confidence for millions of everyday users.
Breakthrough progress began with the Goodwill Alliance, a community-led initiative launched in March. This alliance reduced sandwich attacks by over 95% by coordinating validator efforts and MEV protection builders. These protections seamlessly integrate with major wallets such as Binance Web3 Wallet, Trust Wallet, and OKX Wallet, protecting traders even during the most frenzied memecoin craze.
More security guardians stepped up to meet the challenge. Guardrail is a real-time security monitoring platform. Join the Kickstarter program to receive instant on-chain alerts and dedicated support for developers. Similarly, Cantina, known for its crowdsourcing competitions and massive bug bounty programs, has become an official Kickstarter service provider, enabling projects to easily access smart contract audits and bug bounty programs.
Community solidarity was on full display during the crisis. DappBay's RedAlarm continuously warned users about risky projects and addresses, AvengerDAO and Hashdit coordinated a swift response, and after the October X account theft incident, the entire ecosystem provided full compensation to all affected users, turning a painful moment into a testament to unity.
Throughout the year, hype often lured people into hasty decisions, and fake websites lurked in the shadows. These automated, proactive tools became the unsung heroes. They protected users in critical moments, proving that on a high-speed blockchain like BNB, innovation can outpace attackers, allowing users to trade and develop with greater peace of mind.
Where Users Really Lose Funds and How to Improve
Even with continuously strengthened chain-wide defenses and a continued decline in overall losses for several years, a persistent fact remains: most fund losses on the BNB chain are not due to carefully crafted contract vulnerabilities, but rather to fleeting moments of human nature: when excitement, greed, or simple impulses override caution.
For example, in September, a high-net-worth user on Venus Protocol suffered a sophisticated phishing attack, resulting in the compromise of their device and the theft of approximately $13.5 million from their hot wallet. Careless handling of private keys and storing mnemonic phrases in insecure applications or on infected devices remain the primary causes. However, address poisoning is equally insidious, as demonstrated in a recent case: a user copied a maliciously similar address, which remained undetected in their transaction history for four months, ultimately leading to a loss of nearly $500,000. Even after checking both sides of the characters.
These incidents all exploit the same core vulnerability: in moments of excitement or haste, judgment is impaired, and a single careless action can cause irreparable damage.
Traditional warnings like "keep learning, double-check everything, think before you act" often fall short under real pressure. When opportunities seem readily available and bull markets are surging, even experienced users may blindly confirm transactions without fully understanding the risks. The core issue remains that critical "signature window"—the split-second choice that no pop-up alert can reliably prevent. Wallets, as the primary gateway for millions of users to Web3, hold the greatest potential for transformation. They must evolve into intelligent guardians: pre-simulating transactions, explaining risks in plain language, and immediately flagging suspicious addresses. For large assets, hardware wallets, combined with multi-signature requirements and time delays, can provide crucial protection, while limiting hot wallets to small daily transactions. Ultimately, while education and vigilance are important, truly lasting security comes from automated security measures built into our everyday tools. Only in this way can we transform fleeting trust into robust and reliable protection, allowing users to fully enjoy the excitement of vibrant blockchains like BNB without the shadow of irreversible losses.
Where Protocols Really Lost Money and How to Improve
Let's delve deeper into the powerful protocols driving the BNB chain's growth in 2025, such as lending giants like Venus, perpetual trading leaders like Aster, and evergreen decentralized exchanges (DEXs) like PancakeSwap, all handling billions of dollars in trading volume. Even these tried-and-tested systems have exposed hidden vulnerabilities. These losses, totaling millions of dollars, stem not only from isolated vulnerabilities but also from attacks that precisely exploited them.
Private key breaches were the primary culprit, amounting to approximately $12 million. Notable examples include GANA Payment's $3.1 million loss due to owner key breaches and New Gold Protocol's $2 million loss. Despite audits and the use of advanced tools, teams remained vulnerable to human factors: covert malware, internal risks, or sophisticated social engineering attacks that could bypass security measures.
Price and oracle manipulation followed closely behind, causing approximately $8 million in losses. Flash loans distort reserves and oracles in extreme cases.BNB Chain's high-speed block generation further exacerbated this situation, translating small advantages into huge gains for attackers.
The lack of input validation was another critical vulnerability, resulting in approximately $7 million in losses. Unchecked input was leaked, leading to arbitrary calls and chaotic behavior, severely compromising the protocol and betraying the trust of users in interconnected applications.
However, deliberate upgrades provided a clear solution. Regarding key security, the protocol implemented hardware isolation, multi-signature enforcement, strict access controls, an expired key revocation mechanism, and rigorous vetting of partners and new employees. To prevent manipulation, we conducted extensive stress testing audits, introduced circuit breakers and robust oracles to prevent attacks early. Through repeated code reviews, third-party risk detection, and thorough input cleanup, we addressed the validation vulnerabilities.
These targeted improvements transformed this fragile behemoth into a resilient foundation, enabling BNB Chain's innovations to flourish securely.
HashDit Solutions
2025 was a milestone year for HashDit, as we deepened our commitment to protecting the BNB Chain ecosystem in response to explosive growth and evolving threats. Our tools and rapid response measures directly reduced overall losses on the BNB Chain (compared to 2024), demonstrating that proactive, automated security can keep pace with innovation.
Key Achievements Overview
123 million phishing addresses were flagged, including wallet-stealing addresses, address poisoning addresses, and sophisticated fraud variants. 547 addresses were identified and blocked. 000 such URLs were blocked before they reached users. An upgraded Chrome Extension Pro was launched in Q3: adding transaction simulation, AI-driven explanations, and expanded threat rules, quickly gaining over 200 active installs. We expanded our web tools, enhancing address, token, and website inspectors for real-time risk assessment. Community exposure increased to 823,000 times, with nearly 3,000 new followers, reflecting a growing awareness of the critical role of Web3 security.
Collaboration and Services
We launched five new large-scale projects, providing comprehensive audits, Web2/Web3 joint monitoring, API security, custom frameworks, and in-depth educational reports. Our incident response team performed exceptionally well, handling 12 high-impact incidents within one hour, rapidly completing fund tracing, root cause analysis, containment, and subsequent vulnerability remediation.
Looking Ahead: Security is Core Infrastructure
The continued expansion of the BNB chain will inevitably attract more sophisticated attackers, and wallet-level attacks will evolve in tandem with on-chain innovation. Human oversight and education alone cannot compensate for security vulnerabilities. Continuous automated security must become the default standard, eliminating the possibility of users approving insecure transactions at the source.
Hashdit's production-grade integrations with industry leaders like Trust Wallet and Lista DAO are a concrete step towards this vision: continuous security running silently in the background, allowing developers to build with confidence, traders to trade with confidence, and users to participate with peace of mind. As the BNB chain moves into mainstream applications, we are honored to contribute to the synchronized scaling of security and the chain.



