
Humanity says a June 8-9 attack came from malware on a developer machine that exposed seven private keys and production signing keys, leading to more than $36 million in stolen and sold H tokens.
Humanity Protocol said a June 8-9 security incident that sent its H token sharply lower was caused by malware on a developer machine and leaked production signing keys, not vulnerabilities in its smart contracts, bridge, token or Safe system. In its investigation, the project said the attacker gained full root access to one compromised device and obtained seven private keys, including an admin hot wallet private key and six Gnosis Safe signer keys. Humanity said more than $36 million in H on Ethereum and BNB Chain was stolen and sold after attackers transferred about 141.2 million H on Ethereum and minted 200 million H on BSC, while retaining ProxyAdmin control over the ETH bridge and the BNB Chain token. Deposits and withdrawals for affected bridge services were suspended as external security firms conduct forensics and the team prepares user recovery or compensation plans and token contract updates.