Cryptocurrency hacks surge to 50 in August despite lower losses

Close-up of a laptop displaying cybersecurity text, emphasizing digital security themes.

In brief

  • 50 cryptocurrency hacks hit in August 2026, up 67% from July's 30 incidents
  • Total losses fell to $136.3 million, down 49.5% from $270 million in July
  • TectonicFi hack caused $74 million damage, ranking fourth largest 2026 theft
  • Breach frequency and dollar losses diverge, exposing persistent crypto security gaps

The August attack wave

August's 50 incidents represented a sharp uptick from July's 30. Yet total losses declined 49.5% to $136.3 million compared to July's approximately $270 million. This disparity reflects the outsized impact of a single catastrophic breach: TectonicFi's $74 million hack accounted for more than half of August's total theft.

PeckShield, the on-chain analytics firm tracking these incidents, ranked the TectonicFi exploit as the fourth largest cryptocurrency theft of 2026. The attacker managed to bridge roughly $6 million away before Cronos paused its chain, then pivoted to laundering the remainder by shifting assets toward Bitcoin.

Distributed damage across protocols

Beyond TectonicFi, August's losses spread across multiple protocols. Moonwell suffered approximately $8.7 million in losses, while Termlabs lost $8.5 million. Coinsbuy sustained $7.9 million in damage, and TAC reported $7.5 million in losses. Smaller but still significant breaches hit Injective ($4.8 million), MANTRA ($3.6 million), BounceBit ($3 million), Cosmos Labs ($2.87 million), and Aquifer ($2.47 million).

The breadth of targets—spanning lending protocols, bridges, and application chains—points to systemic vulnerability rather than isolated failures.

Frequency masks persistent risk

Lower dollar totals can obscure deteriorating security conditions. August shows that decreasing dollar losses should not be confused with improved crypto security, as $136.3 million was stolen in 50 incidents. The 67% jump in incident count signals that attackers are finding more entry points, even if individual exploits average smaller payouts. This trend warrants scrutiny from protocol developers and investors alike—it suggests the attack surface is expanding, not contracting.