Harmony Horizon Bridge hack
Harmony's Horizon bridge was exploited for about $100M in June 2022 after attackers compromised multisig signing keys. The FBI later attributed the theft, along with the Ronin hack, to North Korea's Lazarus Group.
Also known as: Harmony, Horizon Bridge
Summary
The Horizon bridge, which connected the Harmony blockchain to Ethereum and other networks, was exploited in June 2022 for about $100 million. Analyses indicate the attackers compromised the private keys controlling a multisignature wallet that secured the bridge. [1][2]
Attribution
In January 2023 the FBI attributed the Harmony theft to the Lazarus Group (also tracked as APT38), the same North Korea-linked actor blamed for the Ronin hack, and described laundering of the proceeds. [2]
Bracketed numbers refer to the numbered sources listed below.
Sources (2)
See also
World Liberty Financial (WLFI) — Justin Sun token freezeProjectsWLFI, a DeFi project linked to Donald Trump and his family, blacklisted/froze the wallet of major investor Justin Sun in Sept 2025 — ~540–595M unlocked WLFI tokens (~$107M) plus ~2.4B locked. Sun sued, alleging an undisclosed admin 'blacklist backdoor'; WLFI denied it and threatened a countersuit. The dispute is ongoing.
Gala Games exploitTokensOn May 20, 2024 an attacker abused a privileged minter account on the GALA token contract to mint 5 billion GALA (≈$200M+ nominal) and dumped ~600M of them for ~$22M of ETH before Gala froze the address. Gala Games called it an internal access-control failure; the attacker later returned the ~$22M.
This page was last updated on Jun 15, 2026. View revision history.
