Verus Bridge Hacked Twice in Two Months: Why Recovery and Redeposits Failed to Remove $7.54M of Risk

Verusrepeat exploitbridge reservesKYT

Why the Verus Bridge Was Exploited Again Using the Same Vulnerability Pattern

According to verified reporting from CoinDesk, the Verus-Ethereum bridge lost approximately $7.54 million involving ETH, tokenized Bitcoin, and multiple stablecoins. The attacker exploited the bridge import mechanism to trigger Ethereum-side payouts that were not backed by corresponding assets locked on the source chain. Rather than breaking cryptographic security, the exploit targeted weaknesses in the bridge verification logic to exchange nearly worthless cross-chain claims for genuine reserve assets.

More importantly, the incident reused the same bridge contract, attack entry point, and vulnerability category that had already been exploited during the May security incident. Although most stolen funds had previously been returned and the recovered assets were redeposited into the bridge reserves on July 8, the bridge suffered another major loss only two weeks later. This demonstrates that recovering stolen funds is not equivalent to restoring security. Without independently verified remediation of the underlying vulnerability, redepositing assets simply exposes fresh capital to the same unresolved risks.

What Evidence Is Required Before Declaring a Cross-Chain Vulnerability Fully Resolved

A complete post-incident review should provide technical evidence that the root cause has been eliminated rather than focusing solely on asset recovery or service restoration. First, organizations should confirm that security patches address every related attack vector rather than only the exploited entry point. Second, legacy contracts should be fully retired to prevent outdated logic from continuing to process transactions.

Projects should also verify that migrated assets rely on updated validation mechanisms and that independent security reviewers can reproduce the historical exploit while confirming the vulnerability has been completely removed. Simply relying on returned funds, public announcements, or temporary service suspensions may create a false sense of security without resolving the technical problem.

For cross-chain bridges, reopening should include transaction caps, rate limits, and phased liquidity restoration. These safeguards help ensure that any remaining weaknesses result in limited damage rather than another large-scale exploit. Continuous verification provides significantly greater protection than one-time security declarations.

How Trustformer KYT Builds Continuous Post-Incident Risk Monitoring

Trustformer KYT establishes phased monitoring for exploited protocols instead of assigning permanent "safe" or "unsafe" classifications. During the first phase, the system monitors administrator permission changes, contract redeployments, and asset migration activities to validate relationships between legacy and newly deployed addresses.

The second phase focuses on low-volume recovery transactions after services resume, comparing source-chain asset locks with destination-chain releases to verify bridge integrity. During the third phase, KYT continuously monitors reserve coverage, abnormal contract interactions, and capital movements as liquidity gradually returns to normal levels.

Risk ratings are only reduced after critical indicators remain stable over time and independent security validation confirms successful remediation. This dynamic approach better reflects the evolving nature of blockchain protocols, where upgrades, operational changes, and key management continuously influence security. Exchanges, custodians, and asset managers can use these ongoing observation labels to determine appropriate timelines for resuming deposits, adjusting exposure limits, and restoring services while minimizing the likelihood of supporting another exploit.

About Trustformer

Trustformer is a leading blockchain security and compliance technology company specializing in providing professional risk management and compliance solutions for the global cryptocurrency ecosystem. We have developed the cutting-edge Trustformer KYT (Know Your Transaction) platform, which integrates artificial intelligence, blockchain analytics, and regulatory technology to deliver comprehensive, accurate real-time transaction monitoring, risk assessment, and suspicious activity reporting services.

With deep industry expertise and technological innovation, Trustformer is dedicated to helping Virtual Asset Service Providers (VASPs), crypto financial institutions, and investors build a safer and more transparent crypto financial environment. We believe that driving compliance and trust through technology can contribute to the thriving growth of the global digital economy.