Humanity Protocol Security Incident Escalates: More Than $31 Million Stolen From Related Addresses as Attacker Continues Selling H for ETH
Current public information shows the incident is still evolving rapidly. On-chain investigator ZachXBT said it is not yet possible to determine whether this was a typical external hack or whether malicious insider behavior may have been involved. Different sources have described the incident differently, and the relevant details still await official confirmation. Beyond the growing amount stolen, the on-chain sell-off has also quickly turned the incident from a pure security breach into a liquidity and market structure problem.
Based on developments disclosed so far, abnormal activity had already appeared in Humanity Protocol-related wallets at an earlier stage. Previous on-chain analysis said that more than 17 related wallets holding H were affected, with losses once exceeding $19 million; the latest monitoring now shows the scale of the theft has risen to more than $31 million. Additional follow-up on-chain reports also said the attacker minted another 1 billion H, implying the risk may not be limited to a wallet-level private key leak, but could also involve deeper permission control or token contract management issues. However, this has not yet been fully explained.
For the market, the attacker’s continued selling of H for ETH is directly increasing sell pressure on H and making any subsequent response by the project team more difficult. Key things to watch next include the scope of affected addresses, whether the token contract and related permissions have been further compromised, whether the project will implement freezing or suspension measures, and whether it will disclose a clearer attribution of the incident and a remediation plan.
## Why It Matters
The significance of this incident lies not only in the fact that losses have reached the tens of millions of dollars, but also in the fact that it simultaneously touches on on-chain security, token liquidity, and project governance. If the issue is only a single private key leak, the impact may be relatively contained; but if the reported “additional minting of H” is true, the nature of the incident could escalate from stolen assets to a token control risk, and the pricing logic in the secondary market would change accordingly.
For trading markets, the attacker’s continued conversion of H into ETH is essentially shifting the project’s native risk into public liquidity pools and trading pair depth. What the market will care more about is whether the current sell pressure comes from a one-off theft-driven dump or whether it will evolve into a longer-term loss of supply control. Because the official technical details have not yet been fully disclosed, the boundaries of the risk remain unclear.
## WEEX View
The core question is no longer simply whether funds were stolen, but whether H’s asset characteristics still hold. If only several operational or market-making addresses were compromised, then after CEX and on-chain liquidity absorb the sell-off, the market may still price it as a one-time risk event. But if the private key leak also exposes mint permissions, cross-chain bridge permissions, or failures in multisig control, then both the circulating supply and expectations around total supply for H could become distorted at the same time. Market makers would rapidly narrow their quotes and increase inventory protection, arbitrage capital would pull back, and the direct experience on the exchange side would quickly become “quotes exist, but there is no depth.”
A more immediate commercial conflict of interest is that the project team, market makers, early token holders, and secondary-market liquidity providers are no longer aligned. The project needs to stabilize the narrative and cut off permission-related risks as quickly as possible; market-making resources will prioritize protecting their own inventory; on-chain arbitrageurs will only watch for CEX/DEX price gaps to move liquidity; and whether Old Money stays in the market will depend on whether the team can provide a verifiable pause, recovery, snapshot, or restructuring plan. What is most worth watching next is not verbal explanations, but three hard indicators: whether a list of affected addresses and permissions is disclosed, whether the abnormal minting is formally confirmed, and whether major trading venues introduce deposit/withdrawal restrictions or adjust trading parameters.
## Timeline
- June 7, 2026: Humanity Protocol announced the launch of staking on Humanity Chain and introduced a reward pool of 30 million H.
- June 8, 2026: On-chain analysts reported that wallets related to or interacting with Humanity Protocol were attacked, affecting more than 17 wallets and causing losses of more than $19 million.
- June 9, 2026: Onchain Lens reported that the amount stolen from addresses linked to Humanity Protocol had exceeded $31 million, with the attacker continuously swapping H for ETH.
- June 9, 2026: Subsequent on-chain reports said the attacker minted an additional 1 billion H, suggesting the incident may have expanded from stolen assets to deeper permission control risks.
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

On-chain vaults will invade traditional finance: Grayscale

How long will it rain in Buenos Aires and what will the weather be like during the week

ANSES Confirms Payment Schedule for August 2026: When Retirees, Pensioners, and Allowances Will Receive Deposits

Why Are South Korea's Stock Indices More Volatile Than Bitcoin?

Stock Market: Why Wall Street is Buying While Investors are Selling

RWA perps will outpace tokenization

Pedro Sánchez described the migration crisis in Ceuta as an "attack on Spain's territorial integrity"

Stablecoin remittances hit 9% in Bank of Italy test

Algorithms in Cryptocurrencies: How the 'Crypto Tools' Strategy from 'Finam' Works

The complete list of Chinese cars in Argentina with prices starting from $18,900

Stocks Plummet More Than Cryptos: Where Did the Money Go?

Franco Baresi, Milan legend and World Cup champion with Italy, has died

What Changes Have Occurred in the Crypto Industry by 2026?

Robinhood earns $160 target from Bernstein on tokenization and Rothera growth

Central Banks Bet More Than Ever on Gold Amid Global Uncertainties

Pressure Mounts for Land Law: A Sector of the UCR Opposes and Seeks to Convince Senators

Fintech giant KSNet joins Solana Foundation to trial Solana Pay in South Korea

Telegram: Pavel Durov Responds to Russian Accusations and Denounces Mass Surveillance

Bitcoin self-custody debate erupts over poor wallet UX

Bitcoin Under Scrutiny After Bank of Japan's Decision

Clarity Act Impact on XRP: Why Polymarket Sentiments Are Shifting in 2026

Crypto treasuries pivot to AI data center funding

The New Cold War is a War of Technology Stocks

The Corporation is Not the End: The Next Generation of Organizational Forms Emerges

Hungary Abolishes Cryptocurrency Verification Rules, Restructures Market to Comply with MiCA

Two Escapes in One Week: Is Claude from Anthropic Doing What He Wants?

BIS Tests 'Tokenized Currency' for Cross-Border Payments: 28 Global Banks Participate, Average Settlement Time of 80 Seconds

A Comprehensive Overview of Web3 Infrastructure: Understanding the Future of Blockchain Through Five Core Technologies

Japan Keeps Interest Rates at 1% as Carry Trade Remains Alive: What It Means for Bitcoin





