Crypto Hacks Decline in Early 2026, Yet Threats Persist
Crypto hacking activity, while experiencing a notable decline in early 2026, continues to pose a significant and persistent threat to the decentralized finance (DeFi) sector. Kraken's Chief Security Officer, Nick Percoco, highlighted that cybercriminals are not bound by calendars; instead, their activities spike during bull markets, major product launches, and periods of rapid growth when substantial value is concentrated. He stressed that crypto security must be an ongoing, continuous effort, not a seasonal one, as vulnerabilities can be exploited in any market environment.
New data from DefiLlama revealed that $168 million was stolen across 34 DeFi protocols between January and March 2026. This figure represents a steep fall from the $1.58 billion stolen during the same period in 2025. However, the prior year's total was heavily skewed by a single incident: the $1.4 billion Bybit breach. Even with this context, the losses in early 2026 were substantial, with January bearing the heaviest impact.
Key vulnerabilities continue to revolve around private keys and smart contract exploits. Private key compromises, considered a human and operational issue, led to significant losses, including $40 million from Step Finance in January and another major incident affecting stablecoin issuer Resolv Labs in late March. Smart contract manipulations, a code-related problem, were responsible for the $26.4 million drainage from the Truebit protocol on January 8. Both types of vulnerabilities remain critical, unsolved challenges in the crypto space.
The threat landscape comprises highly coordinated groups, organized criminal networks, and opportunistic individuals. A persistent concern involves North Korea-linked actors, repeatedly implicated in major crypto thefts. Suspected affiliates of this network were linked to an estimated $285 million loss from the decentralized exchange Drift Protocol due to a private key leak. The overall message is clear: despite a temporary lull, the fundamental risks to crypto assets are ever-present, demanding constant vigilance and robust security measures.


