According to analysis by SlowMist founder Yu Xian, a security incident in Cardano ecosystem project SecondFi's wallet-generation software has resulted in estimated user losses between $2.4 million and over $20 million, affecting more than 129 million ADA and other tokens.
SecondFi initially estimated the incident impact at approximately 16 million ADA (roughly $2.4 million based on current pricing), attributing it to a flaw in its native Cardano web wallet-generation software. However, Yu Xian's on-chain fund-flow analysis suggested the actual exposure could exceed $20 million, with up to 178 wallets potentially affected. The project has placed services into maintenance mode and is working with an external blockchain security firm on an independent technical review. SecondFi has not yet released a final audit, compensation plan or definitive accounting of all losses.