{"id":29212,"date":"2026-05-20T16:41:24","date_gmt":"2026-05-20T16:41:24","guid":{"rendered":"https:\/\/bitunikey.com\/news\/bankr-hack-drains-wallets-as-users-warned-not-to-sign\/"},"modified":"2026-05-20T16:41:31","modified_gmt":"2026-05-20T16:41:31","slug":"bankr-hack-drains-wallets-as-users-warned-not-to-sign","status":"publish","type":"post","link":"https:\/\/bitunikey.com\/news\/bankr-hack-drains-wallets-as-users-warned-not-to-sign\/","title":{"rendered":"Bankr hack drains wallets as users warned not to sign"},"content":{"rendered":"<p><\/p>\n<div class=\"post-detail__content blocks\">\n<p><strong>Bankr has temporarily disabled transactions after an attacker gained access to 14 wallets, raising new concerns about the security of AI-powered crypto trading agents.<\/strong><\/p>\n<div id=\"cn-block-summary-block_2d9d44ad97528181552476321efb93de\" class=\"cn-block-summary\">\n<div class=\"cn-block-summary__nav tabs\">\n        <span class=\"tabs__item is-selected\">Summary<\/span>\n    <\/div>\n<div class=\"cn-block-summary__content\">\n<ul class=\"wp-block-list\">\n<li>Bankr disabled transactions after confirming attacker access to 14 wallets and pledged full user reimbursement.<\/li>\n<li>Users were told to stop signing transactions, create new wallets, and revoke existing approvals.<\/li>\n<li>Recent bridge exploits show crypto attackers keep targeting weak signing controls and cross-chain systems.<\/li>\n<\/ul><\/div>\n<\/div>\n<p><!-- .cn-block-summary --><\/p>\n<p>Bankr <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/x.com\/bankrbot\/status\/2056824330999533747\" target=\"_blank\" rel=\"nofollow\">said<\/a> on X that it had disabled swaps, transfers, and token deployments while investigating reports of compromised wallets. The AI crypto trading assistant said the pause was done \u201cout of caution\u201d as it reviewed the incident.<\/p>\n<p>The team later said it had identified an attacker who accessed 14 Bankr wallets. Bankr wrote, \u201cwe\u2019ve temporarily locked things down while we work through the details,\u201d adding that it would reimburse all lost funds.<\/p>\n<p>    <!-- .cn-block-related-link --><\/p>\n<h2 class=\"wp-block-heading\"><strong>Users told not to sign transactions<\/strong><\/h2>\n<p>Bankr advised users not to sign transactions until further notice. It also told affected users to stop using compromised wallets, create new wallets, generate new seed phrases on clean devices, and move any remaining tokens or NFTs.<\/p>\n<p>The team also warned users to revoke approvals if assets could not be moved. Bankr said attackers often use existing permissions to drain funds, and asked users to scan computers and phones for malware or suspicious browser extensions.<\/p>\n<h2 class=\"wp-block-heading\"><strong>AI agent attack theory draws attention<\/strong><\/h2>\n<p>SlowMist founder Yu Xian <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/x.com\/evilcos\/status\/2056905298787582417\" target=\"_blank\" rel=\"nofollow\">said<\/a> the exploit appeared to be a social engineering attack targeting the trust layer between automated agents. He pointed to a possible interaction involving Grok and Bankrbot that allowed unauthorized signing.<\/p>\n<p>Yu added that the case looked like a mix of social engineering and prompt injection. He also said a previous Bankrbot-linked wallet assigned to Grok had been drained through a similar method.<\/p>\n<p>Bankr\u2019s design makes the case more closely watched. A 0x case study <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/0x.org\/case-studies\/bankr\" target=\"_blank\" rel=\"nofollow\">describes<\/a> Bankr as a natural language AI trading companion that lets users swap, trade, transfer, and deploy tokens through simple commands inside social feeds or a private terminal.<\/p>\n<p>Moreover, some users reported large wallet losses after the incident. Tech entrepreneur Austen Allred <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/x.com\/Austen\/status\/2056814138681147730\" target=\"_blank\" rel=\"nofollow\">said<\/a> a Bankr wallet linked to his Kelly Claude AI assistant project was among those compromised.<\/p>\n<p>Allred said there was no evidence that anyone else had logged into the Bankr account. He added that the attacker must have accessed the keys another way.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Crypto security pressure keeps rising<\/strong><\/h2>\n<p>The Bankr incident comes during another active period for crypto attackers. Related reports said Verus Protocol\u2019s Ethereum bridge lost more than $11.5 million after attackers used a forged cross-chain transfer message.<\/p>\n<p>Echo Protocol also paused cross-chain activity after an attacker minted roughly $76.7 million in unauthorized eBTC on Monad. Aethir earlier said it contained a bridge attack while keeping user losses below $90,000.<\/p>\n<p>Other DeFi attacks this year have also involved Drift Protocol and Kelp DAO, adding to concerns over bridge security, wallet approvals, and automated transaction systems.<\/p>\n<p>    <!-- .cn-block-related-link --><\/p><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Bankr has temporarily disabled transactions after an attacker gained access to 14 wallets, raising new concerns about the security of AI-powered crypto trading agents. Summary Bankr disabled transactions after confirming&hellip;<\/p>\n","protected":false},"author":1,"featured_media":29213,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-29212","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cryptocurrency"],"_links":{"self":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/29212","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/comments?post=29212"}],"version-history":[{"count":1,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/29212\/revisions"}],"predecessor-version":[{"id":29214,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/29212\/revisions\/29214"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/media\/29213"}],"wp:attachment":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/media?parent=29212"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/categories?post=29212"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/tags?post=29212"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}