DeFi protocol bZx is being sued for platform hacking
The total losses of the 14 plaintiffs from the hacking attack on the network amounted to $1,6 million
04.05.2022 - 11:10
619
2 min
0
What’s new? Customers of the hacked bZx DeFi protocol have sued the platform and are seeking refunds. The class action lawsuit, filed on May 2 in the Southern District Court in California, lists 14 victims who claim to have lost between $800 000 and $450 000 because of the hacking of the platform. The total amount of damage is $1,6 million, Blockworks reports.
Details of the court case. The victims claim that the theft occurred because the protocol failed to implement the necessary security measures. The plaintiffs are represented by Gerstein Harrow LLP, a law firm whose lawyers specialize in protecting cryptocurrency users.
The complaint alleges that because the bZx protocol is positioned as a decentralized autonomous organization (DAO) with no legal formalities, it can be considered a “general partnership.” And this means that all its participants are legally liable.
“Without the protection of a corporation or limited liability company, everyone involved in a DAO’s governance is liable for the protocol’s negligence and illegality,” Gerstein Harrow LLP Partner Jason Harrow said.
What happened before? The bZx hack took place in November 2021, with hackers managing to withdraw $55 million. The attackers used a phishing attack on one of the platform’s developers. bZx claims that the North Korean group Lazarus is responsible for the hack.
The developers promised to refund the money to customers by using other coins and buying back debt tokens of the BZRX platform. The complaint called this plan “woefully inadequate,” and added that “at the current buyback rate, full repayment will take thousands of years.”
Useful material?
Incidents
The company is linking the incident to a compromised private key on a service wallet, rather than a smart contract exploit
May 22, 2026
Incidents
Following the incident, the project temporarily halted trading operations and node activity.
May 15, 2026
Incidents
The user spent weeks unsuccessfully trying to guess the password until Claude helped find an old wallet backup file
May 14, 2026
Crypto regulations
Authorities are introducing mandatory registration for companies handling cross-border crypto transactions
May 8, 2026
Incidents
According to Blockaid, the attack may have been carried out by the same hacker behind the 1inch Fusion V1 exploit.
May 7, 2026
Incidents
The attacker gained administrative access and altered contracts to drain user funds
Apr 30, 2026
Telegram
Twitter