A hacker behind the exploit of Aztec's private Rollup bridge has transferred another 300 ETH to the crypto mixer Tornado Cash, bringing their total laundered amount to 500 ETH. The move, detected on-chain, underscores the ongoing challenge of tracing stolen funds in the DeFi ecosystem.
Attack Details Unfold
The attacker initially stole funds from Aztec's bridge, a protocol designed to enable private transactions on Ethereum. While the exact date of the original breach is unclear, recent activity shows a steady drip of ETH into Tornado Cash, a service that obfuscates transaction trails.
According to blockchain analysts, the latest transfer of 300 ETH occurred in a single transaction, pushing the cumulative total to 500 ETH. This follows a pattern seen in many DeFi hacks, where attackers use mixers to launder proceeds and evade law enforcement.
Why Tornado Cash?
Tornado Cash is a popular privacy tool that breaks the on-chain link between sender and receiver addresses. By pooling funds and allowing withdrawals from new addresses, it makes tracing difficult for investigators.
However, the service has come under regulatory scrutiny. In 2022, the U.S. Treasury sanctioned Tornado Cash, but it remains operational in many jurisdictions. This has not deterred hackers, who continue to exploit its privacy features.
Security experts note that while mixers offer anonymity, they are not foolproof. Advanced analytics firms often can cluster addresses and follow funds, but the process is time-consuming and not always successful.
Implications for Aztec Users
The attack has raised concerns among Aztec users about the safety of their funds. Aztec's bridge was designed to provide private Rollup capabilities, and a vulnerability in its smart contract allowed the attacker to drain assets.
In response, the Aztec team has urged users to remain vigilant and has promised to enhance security measures. However, the incident highlights the risks inherent in DeFi protocols, especially those handling significant liquidity.
Ongoing Investigation
Blockchain security firms are actively monitoring the attacker's wallet and have alerted exchanges to flag any incoming funds. The cumulative 500 ETH, valued in the millions, remains a target for law enforcement.
This case adds to a growing list of high-profile DeFi hacks in 2026, prompting calls for better security audits and insurance mechanisms. Some argue that privacy tools like Tornado Cash should be regulated more strictly, while others defend their use for legitimate privacy needs.
As the investigation continues, the crypto community watches closely. The attacker's next move could provide clues, but for now, the funds remain in limbo.
Key Takeaways
- The Aztec bridge attacker has transferred a total of 500 ETH to Tornado Cash, including a recent 300 ETH transfer.
- Mixers like Tornado Cash remain a preferred laundering method for hackers despite regulatory actions.
- DeFi protocols must prioritize security to prevent such exploits.
- Blockchain analytics firms are working to trace the stolen funds.
Zyra