
Cryptocurrency losses have crossed $600 million in 2026, with April alone witnessing two major thefts linked to North Korean actors. According to blockchain security firm CertiK, the most significant breaches included a $293 million exploit at Kelp DAO and a $280 million hack at Drift Protocol. The Kelp DAO breach involved a failure in cross-chain messaging infrastructure tied to LayerZero that allowed attackers to bypass safeguards built around trust assumptions. The Drift Protocol incident resulted in approximately $280 million in losses, demonstrating the scale of vulnerabilities in the current cryptocurrency infrastructure.
Security experts warn that artificial intelligence is transforming the threat landscape, with tools capable of generating convincing deepfakes and automating exploit development becoming increasingly accessible. As reported by CertiK, there are now more convincing deepfakes, autonomous attack agents, and 'agentic AI' that can autonomously scan smart contracts for bugs, draft exploit code, and execute attacks at machine speed. An earlier incident on April 15 highlighted this trend, when crypto wallet provider Zerion disclosed that North Korean-linked hackers carried out a prolonged social engineering campaign, eventually extracting around $100,000 from its hot wallets. Earlier this month, a threat actor known as 'Jinkusu' was reportedly offering cybercrime tools designed to bypass Know Your Customer checks across banks and crypto platforms, relying on voice manipulation and deepfake technology.
According to CertiK senior blockchain investigator Natalie Newson, the pace and nature of attacks point to a more complex threat environment taking shape. Real-time deepfakes, phishing campaigns, supply chain compromises, and cross-chain vulnerabilities are likely to sit at the center of major exploits heading into 2026. However, defensive measures are beginning to evolve alongside these threats. Increased automation has led to a surge in bug bounty submissions across the industry, even if not all findings are valid. One example includes Claude Mythos, an AI system developed by Anthropic, which has been tested in limited deployments for identifying vulnerabilities in major operating systems.
Newson emphasized that the best protection for investors involves awareness of current threats and implementing proper security measures. For phishing protection, she recommended always verifying the authenticity of URLs and smart contracts. Regarding storage practices, she noted that using cold wallets can help keep assets that aren't used regularly safe and allows signing transactions without ever exposing private keys. These recommendations come as security concerns extend beyond external attacks to include storage practices, which remain a weak point, especially for retail participants in the cryptocurrency market.