Light-client proof verifier accepted malformed headers.
Attacker wallets funded and staged ahead of the bridge exploit exploit against HyperBridge.
$76.9M drained from HyperBridge on Arbitrum via Bridge Exploit.
CertiK flagged the anomalous transactions and published an initial alert.
HyperBridge paused affected contracts or withdrawals and began tracing outbound flows.
Stolen assets followed through mixers, bridges, and exchange deposit addresses.
$3.0M frozen so far; tracing continues.