Polymarket: third‑party compromise led to theft of users' crypto funds

Colleagues, a cybersecurity alert: Polymarket reported theft of funds from some users.
What happened: a compromise at a third‑party vendor allowed malicious code to be injected into the site. The company says the incident is contained and affected users will be fully reimbursed.
What is known: Polymarket confirmed thefts but gave few details. PeckShield reported a phishing campaign, estimating losses of $3M across 11+ victims.
Recommendations: review third‑party integrations, strengthen transaction monitoring and user communications.
Why it matters: partner vulnerabilities directly threaten customer funds and service reputations.
Which measures do you consider priorities in such cases?
#cybersecurity #crypto #phishing #infosec

