What happened

Zilliqa said its post-mortem traced a 683M ZIL theft to a hardware-wallet flaw that discarded entropy. The record presents this as confirmed technical detail, but does not provide further information on the affected hardware, remediation, or recovery.

Ledger patched an Ethereum-app bug that could show one transaction to a user and sign another. The supplied record identifies version 1.22.2 as the patch version, making firmware confirmation a concrete point to monitor for affected users.

Why it matters

The three updates concern different parts of the same broad security surface: wallet key generation, transaction signing, and DeFi governance. Together, they suggest that safeguards cannot be assessed only at the protocol level; users and projects may also need to consider device software, what is presented for signing, and the paths governance can authorize.

Term Finance said it ended its Meta Vaults after a governance process cleared the path for an estimated $8.5M drain. Withdrawals are open, according to the record, but it does not confirm whether losses occurred or whether a backstop exists.

What to watch next

The most useful receipts will be the underlying Zilliqa post-mortem and remediation details, confirmation that Ledger’s affected Ethereum app is patched in version 1.22.2, and a Term Finance update that confirms losses, withdrawal status, and any support or backstop for affected users. Until then, the record supports heightened attention to signing, firmware, and governance processes, not conclusions about the full scope of harm.

What to watch

Watch for Zilliqa remediation details, Ledger patch confirmation for version 1.22.2, and a Term Finance statement confirming losses, withdrawals, and any backstop.

Sources and limits

Upstream references and independent checks

Digest dated 2026-08-25 · upstream model claude-sonnet-4-6. Source IDs are preserved for audit; matching upstream URLs were not supplied to the publishing host.

  1. 1
    ebc012c4a3d77e6460b392f0b275c8efae261b6eUpstream reference; direct URL unavailable.
  2. 2
    b876994ffa3290bb8e062868c786be0fbc79e28aUpstream reference; direct URL unavailable.
  3. 3
    dd54d65ece3a00b5e7ddec0da87c482603b4c3dbUpstream reference; direct URL unavailable.
Continue reading
  1. 1

This Research brief was generated by Terra from a dated upstream research digest. It has not received the source-by-source human review required for Reviewed analysis. Material limit: The record is based on three CryptoSlate items and does not include the underlying source documents; Term Finance losses and any backstop remain unconfirmed.