Cronos Blockchain Suspended Following $75M Tectonic Protocol Security Breach
The Cronos blockchain was forced to suspend operations following a security breach at Tectonic protocol that involved approximately $75 million, with the majority of stolen funds still trapped on the network.

The Cronos blockchain network went into suspension mode following a security breach that targeted the Tectonic decentralized lending protocol, with losses estimated at approximately $75 million. The vast majority of these compromised funds remained locked within the Cronos network as of the time this article was published.
During the weekend on Sunday, Cronos announced it had detected a security exploit affecting Tectonic and proceeded to shut down network operations, while committing to provide further updates as the situation developed. In a separate communication, Tectonic issued warnings advising its user base to avoid any interaction with the protocol during the ongoing investigation. As of publication time, neither Tectonic nor Cronos had publicly verified the root cause of the exploit or the total amount lost, and no specific timeline for resuming network operations had been disclosed.
Security researcher Weilin Li provided analysis indicating that the malicious actor took advantage of TONIC's 20% collateral factor combined with shallow liquidity conditions, artificially inflating the governance token's value by approximately 100 times its original price within a mere 20-minute window before proceeding to borrow additional digital assets. According to Li, the attack methodology resembled what he characterized as a "Mango-market style" pump-and-borrow exploitation technique.
In his preliminary assessment, Li calculated that approximately $66 million had been compromised. His analysis revealed that the attacker successfully transferred roughly $6 million worth of assets across the bridge to the Ethereum network prior to the network halt, while approximately $60 million remained stranded on the Cronos chain. Li subsequently discovered an additional wallet address under the attacker's control containing approximately $8 million in assets, which raised his total estimated loss calculation to around $75 million.
Kris Marszalek, who serves as CEO of Crypto.com, issued a statement reassuring users that both the company's mobile application and centralized exchange platform remained unaffected by the incident and continued to function under normal operating conditions, while emphasizing that customer funds held on these platforms were completely secure.
Neither Cronos nor Tectonic have released any official statements regarding potential actions such as blacklisting the attacker's wallet addresses, implementing measures to recover the stolen digital assets, or establishing any compensation programs for users who were impacted by the exploit. Cointelegraph has reached out to both Cronos and Tectonic projects, as well as Crypto.com, requesting official comments on the situation.