A hacker compromised a ZKsync admin account on April 15, minting $5 million worth of unclaimed airdrop tokens, data-ct-non-breakable=”null” href=”https://x.com/zksync/status/1912141160744632737″ rel=”null” target=”null” text=”null” title=”null”>according to a statement from the official ZKsync X account. The attack was described as isolated, with no user funds affected.
Following an investigation, ZKsync data-ct-non-breakable=”null” href=”https://x.com/zksync/status/1912165357642473488″ rel=”nofollow noopener” target=”_blank” text=”null” title=”https://x.com/zksync/status/1912165357642473488″>detailed the incident on April 15, disclosing that the compromised account had administrative control over three airdrop distribution contracts. The attacker exploited a function called sweepUnclaimed() to mint 111 million unclaimed ZK tokens, increasing the total token supply by…

![[CITYPNG.COM]White Google Play PlayStore Logo – 1500×1500](https://startupnews.fyi/wp-content/uploads/2025/08/CITYPNG.COMWhite-Google-Play-PlayStore-Logo-1500x1500-1-630x630.png)