{"id":30973,"date":"2026-07-25T09:00:21","date_gmt":"2026-07-25T08:00:21","guid":{"rendered":"https:\/\/investx.fr\/en\/2026\/07\/25\/triple-a-hack-9-7-million-ethereum-solana-tron-ton\/"},"modified":"2026-07-25T09:00:28","modified_gmt":"2026-07-25T08:00:28","slug":"triple-a-hack-9-7-million-ethereum-solana-tron-ton","status":"publish","type":"post","link":"https:\/\/investx.fr\/en\/crypto-news\/triple-a-hack-9-7-million-ethereum-solana-tron-ton\/","title":{"rendered":"Triple-A Hack: $9.7 Million Drained Across Ethereum, Solana, TRON, and TON"},"content":{"rendered":"\n
A leading fiat-to-crypto<\/strong> payment gateway has just been stripped of several million dollars. The attackers struck simultaneously across four separate blockchains<\/strong>, leaving virtually no time to react. Here is everything we know about the exploit shaking the crypto payments sector.<\/p>\n\n\n\n Triple-A<\/strong>, a licensed crypto payment platform operating on a global scale, suffered a coordinated attack on its hot wallets<\/strong>. According to blockchain security firm PeckShield<\/strong>, the stolen funds amount to over $9.7 million<\/strong>, spread across four networks: Ethereum<\/a><\/strong>, Solana<\/a><\/strong>, TRON<\/a><\/strong>, and TON<\/a><\/strong>.<\/p>\n\n\n\n The attack vector specifically targeted hot wallets<\/strong> \u2014 wallets that remain permanently connected to the internet to facilitate real-time transactions. Unlike cold wallets<\/strong> that are isolated from the network, hot wallets represent a constant attack surface. It is precisely this architecture that allowed the attackers to move quickly and strike across multiple chains in parallel.<\/p>\n\n\n\n The fact that the attack was distributed across four blockchains simultaneously<\/strong> points to a high level of preparation. This type of multi-chain exploit<\/strong> significantly complicates fund tracing and slows down asset freezing procedures, which typically depend on the responsiveness of centralized exchanges.<\/p>\n\n\n\n Triple-A is no fringe player. The company holds a payment license issued by the Monetary Authority of Singapore (MAS)<\/strong> and processes transactions for thousands of merchants worldwide. Its role as an intermediary between fiat currencies and cryptocurrencies<\/strong> makes it a particularly attractive target: liquidity flows are constant and hot wallets must remain funded at all times.<\/p>\n\n\n\n This kind of profile \u2014 regulated infrastructure, high transaction volume, multi-network exposure \u2014 is exactly what sophisticated hacker groups look for. The attack is reminiscent of notable precedents such as the Ronin Network hack<\/a><\/strong> and the Harmony Horizon Bridge exploit<\/strong>, where the multi-chain dimension was also used as a tactical lever.<\/p>\n\n\n\n At this stage, no official statement from Triple-A<\/strong> has confirmed the exact amount or detailed the remediation measures being taken. PeckShield<\/strong> remains the primary source of information, which once again underscores the critical role that on-chain security firms play in the early detection of exploits.<\/p>\n\n\n\n The Triple-A exploit is part of a broader and persistent trend: payment gateways and multi-chain bridges<\/a><\/strong> concentrate systemic risks that neither regulation nor smart contract audits are sufficient to neutralize. Hot wallet management<\/strong> remains the weakest link in the industry, despite years of well-documented incidents.<\/p>\n\n\n\nTriple-A Targeted: How Hackers Drained $9.7 Million<\/h2>\n\n\n\n
<\/figure>\n\n\n\nTriple-A in the Crosshairs: A Prime Target for Hackers<\/h2>\n\n\n\n
Hot Wallets Under Pressure: Structural Lessons From a Recurring Hack<\/h2>\n\n\n\n