Skip to content

Glossary

Wormhole Hack

The February 2022 exploit that drained 120,000 wETH (~325M USD) from the Wormhole Ethereum-to-Solana bridge via a missing signature-verification check.

On February 2, 2022, an attacker exploited a bug in the Wormhole Solana program: a missing check on the SignatureSet account let them forge a "wormhole guardian" attestation and mint 120,000 wETH on Solana without depositing any ETH on Ethereum. The minted wETH was then bridged out as ETH worth ~325M USD.

Jump Crypto immediately replaced the stolen funds to restore peg of wormhole-wrapped assets. The patch was a small change to the signature-verification logic. The hack remains a canonical example of how a single missing check on a bridge contract can produce catastrophic loss.