Abstract Chain Users Hit by Wallet Drain
Abstract Chain, an Ethereum Layer-2 platform, is investigating a wallet drain incident after users reported compromised accounts, just days after surpassing a major milestone of over one million deployed Abstract Global Wallets (AGW).
Abstract Chain developer 0xBeans confirmed the breach on 18 February, clarifying that it was not a systemic AGW issue but rather linked to a vulnerability in the Abstract-based game Cardex.
Fellow developer 0xCygaar, who announced the AGW milestone on 17 February, later reiterated that the exploit originated from Cardex and urged affected users to revoke their sessions immediately.
He clarified that this was not an issue with AGW’s contracts.
Abstract Chain later posted their findings on 19 February, stating that during initial audits, the Cardex team “inadvertently exposed the private key…[which] allowed an attacker to initiate transactions…”
Users Expressed Concern About Other Apps
While Abstract developers have assured users that AGW’s contracts were not involved in the wallet drain, concerns persist about the security of other applications within the Abstract ecosystem.
Some users criticised the team for promoting Cardex on their website, arguing it misled the community and warranted accountability.
Frustration grew as affected users noted that, despite featuring nearly 30 gaming apps—including titles like Vibes TCG and Wits TCG—Abstract makes no mention of Cardex on its website or blog.
Additionally, some users reported wallet compromises despite never interacting with Cardex, further fueling scepticism and calls for transparency.