Status of Claims
Published 6/9/2026, 8:04:41 PM
On June 9, 2026, on-chain investigator ZachXBT initially alleged that the $32M–$36M exploit of Humanity Protocol was "possibly staged," but he later retracted this specific claim after further analysis of the laundering activity. While he now acknowledges the exploit likely stemmed from a genuine private key compromise, he maintains that the project engaged in highly suspicious market activity leading up to the event.
Status of Claims
- c1: ZachXBT alleged the exploit was staged. RESOLVED: ZachXBT did publicly doubt the team's story on June 9, 2026, calling it a "convenient way for the active market maker to have exited" [Source: https://x.com/zachxbt/status/2064191049267052853].
- c2: Evidence supporting the "staged" claim. RESOLVED: ZachXBT initially cited a "crime pump" with "zero fundamentals" and suspicious market-making agreements as evidence of a setup [Source: https://x.com/zachxbt/status/2064191049267052853]. However, he later updated his stance, stating the "sketchy MM / OTC & private key compromise are independent of one another" after reviewing the flow of stolen funds.
- c3: Counter-arguments from Humanity Protocol. RESOLVED: Humanity Protocol attributed the loss to a compromise of admin keys (3/6 on Ethereum and 3/5 on BNB Chain), which allowed the attacker to mint massive amounts of new supply [Source: https://news.bitcoin.com/humanity-protocol-says-compromised-admin-keys-led-to-36m-exploit, https://crypto.news/humanity-protocol-says-compromised-admin-keys-led-to-36m-exploit].
Exploit Data and Impact
The exploit resulted in a near-total collapse of the H token, which fell approximately 89% within 24 hours.
| Metric | Data Point | Source |
|---|---|---|
| Total Stolen | ~$32M - $36M+ | Humanity Protocol / Specter |
| Token Impact | ~$0.73 to ~$0.08 (-89%) | CoinGecko / CoinMarketCap |
| Method | Compromise of Multisig Keys | Source |
| Attacker Action | Minted 100M - 200M H tokens | Source |
| Conversion | ~18,510 ETH and 1,548 BNB | Lookonchain |
Remaining Red Flags
Despite ZachXBT ruling out a "staged" exploit, several concerns persist regarding the project's integrity:
- Market Manipulation: The token was aggressively pumped ahead of a scheduled June 25 unlock, leading to suspicions that the hackers exploited an artificially inflated price [Source: https://x.com/zachxbt/status/2064191049267052853].
- Centralization Risks: Analysts questioned how a subset of multisig keys could allow for the minting of massive supply on a secondary chain without more robust safeguards.
- Founder History: Media reports highlighted that founder Terence Kwok’s previous venture, Tink Labs, collapsed in 2019 after raising $160M, fueling initial community skepticism [Source: https://news.bitcoin.com/humanity-protocol-says-compromised-admin-keys-led-to-36m-exploit].
In summary, while the exploit itself appears to have been a genuine external theft via key compromise, the project remains under scrutiny for its market-making practices and the timing of the event relative to token unlocks.
Next Steps:
- Would you like a deep dive into the current distribution of the H token to see if the "sketchy OTC" participants are still holding?
- I can monitor the attacker's wallet addresses for any movement of the 18,510 ETH to exchanges or mixers.