Lumen Loop
Home
Articles

Stellar Ecosystem
News

DeFi, payments, tokenization, Soroban, governance, and project launches — curated daily from publications, project blogs, and community channels across the Stellar blockchain ecosystem.

34
tagged "cybersecurity"
12 categories
Filter
All 34Payments 534Developers 382Partnerships 371Stablecoins 343Financial Inclusion 321Developer Tools 306DeFi 276Smart Contracts 234Soroban 208Emerging Markets 186Fintech 173Real World Assets 157
5
MAY 2026
1 story
2w ago
24
APR 2026
1 story
3w ago
23
APR 2026
1 story
3w ago
Cybersecurityblog.telluscoop.com
Kuyfi: Seguridad Ofensiva para el Futuro de Stellar

Kuyfi, a black-box security scanner for Soroban smart contracts, launches its first phase. It analyzes contract bytecode without requiring source code, addressing a critical gap in DeFi security for protocols like Soroswap and Blend.

15
APR 2026
1 story
April 15, 2026
Sorobancertora.com
Your Roadmap to a Soroban Security Audit

Certora and the Stellar Development Foundation published a comprehensive guide for preparing Soroban smart contracts for security audits through the Audit Bank program, covering threat modeling, code quality, testing, and security tooling.

27
MAR 2026
1 story
March 27, 2026
Cybersecuritywww.soundness.xyz
The Quantum Clock Moved Forward: How Close is 'Q-Day' for Blockchain?

Quantum computing progress has accelerated the timeline for cryptographic threats to blockchain. Research shows qubit requirements to break elliptic curve cryptography fell 44%, Google targets 2029 for quantum-safe systems, and major chains face a race condition during migration that leaves zero margin for error.

10
MAR 2026
1 story
March 10, 2026
Cybersecuritylumoscore.com
Introducing Private Mode: Execute Trades in Stealth

LumosCore launches Private Mode, allowing users to mask their identity while trading across Stellar, XRPL, and other supported networks. The feature lets traders toggle privacy on or off instantly, hiding usernames from public feeds and reducing exposure to wallet watching and social engineering.

19
FEB 2026
1 story
February 19, 2026
DeFinormalfi.substack.com
We spent 6 months on security before launching. Here's why...

Normal Finance completed a comprehensive security audit with Halborn, emphasizing that security must be a foundational design principle rather than a launch checkbox. The protocol prioritized clarity and modularity from inception to manage the elevated risks of index protocols handling pooled capital.

29
OCT 2025
1 story
October 29, 2025
Securitychainpatrol.com
Introducing ChainPatrol.com

ChainPatrol announces the launch of its redesigned website, ChainPatrol.com, featuring 24/7 booking, streamlined landing pages, fresh blog content, updated product info, changelog, and new customer testimonials. The platform protects Web3 projects from phishing and impersonations. Notable clients include Stellar among others like MetaMask, TON, Sui, Polkadot, and Polymarket.

16
OCT 2025
1 story
October 16, 2025
Cybersecuritystellar.org
Addressing state archival inconsistencies: protocol upgrade vote next week

On October 9, SDF discovered a bug in Stellar's state archival feature (Protocol 23) that caused outdated entries to be archived and restored incorrectly. The network immediately paused archival eviction and deployed a patch to quarantine corrupted entries, affecting only 478 smart contract entries out of ~47 million ledger entries.

28
SEP 2025
1 story
September 28, 2025
9
SEP 2025
1 story
September 9, 2025
Cybersecuritystellar.org
NPM Supply Chain Attack Response

The Stellar Development Foundation announced that all SDF projects are unaffected by a major NPM supply chain attack discovered on September 8, 2025. SDF conducted audits and found no malicious packages in their projects, while providing guidance to the broader Stellar ecosystem on how to protect against the attack.

21
AUG 2025
1 story
August 21, 2025
Securityrange.org
Making threat detection faster and smarter with zeroShadow

Range announces a partnership with zeroShadow to integrate forensic-grade incident intelligence into its blockchain security platform. This collaboration enhances threat detection and incident response for ecosystems including Stellar. Real-time data from zeroShadow's investigations will improve Range's Transaction Security and Risk API products.

29
MAY 2025
1 story
May 29, 2025
Sorobanstellar.org
Soroban Security Audit Bank: Raising the Standard for Smart Contract Security

The Stellar Development Foundation announced enhanced 2025 updates to the Soroban Security Audit Bank, which has conducted over 40 audits and deployed $3 million in support. The program now offers complimentary initial audits with co-payment refunds for swift vulnerability remediation, incentivized follow-up audits at TVL milestones, advanced security tooling, and enhanced audit readiness support.

11
APR 2025
1 story
April 11, 2025
Securitycoinspect.com
Critical Wallet Bugs Expose Users to Silent Crypto Drains

Researchers uncovered critical vulnerabilities in browser wallets including Stellar Freighter, enabling attackers to silently steal recovery phrases and drain funds just by visiting a malicious site, without user interaction. Detailed exploits in Stellar Freighter, Frontier, and Coin98 wallets were reported and fixed with bounties. These flaws highlight risks in wallet architecture and the need for robust security.

10
APR 2025
1 story
April 10, 2025
Securitystellar.org
Proof-of-stake vs. proof-of-agreement: Stellar's security edge

This article contrasts Proof-of-Stake (PoS) vulnerabilities in networks like Ethereum and Solana with Stellar's Proof-of-Agreement (PoA) consensus. It highlights PoS risks such as MEV exploits, censorship, and irrational state attacks due to anonymous validators. Stellar's trust-based model requires validators to earn trust from peers, enhancing security through reputation rather than economic stakes.

10
SEP 2024
1 story
September 10, 2024
27
JUN 2024
1 story
June 27, 2024
12
JUN 2024
1 story
June 12, 2024
Sorobanmedium.com
Veridise enhances Soroban security: Breaking our teeth on stale dependencies

Veridise security analysts discovered a critical issue in Soroban's build-test-deploy process where the `createimport!` macro allows deployment of contracts with outdated or incorrect imported dependencies without requiring them to be listed as crate dependencies, potentially leading to broken contracts in production.

28
MAR 2024
1 story
March 28, 2024
Sorobanstellar.org
The Soroban Audit Bank: Fostering a Secure Smart Contract Ecosystem

The Stellar Development Foundation launched the Soroban Security Audit Bank, distributing up to $1M in audit credits from six top-tier firms to 20-30 high-priority projects building on Soroban to strengthen smart contract security across the ecosystem.

11
OCT 2023
1 story
October 11, 2023
15
JUL 2023
1 story
July 15, 2023
Cybersecuritystellar.org
Updates and Reminders from Your SDF Security Team

The Stellar Development Foundation's Twitter account was compromised via SIM swap attack on July 8, 2023, used to spread phishing scams. SDF regained control within 6 hours and upgraded security protocols across all platforms to use stronger authentication methods like security keys.

26
JUN 2023
1 story
June 26, 2023
1
JUN 2023
1 story
June 1, 2023
Sorobanstellar.org
Announcing the Soroban security bug bounty

The Stellar Development Foundation launched a new bug bounty program on HackerOne focused on Soroban, the network's smart contract platform. The program offers rewards up to $50k for critical vulnerabilities, with higher bounties as Soroban matures toward Mainnet launch.

8
MAY 2023
1 story
May 8, 2023
13
JUL 2022
2 stories
July 13, 2022
Cybersecuritystellar.org
How to protect yourself from scammers (updated July 2022)

The Stellar Development Foundation published an updated security guide covering common scams targeting the Stellar community, including phishing, support fraud, look-alike assets, and false claims. SDF clarifies it never asks for private keys, controls accounts, or freezes funds, and provides guidance on protecting yourself and reporting fraud.

21
DEC 2020
1 story
December 21, 2020
Securitystellarscam-report.medium.com
Stellar Staking Email-Phishing Scam and the Ledger.com Database Breach

The article details a 'Stellar Staking Marathon' email-phishing scam targeting Stellar (XLM) users, linked to the 2020 Ledger.com database breach that exposed over 1 million emails and personal data of 270,000 individuals. Stellarscam.report connects this to memo-phishing bots on the Stellar Network, noting pattern changes coinciding with the breach. Users are urged to check haveibeenpwned.com and report scams.

3
DEC 2020
1 story
December 3, 2020
Cybersecuritystellar.org
SDF Statement on Nov 29 Email Incident

Stellar Development Foundation disclosed a phishing attack on November 29 targeting community members with fake emails impersonating SDF. The attackers compromised third-party email service API keys but did not access Stellar network infrastructure or user accounts; SDF emphasized it never requests secret keys.

13
NOV 2020
1 story
November 13, 2020
Walletsstellar.org
A Fresh Update to Stellar Account Viewer

SDF redesigned the Stellar Account Viewer with improved security features, hardware wallet support, and a new browser wallet called Freighter. The updated AV now emphasizes key management best practices and offers a better mobile experience.

27
OCT 2020
1 story
October 27, 2020
Securitystellarscam-report.medium.com
The Origin Story Of Stellarscam.report

The article recounts the origin of Stellarscam.report, created to combat 'memo-phishing' scams on the Stellar Network where scammers send malicious memos with tiny XLM amounts to trick users into revealing secret keys. The author, frustrated by repeated scam reports on r/Stellar, developed a bot in mid-May 2020 to automatically send warning transactions to victims. Monthly stats show the bot countered tens of thousands of scam transactions, highlighting ongoing community efforts against persistent fraud.