Zeus Wallet Goes Offline After Attack, But No Customer Funds Were Lost

Infrastructure shutdown follows the Zeus Wallet cyberattack, with no customer funds reported lost (Image: Shutterstock)
Infrastructure shutdown follows the Zeus Wallet cyberattack, with no customer funds reported lost (Image: Shutterstock)

Zeus Wallet took its infrastructure offline after a cyberattack, while the self-custodial Bitcoin (BTC) service said customer funds remained safe and no Lightning flaw was found.

Key Points:

  • Zeus contained the attack within hours and kept its infrastructure offline for an audit.
  • No customer funds were lost, and investigators found no Lightning node software vulnerability.
  • Users with closed Lightning Service Provider channels are due replacement channels after services resume.

Zeus Cyberattack

The incident occurred Wednesday, and Cointelegraph reported Thursday that Zeus disabled its supporting systems while reviewing the breach before any services return, with the company offering no restoration schedule. Services remain unavailable.

In an Aug. 5 security update, founder Evan Kaloudis said, “We believe this incident was limited to ZEUS infrastructure,” adding that investigators found no Lightning software vulnerability and no customer funds were lost or remained at risk.

Kaloudis said the team mitigated the attack within hours and would issue replacement channels to customers whose Lightning Service Provider connections closed once the platform can process requests again. Zeus has not described the attack method.

Also Read: Mythos 5 Built Fake Identities To Fool A Human Code Reviewer

Bitcoin Wallet Risk

The distinction matters because self-custody protects control of private keys, but wallet providers may still operate supporting services that affect channel management, liquidity routing, swaps and app availability during an infrastructure failure. A shutdown can therefore interrupt access to features without giving the operator custody of customer balances, while recovery work proceeds without moving user-controlled keys.

The wallet remains offline. Zeus said the incident strengthens its case for trusted execution environments, or enclaves, and the Validating Lightning Signer project, which separates signing authority from potentially exposed infrastructure and limits damage if a server is compromised.

The breach followed Zeus' Aug. 3 decision to disable swaps after Boltz, a non-custodial Bitcoin swap provider, paused its platform until further notice, creating a second service disruption for Zeus users in the same week. Those events involved separate systems.

Read Next: Bitcoin Developers Find 85 Critical Bugs In 24-Hour AI Audit

Murtuza Merchant profile photo

Murtuza Merchant

Murtuza is a seasoned finance journalist with extensive experience covering cryptocurrencies and blockchain technology. He has contributed to Benzinga and Cointelegraph, among other publications, reporting on emerging trends, the regulatory landscape, and more. Find him at @murtuza_merc on Twitter and mmerchant001 on Telegram. Disclosure: Murtuza holds ATOM, AKT, TIA, INJ, and OSMO.

Disclaimer and Risk Warning: The information provided in this article is for educational and informational purposes only and is based on the author's opinion. It does not constitute financial, investment, legal, or tax advice. Cryptocurrency assets are highly volatile and subject to high risk, including the risk of losing all or a substantial amount of your investment. Trading or holding crypto assets may not be suitable for all investors. The views expressed in this article are solely those of the author(s) and do not represent the official policy or position of Yellow, its founders, or its executives. Always conduct your own thorough research (D.Y.O.R.) and consult a licensed financial professional before making any investment decision.
Latest News
Show All News
Zeus Wallet Goes Offline After Attack, But No Customer Funds Were Lost | Yellow