
Avici Neobank Drained of Over $1M in Live Attack on Solana
An attacker drained more than $1 million from Avici, a Solana-based crypto card platform, in an ongoing assault that added administrative privileges to the compromised account before initiating withdrawals. The AVICI token fell to an all-time low as the attack unfolded.
Written by CoinArticle’s AI Newsroom · from 2 cited sources. How we work
Story Updates
- Updated Aug 28, 2026, 11:06 PM: Confirmed attacker wallet held 10,005 SOL and continued draining funds at time of report.
The Attack Unfolds
An attacker drained more than $1 million from Avici user collateral accounts in a live assault on the Solana neobank. The wallet conducting the attack held 10,005 SOL at the time of reporting and continued withdrawing funds. Avici acknowledged the breach nearly two hours after the first drain transaction, stating it was "aware of an issue affecting card balance withdrawals" but did not immediately disclose the scope or cause.
Attack Mechanics
According to reports, the attacker added administrative privileges to the compromised account before initiating the withdrawal sequence. This suggests the breach involved either compromised credentials with sufficient permissions or a vulnerability in Avici's access control system that allowed privilege escalation. The timing and method indicate the attacker had sustained access to the platform's internal systems rather than exploiting a public-facing smart contract vulnerability.
Market Reaction
The AVICI token fell to an all-time low as news of the attack spread. The decline reflected both the immediate loss of user confidence and uncertainty about whether user funds could be recovered or frozen before further drainage. Avici did not immediately disclose a recovery plan or provide an updated total of compromised accounts.
Why It Matters
For Traders
AVICI token is trading at all-time lows amid active account drainage; positions and collateral exposure to the platform carry elevated counterparty risk until Avici discloses recovery steps.
For Investors
The breach exposes security gaps in custody and access control at a regulated financial product built on Solana, raising questions about operational maturity across neobank infrastructure.
For Builders
The attack highlights the risk of centralized administrative privileges in smart contract integrations; decentralized access control and time-locked withdrawals may become table stakes for user-facing platforms.
This article is for information only and is not financial advice. Read the full disclaimer.





