EARF
United States Flag
United StatesNorth America
Japan Flag
JapanAsia
Italy Flag
ItalyEurope
Netherlands Flag
NetherlandsEurope
United Kingdom Flag
United KingdomEurope
EARFSTAGE
EARFSTAGEFestivals and live sets
METAR | EARF
EARFWeatherLive weather stations
EARFWiki
EARFWikiCountries and public records
EARFguessGuess where on Earth
/data-breach/parity-wallet-hack-2017
228/430

File EL-0203CriticalResolvedData Breach / Cryptocurrency Theft

Parity Wallet Hack

Also filed as Parity Multi-sig Wallet Theft · Ethereum/Parity Bridge Exploit

The Parity Wallet Hack was a significant cryptocurrency theft event that occurred on November 6, 2017. Attackers exploited a vulnerability in the multi-signature wallet structure associated with the Parity network. The exploit allowed unauthorized withdrawal of substantial amounts of Ether (ETH) and other digital assets. This incident highlighted the critical security risks inherent in early decentralized finance (DeFi) infrastructure.

  • #ethereum
  • #parity-network
  • #multi-sig-wallet
  • #smart-contract-exploit
  • #cryptocurrency-theft
  • #defi
Notoriety8/10
Event
6 Nov 2017
Disclosed
6 Nov 2017
Target
Parity Multi-sig Wallet Users
Scale
Millions of USD worth of cryptocurrency
Status
Resolved

01Summary

The Parity Wallet Hack targeted a multi-signature wallet holding significant value within the Parity ecosystem. The attack was executed by exploiting a flaw in the smart contract logic governing the wallet's withdrawal mechanism. While the exact technical vulnerability remains debated, the consensus is that the exploit allowed the attackers to bypass the intended security controls, effectively draining the funds. The theft was rapid, occurring within a single day, and resulted in the loss of millions of dollars worth of cryptocurrency. This incident served as a major cautionary tale in the nascent field of decentralized finance, emphasizing the need for rigorous smart contract auditing and robust security practices.

02Background

In 2017, the cryptocurrency market was experiencing rapid growth, leading to the proliferation of complex smart contract applications and multi-signature wallets. Parity was a key player in this emerging infrastructure. The hack occurred during a period of high speculation and rapid development, where security standards for smart contracts were still maturing.

03Key revelations

  1. 01The vulnerability existed within the multi-signature logic of the Parity wallet.
  2. 02The attack demonstrated the critical need for formal verification and rigorous auditing of smart contracts.
  3. 03The incident contributed to increased scrutiny and development of security standards within the DeFi space.

04Technical analysis

The attack vector was a smart contract exploit, likely involving reentrancy or improper access control logic. The attackers successfully manipulated the state of the multi-sig wallet to initiate unauthorized transactions. The exploit required deep knowledge of the Ethereum Virtual Machine (EVM) and the specific contract implementation of the Parity wallet.

Attack vector
Smart Contract Exploit
Attack method
Unauthorized Transaction Execution
Initial access
Exploitation of Smart Contract Vulnerability
Exfiltration
Direct blockchain withdrawal
Malware type
Exploit

Vulnerabilities exploited

  • Smart Contract Logic Flaw

MITRE ATT&CK techniques

  • T1560.001

05Threat actor

The perpetrators remain unidentified, suggesting a highly skilled, financially motivated group. Their ability to exploit a complex, multi-signature system points to expertise in low-level blockchain programming and smart contract architecture.

Aliases

  • Hacker Group

MITRE groups

  • T1113

Attribution sources

  • Community Analysis

06Victims and impact

Countries affected

  • Global

07Data exposed

Data types

  • Cryptocurrency (ETH, ERC-20 tokens)

Notable documents

  • Blockchain Transaction Records

08Financial damage

The total loss was substantial, estimated in the millions of USD, though a precise figure is not universally agreed upon.

09Timeline

  1. 2017-11-06Exploit executed, funds begin draining from the Parity multi-sig wallet.
  2. 2017-11-06The vulnerability is publicly identified, leading to the halt of further withdrawals.

10Reaction and fallout

Public reaction

The hack triggered widespread panic and fear within the early cryptocurrency community. It led to a temporary dip in market confidence and spurred immediate calls for better security practices across all smart contract deployments.

Political impact

The incident increased regulatory focus on the security of decentralized finance protocols. Governments and financial bodies began paying closer attention to the systemic risks posed by smart contract vulnerabilities.

11Legal

Due to the decentralized nature of the funds and the exploit, legal action was extremely difficult. The focus remained on technical remediation and community education rather than criminal prosecution.

12Aftermath

Policy changes

  • Increased adoption of formal verification tools for smart contracts
  • Development of specialized smart contract auditing firms

Regulatory changes

  • Calls for clearer regulatory guidelines regarding DeFi asset custody

Security improvements

  • Implementation of time-locks and circuit breakers in smart contracts
  • Adoption of upgradeable proxy patterns to mitigate single points of failure

13Significance and legacy

Significance

This hack is a foundational case study in smart contract security. It demonstrated that even complex, multi-signature systems could be compromised by logical flaws, setting a precedent for mandatory, multi-stage security audits in all future DeFi protocols.

Legacy

The Parity Hack accelerated the maturation of smart contract security. It led to the industry-wide adoption of best practices like OpenZeppelin standards, formal verification, and the development of specialized insurance products for smart contract risk.

14Disclosure and media

Authentication
Blockchain Verification

Media partners

  • CoinDesk
  • Medium

Publishing organisations

  • Crypto Security Researchers

15Field notes

  1. 01The hack occurred before the widespread adoption of modern, robust smart contract auditing tools, making it a prime example of early DeFi risk.
  2. 02The incident contributed to the initial wave of 'rug pull' awareness within the crypto community.

16Resolution

The funds were permanently lost to the attackers, but the incident prompted significant security upgrades across the Ethereum ecosystem, improving overall resilience.

17Sources

References

  1. [1]CoinDesk Reports
  2. [2]Ethereum Security Forums
Fact sheetEL-0203

Dates

Event
6 Nov 2017
Started
6 Nov 2017
Ended
6 Nov 2017
Duration
1 days
Discovered
6 Nov 2017
Disclosed
6 Nov 2017
Resolved
6 Nov 2017
Ongoing
No

Target

Organisation
Parity Network Wallet Holders
Type
Financial Institution
Sector
Cryptocurrency
Country
Global

Actor

Motivation
Financial gain (theft of cryptocurrency)
Arrested
No
Convicted
No

Data

Volume
Millions of USD worth of cryptocurrency
Sensitivity
Confidential
Published
Yes
Sold (dark web)
No

Money

Crypto
Ether (ETH)

EARFLeaks documents publicly known security incidents. It does not host, store or distribute leaked data.

© 2026 EARF. All rights reserved.