The post Gala quietly changes bridge keys after users flag ‘unauthorized’ withdrawals appeared on BitcoinEthereumNews.com. Concerned members of the Gala Games community have identified a series of “unauthorized” withdrawals from the GalaChain bridge. Spanning almost a month, between October 13 and November 10, the transfers total 140 million GALA, worth approximately $1.5 million at the time. Given Gala’s chequered past, community members had been “keeping a close eye” on bridging activity. Regular daily withdrawals of exactly 5 million GALA tokens on Ethereum caught their attention, and when attempting to verify their source, corresponding deposit transactions were missing on GalaScan. The group, a representative of which reached out to Protos, flagged the transactions to Gala via Discord on November 6, “tagging the CEO and community moderator.” The group claims that it wasn’t provided with an explanation, but was instead told that the missing bridge transactions may be due to block explorer GalaScan being a “work in progress.” It wasn’t until four days later that Gala took action. During this time, a further 25 million GALA tokens (approximately $250,000) were withdrawn from the Ethereum bridge. Read more: Re7 Labs threatens whistleblower over exposure to yield vault collapse ‘Unauthorized’ withdrawals total 140M GALA Beginning on October 13, 26 withdrawals of 5 million GALA each were made from the bridge almost every day. The recipients were a series of Ethereum addresses which then swapped the tokens for ETH. A further 10 million GALA was then withdrawn on November 10, just hours before the bridge was paused. The bridge’s transaction history downloaded from GalaScan is missing matching bridge transactions on the GalaChain side. Taking the first suspicious withdrawal as an example, which occurred on October 13 at 15:55 UTC, the surrounding transactions of 18,800 and 24,000 GALA are present in the GalaScan data. The 5 million GALA minted on Ethereum, however, has no corresponding deposit transaction on GalaChain. Transactions of… The post Gala quietly changes bridge keys after users flag ‘unauthorized’ withdrawals appeared on BitcoinEthereumNews.com. Concerned members of the Gala Games community have identified a series of “unauthorized” withdrawals from the GalaChain bridge. Spanning almost a month, between October 13 and November 10, the transfers total 140 million GALA, worth approximately $1.5 million at the time. Given Gala’s chequered past, community members had been “keeping a close eye” on bridging activity. Regular daily withdrawals of exactly 5 million GALA tokens on Ethereum caught their attention, and when attempting to verify their source, corresponding deposit transactions were missing on GalaScan. The group, a representative of which reached out to Protos, flagged the transactions to Gala via Discord on November 6, “tagging the CEO and community moderator.” The group claims that it wasn’t provided with an explanation, but was instead told that the missing bridge transactions may be due to block explorer GalaScan being a “work in progress.” It wasn’t until four days later that Gala took action. During this time, a further 25 million GALA tokens (approximately $250,000) were withdrawn from the Ethereum bridge. Read more: Re7 Labs threatens whistleblower over exposure to yield vault collapse ‘Unauthorized’ withdrawals total 140M GALA Beginning on October 13, 26 withdrawals of 5 million GALA each were made from the bridge almost every day. The recipients were a series of Ethereum addresses which then swapped the tokens for ETH. A further 10 million GALA was then withdrawn on November 10, just hours before the bridge was paused. The bridge’s transaction history downloaded from GalaScan is missing matching bridge transactions on the GalaChain side. Taking the first suspicious withdrawal as an example, which occurred on October 13 at 15:55 UTC, the surrounding transactions of 18,800 and 24,000 GALA are present in the GalaScan data. The 5 million GALA minted on Ethereum, however, has no corresponding deposit transaction on GalaChain. Transactions of…

Gala quietly changes bridge keys after users flag ‘unauthorized’ withdrawals

2025/12/06 03:17

Concerned members of the Gala Games community have identified a series of “unauthorized” withdrawals from the GalaChain bridge.

Spanning almost a month, between October 13 and November 10, the transfers total 140 million GALA, worth approximately $1.5 million at the time.

Given Gala’s chequered past, community members had been “keeping a close eye” on bridging activity.

Regular daily withdrawals of exactly 5 million GALA tokens on Ethereum caught their attention, and when attempting to verify their source, corresponding deposit transactions were missing on GalaScan.

The group, a representative of which reached out to Protos, flagged the transactions to Gala via Discord on November 6, “tagging the CEO and community moderator.”

The group claims that it wasn’t provided with an explanation, but was instead told that the missing bridge transactions may be due to block explorer GalaScan being a “work in progress.”

It wasn’t until four days later that Gala took action. During this time, a further 25 million GALA tokens (approximately $250,000) were withdrawn from the Ethereum bridge.

Read more: Re7 Labs threatens whistleblower over exposure to yield vault collapse

‘Unauthorized’ withdrawals total 140M GALA

Beginning on October 13, 26 withdrawals of 5 million GALA each were made from the bridge almost every day. The recipients were a series of Ethereum addresses which then swapped the tokens for ETH.

A further 10 million GALA was then withdrawn on November 10, just hours before the bridge was paused.

The bridge’s transaction history downloaded from GalaScan is missing matching bridge transactions on the GalaChain side.

Taking the first suspicious withdrawal as an example, which occurred on October 13 at 15:55 UTC, the surrounding transactions of 18,800 and 24,000 GALA are present in the GalaScan data.

The 5 million GALA minted on Ethereum, however, has no corresponding deposit transaction on GalaChain.

Transactions of 18,800 and 24,000 GALA are present in the GalaScan data…However, the 5 million GALA minted on Ethereum has no corresponding transaction on GalaChain.

The same pattern was repeated across subsequent daily withdrawals of 5 million GALA each until the bridge was paused.

The group believes these one-sided bridge withdrawals “indicate a likely compromise of privileged access.”

This theory appears supported by the team’s decision to execute a change authorities transaction shortly after pausing the bridge on November 10.

Gala’s response

The group claims that Gala hasn’t publicly disclosed the incident, nor confirmed the cause. Discord announcements about pausing the Ethereum and Solana bridges simply cite “community feedback and concerns.”

Protos has reached out to Gala, but hasn’t heard back before publication of this article. It will be updated in the event we receive a reply.

The incident bears resemblance to a May 2024 hack in which 600 million GALA was sold for $21 million. Gala’s CEO Eric Schiermeyer stated at the time, “We messed up our internal controls… This shouldn’t have happened and we are taking steps to ensure it doesn’t ever again.”

Read more: DeFi karma: Garden hacked for $11M after bridging Lazarus’ loot

The group notes the “similarity between the two incidents, both involving privileged credential misuse, delayed detection, and emergency authority rotation.”

It argues that the pattern of behaviour “suggests ongoing risks to Gala’s infrastructure and token holders.”

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

Source: https://protos.com/gala-quietly-changes-bridge-keys-after-users-flag-unauthorized-withdrawals/

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Polygon Tops RWA Rankings With $1.1B in Tokenized Assets

Polygon Tops RWA Rankings With $1.1B in Tokenized Assets

The post Polygon Tops RWA Rankings With $1.1B in Tokenized Assets appeared on BitcoinEthereumNews.com. Key Notes A new report from Dune and RWA.xyz highlights Polygon’s role in the growing RWA sector. Polygon PoS currently holds $1.13 billion in RWA Total Value Locked (TVL) across 269 assets. The network holds a 62% market share of tokenized global bonds, driven by European money market funds. The Polygon POL $0.25 24h volatility: 1.4% Market cap: $2.64 B Vol. 24h: $106.17 M network is securing a significant position in the rapidly growing tokenization space, now holding over $1.13 billion in total value locked (TVL) from Real World Assets (RWAs). This development comes as the network continues to evolve, recently deploying its major “Rio” upgrade on the Amoy testnet to enhance future scaling capabilities. This information comes from a new joint report on the state of the RWA market published on Sept. 17 by blockchain analytics firm Dune and data platform RWA.xyz. The focus on RWAs is intensifying across the industry, coinciding with events like the ongoing Real-World Asset Summit in New York. Sandeep Nailwal, CEO of the Polygon Foundation, highlighted the findings via a post on X, noting that the TVL is spread across 269 assets and 2,900 holders on the Polygon PoS chain. The Dune and https://t.co/W6WSFlHoQF report on RWA is out and it shows that RWA is happening on Polygon. Here are a few highlights: – Leading in Global Bonds: Polygon holds 62% share of tokenized global bonds (driven by Spiko’s euro MMF and Cashlink euro issues) – Spiko U.S.… — Sandeep | CEO, Polygon Foundation (※,※) (@sandeepnailwal) September 17, 2025 Key Trends From the 2025 RWA Report The joint publication, titled “RWA REPORT 2025,” offers a comprehensive look into the tokenized asset landscape, which it states has grown 224% since the start of 2024. The report identifies several key trends driving this expansion. According to…
Share
BitcoinEthereumNews2025/09/18 00:40
Fed Makes First Rate Cut of the Year, Lowers Rates by 25 Bps

Fed Makes First Rate Cut of the Year, Lowers Rates by 25 Bps

The post Fed Makes First Rate Cut of the Year, Lowers Rates by 25 Bps appeared on BitcoinEthereumNews.com. The Federal Reserve has made its first Fed rate cut this year following today’s FOMC meeting, lowering interest rates by 25 basis points (bps). This comes in line with expectations, while the crypto market awaits Fed Chair Jerome Powell’s speech for guidance on the committee’s stance moving forward. FOMC Makes First Fed Rate Cut This Year With 25 Bps Cut In a press release, the committee announced that it has decided to lower the target range for the federal funds rate by 25 bps from between 4.25% and 4.5% to 4% and 4.25%. This comes in line with expectations as market participants were pricing in a 25 bps cut, as against a 50 bps cut. This marks the first Fed rate cut this year, with the last cut before this coming last year in December. Notably, the Fed also made the first cut last year in September, although it was a 50 bps cut back then. All Fed officials voted in favor of a 25 bps cut except Stephen Miran, who dissented in favor of a 50 bps cut. This rate cut decision comes amid concerns that the labor market may be softening, with recent U.S. jobs data pointing to a weak labor market. The committee noted in the release that job gains have slowed, and that the unemployment rate has edged up but remains low. They added that inflation has moved up and remains somewhat elevated. Fed Chair Jerome Powell had also already signaled at the Jackson Hole Conference that they were likely to lower interest rates with the downside risk in the labor market rising. The committee reiterated this in the release that downside risks to employment have risen. Before the Fed rate cut decision, experts weighed in on whether the FOMC should make a 25 bps cut or…
Share
BitcoinEthereumNews2025/09/18 04:36