Crypto tech provider Haruko hit by cyberattack affecting 15 clients, some funds lost

Crypto tech provider Haruko hit by cyberattack affecting 15 clients, some funds lost

Crypto technology provider Haruko has confirmed it was the target of a cyberattack that impacted 15 of its institutional clients, with some funds reported lost as a result of the breach. The company disclosed the incident on September 18, 2026, acknowledging that unauthorized access had compromised portions of its infrastructure. The exact amount of funds lost has not been publicly disclosed at this time.

Haruko operates as a technology and data management platform serving institutional participants in the digital asset space, offering portfolio management, connectivity, and reporting tools. As a middleware provider sitting between clients and various exchanges or custodians, the company occupies a position that grants it significant access to client accounts and trading infrastructure, making it an attractive target for sophisticated threat actors.

The incident adds to a growing list of cyberattacks targeting crypto infrastructure providers rather than exchanges or protocols directly. Security researchers have noted an increasing trend of attackers focusing on service providers and aggregators, recognizing that compromising a single vendor can yield access to multiple downstream clients simultaneously, amplifying potential damage across the industry.

Investigators are expected to examine the full scope of the breach in the coming days, including how access was initially obtained and whether additional clients may have been affected. Haruko's response and the degree of client compensation will likely be closely watched by institutional participants evaluating the security posture of their own technology vendors.

Source: CoinDesk

Read original article ↗