Truebit smart contract exploit on 7 January drains over 8,500 ETH worth about $26 million

On 7 January, Truebit reported a security breach in its "Truebit Protocol: Purchase" smart contract that led to the loss of more than 8,500 ETH, valued around $26–26.5 million. An on-chain pricing flaw allegedly allowed attackers to mint tokens for free, sell them back through the bonding curve, and later move roughly half the stolen funds via Tornado Cash, while the TRU token price plunged by over 60%.