An attacker forged withdrawal proofs to drain about $1.7 million, the same type of flaw behind this year's biggest bridge hacks. Fast containment kept the damage small.

Taiko's ERC20 vault was exploited for $1.7M due to a cross-chain bridge proof verification flaw, with $2M in TKO tokens deposited to MEXC by the attacker.

Onchain security firm Blockaid said the root cause of the exploit could be a flaw in Taiko bridge's source-signal proof validation.