:

POLYMARKET CONFIRMS BREACH, REFUNDS STOLEN FUNDS

SECURITY DESK1 MIN READ
THU, JUN 25, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Prediction market platform Polymarket disclosed a security breach where hackers stole user funds through a third-party vulnerability. The company announced it will refund affected users.

Polymarket, one of the largest prediction market platforms, confirmed that unauthorized access compromised user accounts and resulted in fund theft. The breach originated from a third-party vulnerability rather than Polymarket's own systems. The company did not immediately disclose the total amount stolen or the number of affected users. Polymarket stated it is actively working to reimburse customers who lost funds in the incident. This marks a significant security incident for the prediction market space, which has grown substantially in recent years. Prediction markets allow users to bet on the outcomes of events, from elections to sports. Polymarket has emerged as a major player in this sector. The platform has not yet provided a detailed timeline of when the breach occurred or how long it went undetected. Additional information about the third-party vulnerability and steps taken to prevent future incidents is expected.

■ SOURCES

TechCrunch

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) confirmed that ransomware groups are actively exploiting a high-severity Windows Task Host vulnerability. The flaw was previously flagged as under active exploitation in April.

5H AGOSecurity Desk

Microsoft has begun removing the Windows Management Instrumentation Command-line (WMIC) tool from Windows 11, citing widespread abuse by cybercriminals. The tool is being eliminated from Windows 11 versions 24H2 and 25H2.

8H AGOSecurity Desk

Israel has established a fabricated think tank apparently designed to influence AI chatbot outputs and shape how these systems respond to queries about Israeli policy. The scheme highlights vulnerabilities in how large language models source and validate information.

12H AGOAI Desk

A threat actor claims to have stolen employee databases from Microsoft Azure infrastructure across multiple Fortune 500 companies using compromised credentials. The stolen records are now being offered for sale.

20H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.