Polymarket Breach: Users Lose Thousands as Third-Party Login Tool Is Blamed
Prediction market Polymarket experienced account breaches, with users reporting losses up to $2,000. The platform blames a third-party login tool, raising security concerns.
Your crypto might not be as safe as you think, especially if you're using a simple email login. Prediction market platform Polymarket is grappling with a series of account breaches, with users reporting their funds have been drained. The platform points the finger at a third-party login provider, exposing a critical vulnerability in the quest for user-friendly crypto access.
Vanishing Funds and a Vague Explanation
According to reports from December 24, 2025, users took to social media platforms like Reddit and X to report unexpected login alerts followed by wiped balances. One user claimed a loss of around $2,000 despite having two-factor authentication (2FA) enabled. Another reported their account balance plummeting to just one cent.
In response, Polymarket confirmed the security incident on its Discord channel, attributing it to a vulnerability from an unidentified third-party authentication provider. The company, however, did not disclose the number of affected users or the total amount stolen.
Magic Labs Under Scrutiny
While Polymarket has not officially named the provider, user speculation is heavily focused on Magic Labs. Magic Labs is a popular tool that simplifies Web3 access by allowing email-based logins and automatically creating wallets for users. Its ease of use has made it a common entry point for newcomers on platforms like Polymarket.
Relying on third-party authentication tools introduces a centralized point of failure. While they lower the barrier to entry, these services can become prime targets for supply-chain attacks, putting user funds at risk if their own keys are not self-custodied.
A Polymarket spokesperson stated on Discord, "The issue was caused by a vulnerability introduced by a third-party authentication provider... the issue has been remediated. There is no ongoing risk at this time." Neither Polymarket nor Magic Labs immediately responded to PRISM's request for comment.
This content is AI-generated based on source articles. While we strive for accuracy, errors may occur. We recommend verifying with the original source.
Related Articles
Crypto M&A activity hit a record $8.6 billion in 2025, driven by the Trump administration's friendly regulatory stance. Major deals from Coinbase, Kraken, and Ripple signal industry consolidation.
Bitcoin has dropped below the $87,000 mark as the crypto market shows weakness, contrasting with global stock markets hitting all-time highs. Solana (SOL) and XRP recorded inflows, showing a mixed picture.
XRP fails to break the $1.90 resistance and now tests the $1.85 support level. A volume spike, nearly double the average, suggests selling by larger players. Reclaiming $1.87 is now key.
JPMorgan is reportedly exploring institutional crypto trading, but analysts say it could be a net positive for rivals like Coinbase and Bullish by legitimizing the space and creating new partnerships.