An emergency update has been rolled out by BTCPay Server, the open-source software merchants use to accept Bitcoin, due to a vulnerability being exploited to potentially steal funds from users. As identified in GitHub pull request #7491, this vulnerability enables cybercriminals to circumvent the TOTP two-factor security mechanism through BTCPay’s Greenfield API Basic Authentication. The reason for the vulnerability lies in the fact that the authentication mechanism checked whether valid FIDO2 credentials were registered rather than actually checking whether the two-factor system was even enabled. Thus, the accounts secured with a TOTP authenticator application could access the API using only their email and credentials. It is important to note that the vulnerability exists within the application layer of BTCPay, not in the Bitcoin (BTC) protocol. BTCPay has launched version 2.4.2 of its software on August 7 while also advising users to make sure they have updated to the version 2.6.10 of NBXplorer. The upgraded software addresses a “critical vulnerability” that is currently being exploited. A market that shrugged at the payments scare Despite the ongoing security concern plaguing the payment system, Bitcoin’s market price and valuation are relatively stable. Bitcoin is trading at about $64,889, which is just a 0.82% increase from the previous day, while its $1.3 trillion market cap has seen a rise of only 0.79%. Even though trading activity has been more active with the 24-hour volume increasing 20.98%, the fairly stable price and market cap indicate that the incident has not yet had an impact on Bitcoin’s overall market valuation. The subdued response is understandable. The BTCPay vulnerability affects only individual merchants and operators, not Bitcoin’s consensus rules or cryptography. However, that does not mean it is insignificant. BTCPay creates a link between the Bitcoin network and the payment systems of businesses issuing invoices, receiving payments and managing the wallets. Therefore, in case of an attack on the operator account, it becomes possible to cause real monetary losses despite the proper functioning of the Bitcoin blockchain. What BTCPay told operators to do The immediate solution to this problem is simple: upgrade BTCPay Server to version 2.4.2 and, for integrators, upgrade NBXplorer to version 2.6.10. According to BTCPay, it is better to use application programming interface (API) keys instead of Basic Authentication because permissions can be limited more effectively. The new patch has also introduced changes to the authentication process so that it will be able to check whether 2FA is really active, thereby closing the gap which enabled TOTP-protected accounts to avoid the second authentication level. Since BTCPay is self-hosted, operators cannot depend on a central provider to implement the patch for them. A third strike for Bitcoin’s payment plumbing BTCPay’s announcement comes after a tumultuous week for Bitcoin’s payment system. Cryptopolitan had reported earlier that ZEUS, the provider of a Lightning wallet, had rendered its payment infrastructure inactive because of a problem that occurred involving the security of the system, while other Lightning service providers also got affected. The occurrences do not indicate that the Bitcoin payment protocols are failing in any way. They do show, however, how much additional security risk is introduced by the software built around the blockchain. A 2024 study by researchers from Northeastern University and TU Delft used formal modeling to identify security problems in Lightning’s single-hop payment protocol, including a new “Payout Race” attack. A separate 2026 study examined balance-discovery attacks, finding that attackers can infer information about Lightning channel balances. Its proposed mitigation reduced information gain by as much as 62% in simulations. Both the studies reveal a more significant truth: the security of Bitcoin does not merely depend on the blockchain. Wallets, APIs, payment processors, as well as the Lightning infrastructure all introduce additional points of vulnerabilities. Not BTCPay’s first critical bug BTCPay has previously encountered serious vulnerabilities. In January 2023, it reported about CVE-2022-32984, a critical information leak that affected BTCPay’s versions 1.3.0, 1.4.0 and 1.5.3. The flaw has the potential to leak sensitive store details via publicly available Point of Sale applications, possibly exposing an xpub and Lightning credentials tied to an external node. BTCPay resolved this problem in version 1.5.4 and later rewarded researcher Antoine Poinsot with a bounty of $5,000. The difference here is clear: the 2023 attack was an information leak while the recent vulnerability has to do with authentication issues that circumvent TOTP security through the Greenfield API. Why merchants have more to lose now Things are heating up as Bitcoin becomes increasingly valuable for payments. Research from River published in February 2026 noted average Bitcoin usage by merchants increased by 74% in 2025 alone while Lightning usage increased by 300% and went over $1 billion in monthly volume. The surrounding infrastructure is also significant. BuiltWith has detected 248 sites that use BTCPay Server, which include 74 active ones, although these numbers don’t include private or other undetectable installations. Additionally, the latest snapshot by 1ML shows there are 6,280 Lightning nodes, 21,221 channels, and the current network capacity of 2,818.49 BTC. That scale makes vulnerabilities in the surrounding infrastructure all the more severe, even if the base layer of Bitcoin hasn’t been affected in any way. The takeaway from BTCPay does not suggest that Bitcoin itself is flawed. Instead, it indicates that businesses built on Bitcoin inherit a broader security burden. The blockchain may still be functioning, but the applications used by merchants may become a point of failure. For BTCPay operators, the priority is simple: upgrade to version 2.4.2, evaluate authentication logs and access logs for signs of compromise, and to use specific API keys instead of Basic Authentication when possible.
US-Iran standoff reaches crypto as Treasury sanctions exchanges
The US Treasury sanctioned two Iranian crypto exchanges, Shelbit and Aban Tether, on Friday for facilitating transactions for the Islamic Revolutionary Guard Corps. This move expands the Trump administration’s “Economic Fury” campaign. The Treasury’s Office of Foreign Assets Control (OFAC) designated the two exchanges for processing large sums of digital assets through them to avoid sanctions and fund the IRGC and other terrorist groups designated by the US. OFAC names founder in sanctions According to reports, Siavash Kayvanpour, the founder of Shelbit, was also sanctioned, along with his companies in Georgia, Poland, and the UAE. However, OFAC specified the amount of crypto transferred through Shelbit. It mentioned that the Iranian exchange processed over $1 million in crypto and pulled back over $2 million from wallets associated with the IRGC. The wallets controlled by Siavash Kayvanpour allegedly moved more than 2 million to Iran’s largest local exchange, Nobitex, which the US Treasury added to the sanctions list in June. Aban Tether, an Iranian exchange, was blacklisted for facilitating millions of dollars in transactions for Nobitex, Wallex, Bitpin, and Ramzinex, which are also on the sanctions list. US traces Iran’s $4B crypto flows In addition to money laundering for the Iranian government, OFAC accused Shelbit of providing services to a network of more than 2,000 gambling websites managed by two Iranian social media influencers. The exchange processed tens of millions of dollars in transactions for this network. This information overlaps with the findings of a Reuters investigation a week earlier. It revealed that Shelbit had moved at least $4 billion in two years through its platforms. This sum was transferred via Iranian gambling sites, the Iranian central bank, and the IRGC, according to the investigation. Part of this $4 billion reportedly passed through Binance. At least $676 million moved from Shelbit-connected wallets onto the exchange. This included roughly $540 million that went to the Iranian exchange after it was penalized by the Virtual Assets Regulatory Authority (VARA) of Dubai in January 2025 for operating without a license. Earlier, Cryptopolitan reported that US and Tether froze $131M in Iran-linked USDT on Tron. VARA imposed another fine on Shelbit in July and ordered it to cease operations. Binance has denied having any accounts controlled by Shelbit, saying that the $540 million figure was inaccurate and that any accounts associated with Shelbit users had already been frozen and reported to authorities. US escalates sanctions on Iran The designations of Shelbit and Aban Tether mark the latest step in the Treasury’s year-long campaign to isolate Iran’s financial sector. In January, OFAC identified Zedcex and Zedxion crypto exchanges as the first-ever targets of the US’s Iran-specific sanctions. In June, Nobitex was added to the sanctions list, followed by four wallets associated with Iran’s central bank last month. In addition, Tether’s stablecoin froze about $131 million in response to the designations. On Friday, the Treasury also labelled a set of foreign exchange trading companies, shell companies, and individuals involved in facilitating hundreds of millions of dollars in transactions for Iran, including those related to oil exports. “The Iranian regime’s growing reliance on digital assets and shadow banking is yet another sign that Economic Fury is working,” said Treasury Secretary Scott Bessent. “Whether transacting in dollars, rials, or crypto, the Department of the Treasury will continue to identify and dismantle the networks that fund the Iranian regime.” This step fits into the context of the economic and geopolitical confrontation between the US and Iran. The sanctions were imposed during the war between the US and Iran, and thus the pressure on the Iranian rial is intensifying. In addition, the pressure on exchanges and stablecoins to filter out transactions from Iranians is growing, as blockchain transactions are transparent and the OFAC is continuously monitoring them to identify new targets. If you're reading this, you’re already ahead. Stay there with our newsletter.
Very welcome: Vitalik Buterin responds to Signal's no phone number registration
Ethereum co-founder Vitalik Buterin is back on the privacy wagon, with his latest post on X commending the “very welcome” news of Signal’s early work on letting people create accounts without listing a phone number. Buterin, a known supporter of multiple privacy initiatives, has often thrown both his money and stature behind platforms and tools with a mandate to protect users’ content and the metadata around it. Why is Buterin weighing in on a messaging app? Buterin has been very vocal in his support for privacy. He has made it a priority also for Ethereum. In his April 2025 essay, “Why I support privacy,” Buterin stated that whoever holds information holds power, and that concentrated data collection has to be resisted in the digital realm where it is most practical to do so. Buterin donated 128 ETH each to Signal and SimpleX Chat in November 2025. He praised both platforms for pushing open account creation and stronger metadata privacy. In that same round, he highlighted the same problem Signal is now trying to solve, noting that Sybil and denial-of-service resistance on the user side is harder to get right without leaning on phone numbers. Do you need a phone number to register on Signal? Right now, users cannot create a Signal account without submitting a phone number, which privacy proponents like Buterin have called out as a potential weakness in the privacy wall. However, recent updates from AboutSignal.com, an independent site tracking the app, have reported commits to Signal’s server code that point to backend support for accounts that carry no phone number, covering registration security, account handling, and regional data. One commit showed that the two account types would stay separate. So a user could not add a number later or strip one from an existing account. For now, the option appears limited to new sign-ups. In a talk recorded in March, Signal CTO Ehren Kret stated that the main reason the app does not yet offer phone-number-free registration is the need to stop bad actors from mass-creating accounts. Kret said, “We gotta figure out some way to induce a cost for signing up without a phone number.” That cost may or may not be monetary, and Kret said back in March that Signal hoped to ship some version of the feature later this year. Buterin wants privacy on Ethereum too Buterin has also been one of the biggest forces behind building privacy features directly into the Ethereum mainnet. Those measures are focused on uncensorable private transactions, unlinkable account activity, and private blockchain reads. However, none of it is live yet. Buterin’s Ethereum roadmap tries to stop observers from linking a user’s on-chain activity or wallet queries. Signal removing the phone number tackles the same class of problem from a different direction, which is cutting the identifier that ties an account to a real person. If you're reading this, you’re already ahead. Stay there with our newsletter.
Very welcome: Vitalik Buterin responds to Signal's no phone number registration
Ethereum co-founder Vitalik Buterin is back on the privacy wagon, with his latest post on X commending the “very welcome” news of Signal’s early work on letting people create accounts without listing a phone number. Buterin, a known supporter of multiple privacy initiatives, has often thrown both his money and stature behind platforms and tools with a mandate to protect users’ content and the metadata around it. Why is Buterin weighing in on a messaging app? Buterin has been very vocal in his support for privacy. He has made it a priority also for Ethereum. In his April 2025 essay, “Why I support privacy,” Buterin stated that whoever holds information holds power, and that concentrated data collection has to be resisted in the digital realm where it is most practical to do so. Buterin donated 128 ETH each to Signal and SimpleX Chat in November 2025. He praised both platforms for pushing open account creation and stronger metadata privacy. In that same round, he highlighted the same problem Signal is now trying to solve, noting that Sybil and denial-of-service resistance on the user side is harder to get right without leaning on phone numbers. Do you need a phone number to register on Signal? Right now, users cannot create a Signal account without submitting a phone number, which privacy proponents like Buterin have called out as a potential weakness in the privacy wall. However, recent updates from AboutSignal.com, an independent site tracking the app, have reported commits to Signal’s server code that point to backend support for accounts that carry no phone number, covering registration security, account handling, and regional data. One commit showed that the two account types would stay separate. So a user could not add a number later or strip one from an existing account. For now, the option appears limited to new sign-ups. In a talk recorded in March, Signal CTO Ehren Kret stated that the main reason the app does not yet offer phone-number-free registration is the need to stop bad actors from mass-creating accounts. Kret said, “We gotta figure out some way to induce a cost for signing up without a phone number.” That cost may or may not be monetary, and Kret said back in March that Signal hoped to ship some version of the feature later this year. Buterin wants privacy on Ethereum too Buterin has also been one of the biggest forces behind building privacy features directly into the Ethereum mainnet. Those measures are focused on uncensorable private transactions, unlinkable account activity, and private blockchain reads. However, none of it is live yet. Buterin’s Ethereum roadmap tries to stop observers from linking a user’s on-chain activity or wallet queries. Signal removing the phone number tackles the same class of problem from a different direction, which is cutting the identifier that ties an account to a real person. Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
Cloudflare stock surges to all-time record on Q2 earnings beat
Cloudflare (NYSE: NET) shares surged roughly 16% to an all-time high after the company reported strong second-quarter earnings and raised its full-year outlook. Investors are increasingly confident that the network firm can successfully turn the explosion of automated web traffic into long-term growth. Cloudflare’s NET is at an all-time high. Source: Google Finance How did Cloudflare reach a new share price record? Cloudflare’s revenue for the quarter hit $696.1 million, a 36% profit from 2025 that easily beat Wall Street’s expectations. Adjusted earnings also topped consensus estimates at $0.29 a share. The company’s forward guidance gave it an even bigger boost. Cloudflare raised its full-year revenue expectation to around $2.87 billion, placing it comfortably ahead of analyst models, while also pushing its projected annual earnings upward. Where the growth is coming from Executives tied the quarter to demand from AI systems reshaping how the web is used. Customers spending more than $100,000 a year rose 27% from a year earlier to 4,698, and dollar-based net retention improved to 120%, according to reports, a sign existing accounts are spending more. Current remaining performance obligations, a gauge of contracted revenue coming due, grew 35% year over year. Cloudflare’s Workers platform, which lets developers run code on its network, was the fastest-growing part of the business, Morgan Stanley analysts told Reuters, as the company leans toward charging customers by how much they consume. A wider loss under the record During the earnings call, executives leaned heavily into the AI narrative, sharing that machine-generated traffic recently overtook human traffic on their network for the first time. CFO Thomas Seifert even predicted that non-human traffic could eventually eclipse human web usage by a thousand-fold. The CEO, Matthew Prince also took a swipe at bigger tech competitors spending billions on hardware, contrasting their heavy capital expenditures with Cloudflare’s asset-light, serverless network model. “Humans will be a rounding error” Executives spent much of the earnings call on Thursday selling the AI story. CFO Thomas Seifert told analysts that if current trends hold, non-human traffic could reach “as much as 1,000 times as much as human traffic” within five years. “Humans will be a rounding error on the internet,” he said, adding that machine-generated traffic overtook human traffic on Cloudflare’s network back in May 2026. Prince said non-human traffic had crossed 50% of the total for the first time, per TradingPedia. Prince also used the company’s low planned capital spending, which Seifert put at 14% to 15% of forecast revenue, or about $430 million, to jab at larger rivals. “If you’re basically letting an AI company use your balance sheet and your credit rating in order to buy servers that are the same as everybody else’s servers, then that’s just not attractive business for us,” Prince said, according to The Register, contrasting Cloudflare’s serverless model with the hyperscalers spending far more on GPUs. What Wall Street did with it The earnings report prompted multiple major financial firms to start hiking their price targets, pushing Cloudflare shares up nearly 70% this year. While a few analysts remained cautious with neutral ratings, the overwhelming market enthusiasm highlights a major win for the network security giant. The smartest crypto minds already read our newsletter. Want in? Join them.
Unitree says FCC robot ban won't hit its current lineup as US probes widen
Chinese robotics maker Unitree has told its investors that the new U.S. restrictions on foreign-built robots do not affect its six best-selling models. Washington has imposed fresh restrictions against Chinese technology, but Unitree was reportedly a step ahead and secured the necessary permissions. Do the new U.S. restrictions on Chinese technology affect Unitree’s products? Board secretary Fu Fenghua said during an online investor session tied to Unitree’s Shanghai listing that the company’s G1, H2 and R1 humanoid robots and its Go2, B2 and A2 quadrupeds all received the U.S. Federal Communications Commission (FCC) equipment authorization before the new policy took effect. The FCC placed foreign-produced advanced robotic devices, along with power inverters common in solar equipment, on its Covered List, a national-security roster that it first published in 2021. The change in the rules reportedly targets mobile, communicating robots heavier than two kilograms that carry onboard sensing and some autonomy, and restricts new products in those categories from being imported. All six of the humanoid robots fall inside the category named by the FCC, but each was already certified, so their sales in the U.S. market can continue for now. Importantly, Unitree is days away from pricing its STAR Market IPO, and it stressed the fact that its major products remain unaffected by the restrictions in its updated IPO prospectus. The company also clarified that new models developed after the cutoff could be blocked from the U.S. unless they win a specific exemption or conditional approval. The recently declared unauthorized models can now only enter the U.S. if the Department of Defense grants conditional approval. How will the U.S. ban affect Unitree’s IPO? Unitree’s overseas markets supplied more than 40% of revenue across each of the company’s three reporting periods, but the U.S. portion fell to 13.30% in the most recent period, down from 18.39% and 19.54% earlier. The company reports that its humanoid shipments ranked first worldwide in 2025. The company filed for a roughly $610 million offering in March, set preliminary price consultations for August 5 and opened subscriptions on August 10 initially planning to raise about 4.2 billion yuan ($618 million) for robot research, hardware development and a new manufacturing base, but strong investor demand has resulted in the company actually pricing the offering to raise 6.1 billion yuan (about $898.4 million) Cryptopolitan reported that the FCC is drafting a separate proposal to keep new Chinese-made optical transceivers out of U.S. data centers, a curb that would affect firms such as Zhongji Innolight. Separately, U.S. officials are reviewing whether China has managed to gain access to restricted NVIDIA AI chips through offshore channels. China’s Ministry of Commerce has called the FCC’s action discriminatory despite its neutral wording and urged the U.S. to withdraw it, warning that it would take countermeasures if Washington presses on. If you're reading this, you’re already ahead. Stay there with our newsletter.
Coldcard reverses data-deletion policy after $116M wallet exploit
Coinkite, the maker of the Coldcard wallet that got exploited for $116 million in July’s largest security incident, has informed its users that it has made big changes to how it stores their data ahead of legal obligations that could potentially arise. The notice that was redistributed on Coldcard’s X account early on Friday detailed that Coinkite will stop automatically erasing customers’ records. That disclosure is a reversal that the firm directly linked to the firmware exploit that has drained more than $100 million in Bitcoins from its hardware wallets since July 30, 2026. How does Coinkite handle user records? Coinkite has confirmed that it will change how it handles customers’ data “in connection with the security incident disclosed on July 30, 2026.” However, before that statement, the company had routinely deleted customer records, except for their email addresses and countries of residence. The change in the Coldcard Wallet’s maker standard practice is part of what it described as preparation for “legal obligations” stemming from the theft. The company did not specify in its statement what information it plans to store or for how long it will store it moving forward. Still, it is the latest major shift away from the privacy-first, self-custody ethos that had become the mantra for Bitcoin Maxis for decades. What happened to Coldcard? Coinkite’s data retention policy overhaul follows one of the year’s worst security incidents, which exploited the firmware version 4.0.1 that the company shipped in March 2021. As TRM Labs warned, reflecting the seriousness of the security vulnerability, installing the fixed firmware only protects future wallets. Any seed created on a vulnerable Coldcard between March 2021 and the patch should be considered unsafe. So far, Cryptopolitan has reported four attack waves since July 30 when the exploit was first exposed. The first wave wiped out about 594 BTC, worth nearly $38 million at the time, from roughly 500 wallets in 25 minutes. Galaxy Research tracked three more waves over the next four days. As of this report, the attacker’s haul is now at 1,816 BTC across more than 5,200 addresses. TRM calls it the third-largest crypto hack of 2026, a year where the industry has already lost more than $1.2 billion across 276 incidents. Coinkite pushes back on the ‘they knew’ claims As losses mounted, so did accusations that Coinkite sat on the flaw for years. The company has been correcting the record in public. Responding to Jack Mallers on August 7, COLDCARD wrote that “there wasn’t a weak entropy fallback,” arguing the weak PRNG, named Yasmarang, was MicroPython’s built-in general-purpose generator introduced upstream, not a Coinkite fallback. Separately, on August 5, reports emerged that a 2021 Rabbit Hole Recap episode often cited as proof of prior knowledge referred to a different bug, not the RNG issue. Coinkite’s own historical disclosure page lists 23 security-relevant events dating back to 2019, and the company has pointed critics to it repeatedly. Canada took the hardest hit Geography skewed the damage. Cryptopolitan reported on August 5 that about 25% of the attributed losses traced to holders in Canada, with the United States and Thailand also heavily affected, based on Chainalysis data linking the wallet address database to likely regions. Chainalysis attributed Canada’s exposure to early Bitcoin adoption and influencer campaigns that pushed Coldcard locally. The fallout has rippled outward. CoinMarketCap’s weekly research note said the hack has shaken trust in self-custody and pushed some Bitcoiners back toward centralized exchanges. In response, a group calling itself the Red Team, led by AnchorWatch CEO Rob Hamilton, has begun AI-assisted audits of Bitcoin wallets and libraries, scanning 150 repositories so far. If you're reading this, you’re already ahead. Stay there with our newsletter.
Trump backs 'tremendously important' AI data centers over oil in global power shift
President Donald Trump said on Friday that data centers could grow into a larger industry than oil, and argued the United States cannot afford to let China lead on artificial intelligence or cryptocurrency. He made this declaration today in his midterm election interview with Punchbowl News. “Whoever wins the AI, just wins” Stressing the importance of AI infrastructure, Trump bluntly stated that “Whoever wins the AI, just wins.” He categorized data centers as massive revenue generators for local economies, arguing that state governors should slash taxes to attract them rather than putting up roadblocks. He specifically took issue with Texas for pushing back, noting that lower taxes are the key to winning these investments. Trump also played down worries about the strain these sites put on the power grid. While he admitted that the buildings “need more electricity than the entire nation uses,” he still insisted that the companies behind them are building their own power plants and would not draw from the public supply. Where crypto fits into the whole argument In the same Punchbowl interview, Trump tied the rapid expansion of crypto and Bitcoin directly to geopolitical competition with Beijing, warning that the U.S. must not let China take the lead in digital assets. “We don’t want to see China take over crypto,” he said, adding that “I don’t want to see China win with AI.” He pointed out that China currently holds an energy advantage due to its heavy use of fossil fuels like coal, oil, and gas, thus giving them the juice needed to fuel massive AI buildouts. The comments highlight the administration’s broader push for abundant, cheap energy combined with a business-friendly approach to blockchain technology. The pledge Trump is selling at home The optimistic pitch runs into a domestic problem. On July 23, at an event at EPA headquarters, Trump expanded a nonbinding plan meant to shield households from the cost of the data center boom, according to E&E News. Almost 200 more companies and utilities, plus close to half the nation’s governors, all Republicans, signed his Ratepayer Protection Pledge, which asks signatories to limit electricity price increases on homeowners. “It’s only fair that the cost of building the new infrastructure should be borne by the corporations themselves, not by the American consumers,” Trump said. This wasn’t received well in some quarters that dismissed the pledge as a toothless way to shift blame for the rising energy costs ahead of the midterm elections. Majority of US citizens are against the buildout There has been a sharp spike in recent polls as well, with 71% of Americans opposing the construction of massive data facilities near their neighborhoods according to a Gallup poll. Support for the data centers also fell from 37% to 24%. The resistance is causing division between the people and the government. Residents in Nevada protested projects on public land, while Texas Governor Greg Abbott ordered temporary halts to water and power consumption so auditors could properly assess water and power use. According to political analysts, projects facing direct pushback from the locals run a roughly fifty-fifty chance of being canceled altogether. Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
Japan's FSA tightens crypto exchange rules on fraud and cybersecurity
Japan’s Financial Services Agency (FSA) advanced its regulatory march this week with a new set of rules on how it expects crypto exchanges to report cyberattacks and handle withdrawals flagged for scams. Per local reports, the latest recommendations that the regulator is pushing include a single form format for exchanges, as well as other tech sectors, to escalate breaches to the proper channels. The other involves how platforms move Japanese users’ funds, especially when they carry fraud red flags. Japan is slowing down how stolen money moves Japan’s National Police Agency and the FSA listed out 11 anti-fraud steps in an August 6 directive to members of the Japan Virtual and Crypto Assets Exchange Association (JVCEA), the industry’s self-regulatory body. The instructions contained actions targeting accounts implicated in fraud proceedings and their ability to send out funds. First, exchanges need to allow funds sit in a flagged account for a set amount of time before withdrawals can start to go through. Also, funds can only be sent to destination addresses that have been registered in advance. The account operator would need to wait through a cooldown period before transfers can be processed into newly added addresses. The agencies also asked the exchanges to set withdrawal limits based on customers’ holdings and risk profiles. Other requirements, such as multi-factor authentication and matching names on incoming bank transfers, were also proposed when phishing or impersonation attempts are suspected. Monitoring would tighten too, with faster freezes when a transaction looks fraudulent and quicker information-sharing with prefectural police. Each exchange has discretion over how it applies these recommendations based on its own operations and exposure, the FSA said. Why Japanese regulators want to slow down withdrawals The FSA wants to throw hurdles into the fast lane that currently exists between criminals acquiring and moving funds off platforms under its oversight. According to the agency’s statement, it is tackling “growing losses among crypto exchange users and cases where funds obtained through fraudulent schemes are being transferred to exchange accounts.” Once funds are off-ramped from exchanges and parked in wallets outside Japanese jurisdiction, the chances of a plummet are near zero. One reporting form for 17 sectors A day later, on August 7, the FSA published a separate draft revision to its supervisory guidelines that would standardize how firms report cyberattacks and system failures. Crypto asset exchange providers are among 17 sectors covered, CoinPost reported. Until now, a shared reporting template existed only for DDoS attacks and ransomware. The revision adds a new “Common Template for Other Cyberattack Incidents” to capture everything else, following a May 2025 amendment to an inter-ministerial agreement. Firms can keep using the old format during a transitional period that runs to the end of March 2027, and the FSA is taking public comment until 5 p.m. on September 7. Part of a wider crypto overhaul The two moves land as Japan reworks its whole approach to digital assets. On August 6, the FSA also stood up a dedicated Crypto Assets and Stablecoins Division under a new supervisory bureau, Cryptopolitan reported, replacing the scattered office-level units that had handled the sector. That sits alongside a law passed in July that reclassifies crypto as a financial product under the Financial Instruments and Exchange Act, cuts the top tax on trading gains to a flat 20% from January 1, 2028, and lays the groundwork for domestic spot ETFs. Taken together, the week’s actions read as Japan folding crypto further into mainstream financial supervision. If you're reading this, you’re already ahead. Stay there with our newsletter.
LIVE: Bitcoin abruptly breaks $65,000 as will it won’t it semi-rally continues
Bitcoin hovered around $65,000 Friday, while Ether traded near $1,903 and the broader crypto market stayed mostly flat ahead of US jobs data. US payrolls fell by 23,000 in July versus an expected 83,000 gain, while unemployment slipped to 4.1%, strengthening expectations the Fed will hold rates at 3.50% to 3.75% in September. Nasdaq 100 futures jumped 1.2%, S&P 500 futures rose 0.5%, and Dow futures gained 160 points after Wall Street’s previous session ended lower.
SK hynix bets $38 billion on new fabs to feed AI memory demand
SK hynix is making another massive wager on artificial intelligence. The South Korean memory giant approved 54 trillion won (about $38 billion) in new manufacturing investments on Friday, authorizing two new chip fabs that will expand production of the memory chips powering AI systems. The move reflects the company’s belief that demand for AI infrastructure will stay strong for years—and that memory, not processors, remains the industry’s biggest constraint. This announcement comes in the wake of record quarterly results that have demonstrated the importance of high-bandwidth memory (HBM) in the current AI boom. As per a previous report by Cryptopolitan, SK Hynix posted revenue of 79.3 trillion won in the second quarter, and 60.5 trillion won in net income due to growing demand for HBM technology. The company has begun to make large deliveries of HBM4 chips in order to maintain its leadership in the field of AI memory. The investment is crucial for firms that manufacture AI chips and cloud services because sophisticated accelerator devices rely on multiple HBM stacks being integrated next to chips using advanced packaging technology, such as TSMC’s CoWoS. Merely increasing GPU chip production would not help if HBM memory is not available in enough numbers. According to a report published by Omdia, memory is likely to account for over 50% of the global semiconductor market revenue by 2026 due to the increased demand for DRAM and NAND on account of AI. TrendForce claims that the supply of DRAM and HBM will remain tight at least through 2027, as the capacity for advanced packaging will be limited despite several industry-wide developments. SK hynix provides HBM to Nvidia and other manufacturers of AI accelerators, meaning its manufacturing intentions become a key measure of the speed of expansion of AI infrastructure. This investment follows Cryptopolitan’s recent report about Nvidia’s CEO Jensen Huang’s announcement of $500 billion cooperation with SK Group, demonstrating the increasing significance of memory production. Where the 54 trillion won goes SK hynix announced that a sum of 35.2 trillion won will be allocated for the construction of its Y2 DRAM fab located in Yongin. At the same time, 19.1 trillion won will be used for building the M17 NAND flash fab located at its Cheongju campus. It is estimated that the combined investment will amount to around $38 billion. These projects are an integral component of SK hynix’s more expansive plans for development. The company has already committed 600 trillion won to the Yongin Semiconductor Cluster and another 100 trillion won to expand Cheongju, while construction of the neighboring Y1 fab is already underway. The firm is taking steps to fortify its position in AI memory. SK hynix received 58% of global HBM revenue in the initial quarter of 2026 based on Counterpoint Research’s Memory Tracker, with Samsung (21%) and Micron (21%) following behind. HBM is now one of the rare materials in the AI industry. Different from regular DRAM materials, it makes use of stacking technology, through-silicon vias technology (TSV), and complex packaging technology, making it extremely hard to fabricate. As per Omdia’s projections, there will be a 94.1% growth in the semiconductor industry in the year 2026, spurred by AI-related demand for NAND and DRAM. The shortage of supply has already started to impact plans for product development. For instance, Nvidia is now considering 8-Hi HBM and HBM4 solutions for its next Rubin Ultra accelerator instead of the previously planned 12-Hi HBM4e due to worries that reduced availability of DRAM in 2027 may hinder production of HBM modules. This dynamic means that suppliers of memory increasingly control how quickly AI hardware can enter the market. An increase in memory capacity leads to the growth in shipments of accelerators, while a shortage of memory forces manufacturers to revise the design of their products to the amount of memory available. What the plants will build, and when Analysts anticipate continued supply-tightening conditions because it will be several years before the new fabs are operational. According to SK hynix, the Y2 fab is expected to produce both HBM products as well as next-generation DRAM products. Construction will start in July 2027, with the cleanroom expected by June 2029. The breaking ground for the M17 fab will take place in February 2027, and its cleanroom will be ready by December 2028. According to SK hynix, this investment serves as groundwork for a transition that is expected to take time instead of just being a short-lived AI trend. The firm indicates that based on Omdia forecasts, it will see a 19 percent CAGR growth in the global demand for DRAM and NAND till 2030, thus confirming SK hynix’s belief in the relevance of mass memory manufacturing for competitively winning in the age of artificial intelligence.
Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
Ondo founder's mother sues to remove CEO in fight for control
The estate of late Ondo Finance founder Nathan Allman has taken the tokenization firm’s current chief executive to court in Delaware over a legal ownership dispute. A disputed leadership handover has left the company with two rival power centers and the estate is asking a judge to decide who legally runs the company. Until a judge rules, the legal standing of the company’s contracts, spending and share issuance is in doubt. Who are the two rivals aiming to run Ondo Finance? Three complaints were filed on the 6th of August in Delaware’s Court of Chancery by Kathleen Allman, the mother of the late Nathan Allman, founder of Ondo Finance. When Nathan Allman died in late May at 32, he held three roles at once: CEO, sole director and controlling shareholder, according to the complaint. His death froze the company. His voting shares passed into his estate, so no one had the authority to exercise them, and with the single board seat empty, there was no director left to appoint a successor or call a meeting. That deadlock continued until a Hawaii probate court made his mother administrator of the estate on June 26, handing her the voting power. The estate is accusing Ian De Bode, Ondo’s former president, of using the gap before probate closed to install himself. According to the filings, De Bode took advantage of the bylaws to declare himself CEO, then leaned on a shareholder agreement to name himself sole director and started acting alone. Kathleen Allman’s suit argues Ondo’s charter allowed the CEO vacancy to be filled only by a board decision, and since no board existed, De Bode’s appointment was void along with everything that followed. De Bode also allegedly leaned on corporate resources to pressure Kathleen into signing documents cementing his control, and he and Ondo’s outside lawyers refused her request for a shareholder list. Did the Allman estate attempt to resolve its ownership dispute out of court? After gaining her voting rights, Allman did not immediately fire De Bode. She joined the board, put an interim operating policy in place to keep the business running, and kept De Bode on as president while asking for basic company records, all of which De Bode and Ondo’s counsel declined to recognize. De Bode has called Allman’s claims “meritless” and her decision to sue “regretful.” According to him, Ondo still has the backing of “key stakeholders, including its lead investors and the Ondo Foundation.” The Ondo board said in a statement that it remains focused on serving users “without interruption” while it searches for a permanent successor. The company also recently named former Blockchain.com executive Adam Schlisman as its chief financial officer. Ondo, founded in 2021 and backed by Coinbase, Wintermute, Tiger Global and Peter Thiel’s Founders Fund, is leading the real-world asset market with about $3.5 billion in total value locked. It runs products including the OUSG tokenized Treasury fund and the yield-bearing USDY token, but following the news of the dispute, ONDO fell about 6% over 24 hours to $0.35. The company is currently trading at roughly 84% below its December 2024 record of $2.14. More than 10 million ONDO was reportedly moved onto exchanges as the news spread, with some transfers tied to Ondo team wallets, and put the two-day drop at around 9%. Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
Cryptopolitan Report: Nearly Half Of Our Readers Think Quantum Breaks Bitcoin By 2035
We asked our newsletter readers whether quantum computing would be able to break Bitcoin by 2035. Last week, on July 28, an AI model that has not been publicly released found a flaw in a post-quantum signature scheme that two years of human review had missed. No quantum computer was involved here. This report goes through what Bitcoin actually relies on, the actual threat to BTC and why what happened last week adds a whole new dimension alongside the quantum timeline. Where Our Readers Landed Add those who responded “yes, they probably will” to the “before 2030” cohort and what you get is 47% of readers see the potential of a quantum break on Bitcoin within the next nine years. To this day, the largest elliptic-curve key broken on real quantum hardware is 15 bits, which happened in April this year by a researcher claiming Project Eleven’s Q-Day Prize. For context, Bitcoin’s keys are 256 bits and getting from one to the one within the span of nine years is going to require an extraordinary run of engineering innovation. Roughly third of this audience is currently seeing this as a real possibility. What is Actually At Risk For BTC Before we go on to discussing in depth what the poll reveals, it’s important to clarify that Bitcoin does not encrypt anything. There is no secret message being scrambled and every transaction on the network has always been public since inception. What Bitcoin does is sign and hash. Two different jobs, two different pieces of maths, two very different quantum timelines. The signing part is the exposed part and where there is a vulnerability. When you spend Bitcoin, your wallet produces a signature proving you own the coins and this is done on an elliptic curve cryptography called secp256k1. Bitcoin has used two signing methods over the years, ECDSA from the start and Schnorr since 2021. The security in both methods rests on one assumption, which is that deriving a private key from a public key is impossible. This is where Shor’s algorithm comes into the picture and targets that assumption. Given a large enough quantum computer, it can work backwards from a public key to the private key that generated it. In March this year, Google researchers published estimates putting the requirement at less than 1,200 logical qubits and under 500,000 physical qubits. A later paper from Caltech and Oratomic brought that as low as 10,000 qubits using a neutral-atom architecture. Nobody has built anything close. But those numbers used to run into the millions, and the direction of travel is the reason Bitcoin developers stopped treating this as a problem for the 2040s. The hashing side is in far better shape. Bitcoin uses SHA-256 for mining, for address generation, and for linking blocks together. The best quantum attack against it is Grover’s algorithm, which offers only a quadratic speedup. In practice that reduces 256-bit security to something like 128-bit, which remains well beyond reach for any machine anyone has sketched on paper. Mining is not the weak point here, and neither is the chain structure. So the accurate framing is narrower than “quantum breaks Bitcoin.” What is at risk are coins whose public keys are already sitting on the chain in plain view. That happens when an address has been spent from before, or when funds sit in older address formats that expose the key by default. The current estimate is somewhere between 6.5 and 6.9 million BTC, roughly a quarter to a third of total supply, and that figure includes around 1.7 million coins in early addresses widely believed to belong to Satoshi. Coins held in modern addresses that have never been spent from do not expose a public key at all. For those, a quantum attacker would only get a window during the few minutes a transaction sits in the mempool waiting to confirm. Still a problem worth solving. A much smaller one than the headline number suggests. Bitcoin’s Answer To The Quantum Problem On February 11, 2026, BIP-360 was merged into the official Bitcoin BIP repository, the network’s first formal quantum-resistance proposal to get that far. It introduces a new output type called Pay-to-Merkle-Root, or P2MR, authored by Hunter Beast, Ethan Heilman and Isabel Foxen Duke. P2MR is essentially Taproot with the key-path spend removed. Taproot commits to both an internal public key and a Merkle root of scripts, which means the key is always derivable from what sits on the chain. P2MR commits only to the Merkle root. No public key appears until you actually spend, and even then only the leaf you used. It closes the long-exposure hole. A companion proposal, BIP-361, arrived on April 14 with a three-phase plan to sunset ECDSA and Schnorr spends entirely. That is the one causing arguments, because phase three effectively freezes coins that never migrate. Here is the part worth sitting with. Heilman’s own estimate is seven years from the moment consensus forms to full quantum resilience, and he calls that optimistic. Two and a half years for review and testing. Half a year to activate. Then five more years before roughly 90% of wallets, custodians, Lightning nodes and treasury software have actually upgraded. Notably, BIP-360 does not include post-quantum signatures at all. Those were stripped out in July 2025 and deferred to a future proposal. The scheme Bitcoin eventually adopts will most likely be ML-DSA or SLH-DSA, the algorithms NIST has already finalised. Which brings us to last week. A Post-Quantum Scheme Failed and No Quantum Computer Was Involved On July 28, Anthropic’s Frontier Red Team published a finding from Claude Mythos Preview, a model that is not publicly available. Working semi-autonomously in an agentic setup, it found a previously unknown attack against HAWK, one of nine finalists in NIST’s additional post-quantum signature competition and the only lattice-based scheme to advance to round three in May. The attack exploited a symmetry in HAWK’s lattice structure that nobody had used before. For the HAWK-256 parameter set, it dropped the estimated work for key recovery from about 2^64 operations to roughly 2^38. In plain terms, that is the gap between “no attacker on earth is doing this” and “a well-funded team could plausibly try.” Now the details that make this uncomfortable. HAWK had already survived two rounds of expert human review across two years. The model found the flaw in about 60 hours, at a cost of roughly $100,000 in API spend. The researcher supervising the project had a theoretical computer science background and was not a lattice cryptography specialist. Sophie Schmieg, a post-quantum cryptographer at Google, summed it up in five words: “Basically with this paper, HAWK is dead.” The HAWK team withdrew the scheme from NIST consideration the following day, noting that the obvious fixes, doubling parameters or moving to higher-rank modules, would leave it uncompetitive against the alternatives. No quantum computer was involved at any point. The thing that broke was post-quantum cryptography, and a classical AI model broke it over a long weekend. What The Poll Actually Revealed Every option in our poll asked the same underlying question: when does the quantum hardware arrive. Readers split reasonably on that, and 47% landing inside nine years is a defensible read given how the qubit estimates have moved this year. But the HAWK result suggests the hardware timeline may not be the binding constraint. The 33% who voted “not that soon” or “only after 2050” were making a bet about quantum engineering, and they might well be right about it. That bet does not protect them from a classical attack on the replacement algorithm. The 20% who said “no idea” deserve some credit here. In an audience that follows this closely, one in five declining to guess is not apathy. It reads more like an accurate assessment of how many unknowns are stacked on top of each other: hardware progress, algorithm selection, consensus timelines, and now AI-assisted cryptanalysis moving faster than the review process built to catch it. Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
US Senate will resume negotiations on the CLARITY Act in September
The US Senate is expected to enter the August recess without voting on the CLARITY Act, the crypto market-structure legislation, thereby postponing further action until September at the earliest. The majority leader, Republican Senator John Thune, confirmed that the Senate would delay voting on the legislation until after the recess, blaming Democrats for impeding its progress. He, however, insisted that the bill would be high on the agenda after the break. He contended, “The Dems are insistent on no Clarity vote. I worked with sponsors of the bill. Senator Lummis was great, and we’re getting that queued up first thing when we come back.” The CLARITY Act is a comprehensive legal framework for digital assets in the United States. The legislation aims to clarify how crypto assets would fall under the oversight of the Securities and Exchange Commission (SEC) or the Commodity Futures Trading Commission (CFTC) and to address years of regulatory uncertainty. Proponents say the bill would reduce regulations for cryptocurrency firms to help them develop and innovate, while critics believe the legislation would need to strengthen investor protections and tighten ethical safeguards. The Senate will discuss the bill in September On X, Politico also confirmed that US senators will deliberate further on the CLARITY Act after the break. Earlier on Thursday, it had also reported that the Senate was unlikely to hold a preliminary vote on the legislation before the break. Ideally, crypto companies and advocates had hoped senators would stick around longer to resolve differences over the Digital Asset Market Clarity Act. However, lawmakers on both sides still have major concerns about the bill, and unfortunately, time has run out. Lawmakers are expected back on September 14, 2026, giving senators three weeks to continue negotiations and address the remaining agenda. Speaking on the delay, nonetheless, crypto trade group Digital Chamber CEO Cody Carbone is optimistic. He said, “While this isn’t the result any of us hoped for when we began the week, the fight is far from over. The next few weeks, we will continue to work to find the last pieces of common ground needed to set up a successful vote when Congress returns in September.” The postponement also extends uncertainty for crypto exchanges, token issuers, and investors who have been waiting for clearer federal rules governing digital assets. Many industry participants had viewed the August vote as a key milestone after months of negotiations between lawmakers, regulators, and industry groups. As a result, companies will likely continue operating under the existing patchwork of regulations for at least several more weeks. The CLARITY Act had stalled over various issues Progress on the Clarity Act has stalled amid several other issues before the Senate, including a continuing resolution to keep the government funded, Russian sanctions legislation, a batch of nominations, and Todd Blanche’s nomination to lead the Justice Department. According to Thune, the Senate would take votes on the first three measures on Friday at 10 a.m., along with an amendment to the Russia sanctions bill, after reaching an agreement on how long debate could continue. The vast majority of disagreements over the bill have now been resolved, with both the Senate Banking Committee and Agriculture Committee approving it separately. The biggest unresolved matter was an ethics provision related to Trump, who disclosed that he earned more than $1 billion from his crypto ventures in 2025. Although President Trump backed an ethics provision brokered by Senator Cynthia Lummis, Democrats and several Republicans, including Thom Tillis, were not satisfied with the language. Tillis and Ruben Gallego drafted their own version and said they sent it to the White House at the end of July. No public response had come from the White House as of press time. If you're reading this, you’re already ahead. Stay there with our newsletter.
Moonshot AI's Kimi K3 slips testing sandbox, Frontier Security says
During a routine security evaluation, an open-weight AI model named Kimi K3 developed by China’s Moonshot AI managed to escape its testing sandbox and reach the open internet. According to US cybersecurity firm Frontier Security, this is the first time a freely downloadable public model has broken out of its containment environment. A leak in the sandbox that the model chose to use According to an interview with WIRED yesterday, Frontier Security was measuring Kimi K3’s defensive cybersecurity skills when the model wandered outside the environment meant to hold it. Apparently, a misconfiguration had left a gap in that environment. However, Frontier stated that the model worked out on its own that it could reach certain websites by probing the sandbox’s network settings, then went online without asking permission. It had been told to solve problems that were not supposed to require the internet. “We found a leak in the sandbox,” Frontier CEO Yaron Singer told WIRED. “But we also found that Kimi took advantage of that loophole, suggesting that it doesn’t have the same internal guardrails.” Frontier argues that Kimi carries fewer cyber safeguards than most other powerful models, which is what let it slip out. No systems hacked, but weaker guardrails Fortunately, Kimi’s escape did not lead to any malicious hacks or system compromises. Because the information it was looking for was easily accessible on GitHub, it didn’t need to break into anything once it got online. However, the main concern is accessibility. Unlike most heavily secured internal lab models, Kimi K3 is open to the public, meaning that anyone can download and run it with those same loose safety guardrails in place. Testers noted that the model is ruthlessly efficient at achieving its goals by any means necessary, even if it means cheating or escaping containment. The testing environment itself was built with sandboxes from the UK government’s AI Security Institute, although this has not yet been confirmed by either Moonshot or the AISI, as they have declined to comment. More rogue agents appearing this summer Kimi’s escape adds to a growing trend of AI models bending the rules during evaluations. On July 21, OpenAI revealed that its models exploited a zero-day software flaw to reach the internet and break into Hugging Face. Days later, Cryptopolitan reported that Anthropic traced some of its models to unauthorized external break-ins. Meta even admitted one of its AI agents (Muse Spark 1.1) reached an outside firm due to a misconfigured testing environment. Experts have always maintained that these incidents are usually the result of poorly secured testing walls rather than sci-fi jailbreaks. “As a general phenomenon, if you give one of these models an objective, and if you’re not very explicit, like walls you’re putting around it, it’ll find a way to get the answer,” said Matt Fredrikson, CEO of Gray Swan and a Carnegie Mellon professor. Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
Futures to spot ratio for BTC on Binance reaches new all-time high
The price fluctuations of BTC depend even more on futures trading, with decreasing spot demand. On Binance, the ratio of futures to spot volumes reached a new all-time peak. BTC price discovery has heavily shifted to the futures market. Based on Cryptoquant data, futures volumes are approximately 7.82 times higher than spot trading. Traders now rely on derivatives, instead of going through the hassle of direct buying and selling. As of August 6, Binance open interest for BTC is $24.47B, down from over $44B in October 2025. Daily trading volumes reach $57.82B, while spot volume hovers at around $6B. BTC futures trading picked up in the past month, though still below the levels before October 10,2025. | Source: Coinglass Driven by futures trading, BTC mostly moved sideways, trading at $64,339.89. BTC still has a 56.8% dominance of the crypto market, and July was a relatively strong month with a close in the green. BTC is now stuck in a tight range between $64,000 and $65,000, based on the liquidation heatmap. BTC leveraged traders have built their positions in a relatively tight range, meaning even a small BTC price move could cause significant liquidations. | Source: Coinglass On Binance, most accounts have taken long positions. However, in terms of the value of positions, the bulk of allocated liquidity attempts to short BTC. In the tight price range, this means even a relatively small price move can cause significant liqudiations. During previous market periods, the BTC price often had to move by thousands of dollars to attack some of the leveraged positions. Is the high futures to spot ratio bullish? In the past months, futures trading volumes expanded faster compared to spot trading. This reflects the potential to play out short-term market strategies, take higher risk with leverage, and make the best of the BTC range-bound price action. The ratio is not linked to a bullish or bearish signal clearly, but this time, it reveals increasing speculative activity. For BTC, this mans traders can react much faster to rapid price shifts, without being caught with spot orders. Despite the predominance of BTC futures trading, volatility remains low, sliding to 1.17%. Under those conditions, BTC traders can still afford relatively minor liquidations, while trying to extract gains from the BTC sideways trading. BTC spot volumes keep weakening BTC spot positions may be used as a hedge for futures trading. In 2026, both the spot and futures markets diminished their volumes, leading to a much smaller demand for holding spot positions. The exit of retail traders also decreased spot BTC buying, leaving whales and professional traders to take more advanced risk with futures. According to analyst @darkfrost, BTC spot demand has been falling for the past 10 months, still affected by the October 10 crash. In June, an extra 273,000 BTC entered the market, while currently the excess supply is 72,000 BTC. As Cryptopolitan reported, the period of low demand coincided with Strategy’s new trend of selling BTC each week. Treasury companies may disappear as potential buyers, as Strategy’s models seems to unravel. The weak spot demand and short-term derivative trading show BTC has fewer conviction positions. At the current price range, BTC is still not seeing significant accumulation, and still raises the question of reaching a bear market bottom.
Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.
Cathie Wood’s ARK $21M Block buy wasn’t as bullish as it looked
Ark Invest, with its co-founder and chief executive officer (CEO) Cathie Wood, purchased almost $21 million in Block shares on Thursday after the company’s stock dropped by over 6%. At first sight, this might seem like an apparent expression of confidence in the fintech firm run by Jack Dorsey. However, rules established by Ark with regard to its own portfolio indicate otherwise. This is actually, according to their rules, routine rebalancing. Ark restricts any individual investment to 10% of any single fund according to the diversification strategy discussed in the firm’s disclosures. The weight of a company in a portfolio changes as the stock prices fluctuate. Ark typically buys more stock to maintain a position that has decreased below its target. In contrast, it reduces its position when it increases too much. It seems that this situation has also occurred in the case of Block. Before the purchase that took place on Thursday, Block had been the tenth-largest holding in Ark’s Next Generation Internet ETF (ARKW), valued at approximately $60 million, which accounted for 3.51% of the fund. ARK sticks to its playbook When looked at from this perspective, the acquisition made on Thursday seems to be more focused on the management of the portfolio than any new investment principle. Ark purchased 267,676 shares in Block through three of its exchange-traded funds, namely: Ark Innovation ETF (ARKK), ARKW, and the Ark Blockchain and Fintech Innovation ETF (ARKF). Ark made those purchases when Block stock closed at $79, and the stock showed a drop of 6.15% for the day. That pattern repeated itself earlier in the week. On August 4, Ark Invest purchased approximately $8 million in shares of Coinbase after the cryptocurrency exchange dropped more than 14% in the wake of its earnings release, according to The Block. Coinbase had already been ARKK’s sixth-largest holding. On the following day, Ark invested another $17.3 million into shares of Circle, at that time the ninth-largest holding in ARKK, trading at approximately $63. Buying the names it already owns the most of Instead of pursuing new investments, Ark has often increased its stake in companies that are already its biggest investments, especially after drops in share prices. Cryptopolitan has previously reported that this approach of buying-the-dip and rebalancing-as-needed is one of the key strategies employed by Wood while managing her ETFs. Generally speaking, each transaction is executed to maintain the desired weights in the portfolio rather than indicate any fundamental shift in thinking. The repeating pattern can be traced back many months. In late January, Ark purchased $21.5 million worth of Coinbase, Circle, and Bullish shares in a single trading session after Bitcoin briefly dropped below $90,000. Those were the firm’s first purchases of the three companies since mid-December. Invezz, in a separate report published on TradingView, estimates that Ark invested around $72 million in crypto equity on a day when Bitcoin was trading around $75,000. This investment included around $32.7 million in Robinhood stock. The same report goes on to state that Wood still considers Bitcoin’s low correlation with traditional assets a plus for it in the long run. Block’s earnings beat, and Mizuho’s cost warning There was no connection between Block’s fundamentals and the decline in its share price. According to The Block, the fintech’s revenue for the second quarter was $6.62 billion, reflecting a growth of 9% year-on-year and exceeding analysts’ predictions. Adjusted EPS stands at $1.02 after climbing by 65%, and gross profit surged by 25% to reach $3.17 billion. Investor worries, however, turned towards costs. Mizuho analysts stated that Block continues to see increases in operating costs even after laying off around 40% of employees back in February. Mizuho projects the adjusted operating costs to grow from $4.48 billion during the first half of the year to $4.56 billion during the second half, according to Block’s forecast. Ark was selling on the same days it bought The sales made by Ark present compelling evidence that the transactions pertained to the preservation of the portfolio rather than a general optimistic stance about crypto stocks. The same day it bought Block, Ark sold 39,509 shares of Bullish through ARKW, reducing its position by roughly $910,000 after the stock closed down 3.36% at $23.04. Earlier in the week, the firm also sold 5,700 shares of Solana-focused treasury company Solmate for nearly $25,000, according to The Block. Acquiring a crypto-backed stock and selling off another on the same day does not demonstrate a belief in the direction of the sector but shows how Ark operates its investments: continuously matching the weight of the portfolios with the movements of the market. Is Ark changing its investing philosophy? ARK Invest has not said it is rotating away from Bitcoin. However, several research firms have increasingly treated crypto-related equities as a distinct investment class tied to broader digital-asset adoption. Bitwise has argued that crypto equities can serve both as “a proxy for cryptoasset exposure and as unique stand-alone investments,” describing them as a “picks-and-shovels” approach to the sector. Bernstein has repeatedly identified exchanges and crypto financial-services firms such as Coinbase as key beneficiaries of clearer U.S. regulation and expanding institutional adoption, while Galaxy Research increasingly analyzes exchanges, tokenization platforms, stablecoins and other crypto infrastructure businesses as separate investment themes alongside Bitcoin. JPMorgan analysts likewise tend to value crypto-related companies on business fundamentals—including trading activity, custody, payments and tokenization revenues—rather than viewing them solely as leveraged bets on Bitcoin’s price. ARK’s own Big Ideas report shows ARK has long invested in disruptive innovation across blockchain, AI, fintech, and digital assets. “Our mission is to deliver long-term capital appreciation … by identifying and investing in the leaders, enablers and beneficiaries of disruptive innovation.”
If you're reading this, you’re already ahead. Stay there with our newsletter.
Why does the Pentagon want quantum sensors and advanced clocks?
The US Department of Defense plans for quantum computing technology and its related hardware to be incorporated into its military equipment, used for purposes such as intelligence gathering, target identification, keeping machines in sync, and functioning without conventional navigation aids. The Pentagon has started Farseer, a Defense Innovation Unit project built around advanced quantum sensors and atomic clocks. The July program is aimed at improving assured positioning, navigation, and timing, or A-PNT, across intelligence, surveillance, and reconnaissance systems. The clocks in modern ISR systems must be extremely precise because information coming from various sensors has to be correlated properly. Synchronization is critical for communications as well as for military systems functioning in air, ground, maritime, space, and cyberspace domains. DIU put it this way: “The invisible backbone of modern ISR is absolute precision timing and synchronization, which enables seamless sensor fusion, secure communications, and coordinated multi-domain effects.” The Pentagon wants quantum hardware to give military sensors more precision with less bulk Farseer is trying to get around those physical restrictions without lowering what the military expects from its ISR equipment. Quantum sensors can detect extremely small changes in physical conditions, while advanced clocks can keep far more precise time than many traditional alternatives. The Pentagon is especially interested in getting that performance without loading aircraft, vehicles, ships, missiles, or other systems with oversized equipment. DIU said, “Quantum sensors and clocks are not beholden to the same fundamental limitations of classical systems, providing a path to simultaneously achieving both high sensitivity and low SWaP.” Farseer is therefore less about building one giant Pentagon quantum computer and more about putting quantum-based timing and sensing technology into the wider network of machines the military already depends on. That plan is unfolding while Washington is also arguing over who controls the companies supplying the hardware behind the quantum industry. A roughly $2 billion takeover involving IonQ (NYSE: IONQ) and semiconductor manufacturer SkyWater Technology (NASDAQ: SKYT) recently created a disagreement between the Pentagon and the Federal Trade Commission. The FTC eventually allowed IonQ to buy SkyWater without the restrictions a senior Defense Department official wanted. The concern centered on access to SkyWater’s factories. The company is among a small group of American manufacturers able to produce the specialized chips needed by quantum computing businesses. Pentagon research and engineering undersecretary Emil Michael wanted FTC Chairman Andrew Ferguson to make IonQ guarantee that competing companies could continue ordering chips from SkyWater after the takeover. The vote became unusually important because the FTC had only two commissioners. President Donald Trump fired two Democratic commissioners last year, while another Republican commissioner had already departed. Andrew and Mark ended up on opposite sides, leaving the agency stuck. IonQ was therefore able to complete the purchase on Friday without accepting the proposed conditions. The company said the acquisition would “accelerate all quantum platforms across the industry.” IonQ and Sandia are building quantum systems for US national security work IonQ is also working directly with Sandia National Laboratories under a new memorandum of understanding focused on US national security. The agreement covers joint development of quantum computing and networking technology at New Mexico’s Quantum Demonstration Facility, where government researchers and private companies can work on new systems together. IonQ Chairman and CEO Niccolo de Masi said, “Big breakthroughs often happen when government and industry work together.” Niccolo added that those partnerships “could help shape the future of quantum technology and play an important role in our economic and national security.” The companies already have history together. Sandia manufactured the ion traps used in IonQ’s earliest machines. Their new work will include co-designing future quantum technology rather than limiting the relationship to manufacturing individual components. In 2025, the company announced that it had achieved 99.99% two-qubit gate fidelity. This number represents the precision of the two-qubit operations being performed. The higher the percentage value reaches towards 100%, the fewer errors there are in the computation. IonQ has said users of its technology have recorded performance as high as 20 times that of earlier quantum systems. Companies working with its hardware include Amazon (NASDAQ: AMZN) through Amazon Web Services, AstraZeneca (NASDAQ: AZN), and NVIDIA (NASDAQ: NVDA). Sandia and IonQ are now taking that same technology into joint national security development as the Pentagon expands its own use of quantum sensors, clocks, chips, and computing hardware.
MiCA pushes USDT out, leaves USDC in the spotlight
Circle says USDC is the only one of the world’s ten largest stablecoins that currently complies with the European Union’s Markets in Crypto-Assets (MiCA) regulation. If accurate, the claim means the EU’s roughly 450 million residents no longer have regulated access to most major dollar-backed stablecoins, including Tether’s USDT. The declaration comes as Europe fully implements its landmark crypto legislation, which is changing the landscape of which stablecoins are available for trading in the region and prompting discussions on whether MiCA has indeed gotten the balance between innovation and financial stability right. Only two Circle tokens made the compliant list As stated on Circle’s European regulatory page, USDC is the sole top-10 stablecoin by market cap that has been given approval under MiCA. EURC, which is backed by the euro, has also been accepted. The company claims that both tokens can be completely redeemed in fiat currency, with reserves kept in compliance with regulation and made available to the general public. Circle published its reserve report on August 3. Under the MiCA framework, stablecoin issuers must segregate their reserves, issue regular attestations, comply with the redemption rights of customers, and adhere to governance standards. Exchanges catering to EU customers can no longer offer stablecoins by issuers that fail to meet these requirements. The transition period had run its course by July 1. The European Securities and Markets Authority (ESMA) called on all unauthorized firms to close their operations. Moreover, it reminded the public that the only legal operators of crypto-asset services in the European Union and European Economic Area were firms with licenses. The stricter regulations are a reflection of the increasing regulatory concern about the increasing position of stablecoins in finance. The European Systematic Risk Board (ESRB) has warned that the growing connection of stablecoins’ reserves with banks and the financial market will make it more necessary to supervise them closely and prevent wider financial risks. The 60% reserve rule that kept Tether out The most challenging hurdle for large issuers is the reserve requirement under MiCA. Those stablecoins that are categorized as being “significant” must maintain at least 60% of their reserves in bank deposits within the EU. This categorization applies to those issuers that fulfil at least three of the seven conditions, namely: number of token holders is higher than 10 million; market capitalization higher than €5 billion; average daily transactions exceed 2.5 million in number and €500 million in aggregate value; gatekeeper status; significance of the issuer’s activities on a global scale; financial interconnectedness; and multi-token activity. USDT meets all of the quantitative conditions. Instead of complying, Tether decided to leave the EU market and terminated its euro-pegged stablecoin, EURT. “After careful consideration, we have made the decision to discontinue support for EUR₮. As such, Tether has ceased minting EUR₮, with the last acquisition request processed in 2022, and new EUR₮ issuance requests are no longer accepted. This decision aligns with our broader strategic direction, considering the evolving regulatory frameworks surrounding stablecoins in the European market. Until a more risk-averse framework is in place—one that fosters innovation and offers the stability and protection our users deserve—we have chosen to prioritize other initiatives. “ – Tether Updates Users on a Strategic Transition to Better Support Community-Driven Product Support The CEO of Tether, Paolo Ardoino, indicated that requiring issuers to move their assets from short-term US Treasuries to deposits in commercial banks could adversely affect the stability of stablecoins, especially during times of financial stress. In a statement made after an interview with Italian television, Ardoino remarked that MiCA “poses a systemic risk to European banking stability” and added that Tether’s exit from the EU was because “we preferred to protect our current users who use Tether USDt as their only stable currency option.” The criticism does not just stop at Tether. Industry organization Blockchain for Europe has pressed the European Commission to examine specific sections of MiCA’s stablecoin regulation, stating that some regulations may hinder the ability of Europe to compete successfully. Delistings that left aggregate volumes nearly flat The exchanges immediately responded to the event. Binance, Coinbase, Kraken, and OKX decided to take USDT trading pairs off of the exchange platforms of their European clients to avoid any potential MiCA violations. Still, the overall cryptocurrency market didn’t experience serious changes that were anticipated by many. As reported in a research released in July 2026 by LUISS economist Nicola Borri and University of Surrey researcher Kirill Shakhnov, the total shares of USDT and USDC in the market “barely move” following the delisting. In Europe, the share of USDC in the USDT-to-USDC trading increased by around six percent, largely due to the approximately 20% decrease in USDT trading volume after its removal rather than the increasing interest in USDC. In addition, there are now new security risks resulting from the transition. According to the recent news from Cryptopolitan, there has been a major rise in impersonation scams that target clients attempting to move their assets onto MiCA-compliant systems. Euro stablecoins hit a record as issuers pile in MiCA also has a transforming influence on the euro-pegged stablecoin sector in Europe. DefiLlama data shows MiCA-compliant euro stablecoins approached $900 million in value during mid-2026, a record for the sector. CoinGecko ranks Circle’s EURC as the largest euro-backed stablecoin following EURT’s retirement, while Token Terminal data shows euro stablecoins still account for well under 1% of the roughly $300 billion global stablecoin market. 🇪🇺 Two things are true at the same time about the status quo of stablecoins under MICA in the EU: 1️⃣ There are now ~35 regulated e-money tokens from 21 issuers, banks and EMIs alike. Real institutions are betting on this space and many large EU corporations will enter over the… pic.twitter.com/t6LlwtWvUR — Patrick Hansen (@paddi_hansen) July 28, 2026 Regulators continue approving new issuers. ESMA has authorized 19 e-money token issuers across 11 EU member states, while policy analyst Patrick Hansen estimates there were about 35 regulated e-money tokens from 21 companies as of late July. Conventional banks are venturing into the sector as well. A consortium of nine European banks, which includes BBVA, ING, and UniCredit, will release a euro stablecoin that complies with MiCA regulations, indicating that regulated banks see tokenized money as a vital part in the future of payment systems in Europe. Despite this, euro stablecoins have a limited presence in the international market. MiCA promotes regulated issuance of euro-denominated stablecoins, but dollar-backed stablecoins continue to lead in crypto trading, payments, and liquidity.
Don’t just read crypto news. Understand it. Subscribe to our newsletter. It's free.