Mark RadarMARK RADAR
EN
Event File CRYPTO Crypto Hacks

Vercel Breach Prompts Crypto Projects to Urgently Rotate API Keys

4 reports · First detected 2026-04-20 · Last active 2026-04-21

Vercel is a cloud platform widely used to host Web3 front ends, wallet interfaces and DEX dashboards. The supply-chain attack originated with third-party AI tool Context.ai. Hackers used its OAuth permissions to take over a Vercel employee’s Google Workspace account before moving laterally into internal systems. If deployment credentials were exposed, attackers could potentially tamper with front ends and induce users to sign malicious transactions.

Vercel disclosed the breach on April 19, 2026, and told customers to immediately rotate API keys, tokens, database credentials and signing credentials not marked as “sensitive.” Hackers claimed on BreachForums that they were selling access keys, source code and databases for $2 million. Orca promptly rotated all deployment credentials, and as of April 24, there was no evidence that its on-chain protocol or user funds had been compromised.

All Coverage

4 original reports

The Backstory

The history behind this event

No historical echoes for this signal

Mark Radar|MARK RADAR