Gravity Bridge, a cross-chain interoperability ecosystem that connects Cosmos and Ethereum networks, has experienced a heavy exploit. The exploiter has drained a total of $5.4M from Gravity Bridge. As per the data from PeckShieldAlert, multiple suspicious transfers associated with the incident have been detected and flagged subsequently. The incident points toward the growing risks that the cross-chain infrastructure companies are facing, while attackers are exploiting them.
#PeckShieldAlert The @gravity_bridge has been drained of ~$5.4M, including $4.3M $USDC, 274 $ETH (~$553K), $434K $USDT & 14.164 $PAYG ($64K)
The hacker has laundered a portion of the stolen assets through #ChangeNow & #Binance, and is still holding 2.102K $ETH (~$4.23M). pic.twitter.com/NJSNqc0G78
— PeckShieldAlert (@PeckShieldAlert) May 30, 2026
Gravity Bridge Exploiter Converts $5.4M to $ETH via ChangeNOW
The market data discloses that the exploiter successfully exploited up to $5.4M from Gravity Bridge. In this respect, the attacker converted the stolen capital into Ethereum ($ETH) for extraction. Specifically, these funds include $USDC, $PAYG, $USDT, and $ETH. Following the conversion into $ETH, the exploiter leveraged ChangeNOW, a crypto exchange service, to launder these funds.
In addition to this, the data also shows that the incident included the exploitation of the smart access control. The attacker siphoned 4.3M $USDC, 434,000 $USDT, 274 $ETH (almost $553,000), and 14,164 $PAYG (up to $64,000). In line with the security indicators, the exploit took into account suspicious funding, suspicious receiver, and abnormal behavior, suggesting a high-risk blockchain attack.
The exploit timeline detected a malicious wallet as the main attacker address, whereas the impacted contracts included Uniswap USDC V4 and Cosmos Bridge. Based on the balance change statistics, the exploiter wallet received approximately $4.3M. Additionally, the exploit also comprised smaller related transactions in $USDC and $WETH. Keeping this in view, the exploiter may have conducted diverse transfers to enable the concealment and asset movement.
Exploit Underscores Requirement for Real-Time Threat Monitoring for Decentralized Ecosystems
According to PeckShieldAlert, the Gravity Bridge exploiter now retails almost 2,064 $ETH, with a value of $4.1M. The retention of this massive amount of $ETH could deliver opportunities to the investigators to observe and detect future movements of the drained assets. On-chain analysts and security researchers are at the moment closely looking into the wallets of the attacker to determine the occurrence of a laundering attempt. Overall, this incident underscores the requirement for real-time threat monitoring systems to secure consumer funds while also maintaining confidence in decentralized ecosystems.


