Klever responded immediately upon receiving reports of suspicious activity from the KleverPulse monitoring team. Through rapid coordination between developers, validators, and community contributors, a mitigation was developed and deployed to mainnet while the root cause investigation continues.
See the preliminary incident report below.
Preliminary Security Incident Report
Klever Blockchain โ NFT Marketplace Exploit
Date: June 5, 2026
Status: Under Active Investigation
Summary
Klever was alerted by the KleverPulse monitoring team (
kpulse.tech) to suspicious on-chain activity consistent with wash trading. Upon internal investigation, a critical exploitation flaw was identified in the NFT Marketplace kApp.
Attack Vector
The attacker self-issued and self-inflated an NFT collection, exploiting a flaw in the NFT Marketplace kApp to artificially generate KLV. The fabricated KLV was subsequently liquidated via the DEX into wrapped assets (USDC, USDT, WBTC, WETH) and exited through the ETHโKLV bridge.
Immediate Response
A partial fix was developed and deployed to mainnet while root cause analysis remains ongoing. The fix was made possible in part through community collaboration and rapid coordination.
Current Status
โข Exploit vector: partially mitigated
โข Root cause analysis: in progress
โข Mainnet: updated with partial fix
โข Bridge and DEX activity: under monitoring
Next Steps
A full post-mortem will be published once the root cause is confirmed. Further patches may follow. All stakeholders will be kept informed as the investigation progresses.
This is a preliminary report. Information is subject to revision as new findings emerge.