How did a single attacker exploit Fetch.ai and NuNet for $2 million in September 2026?

A single attacker linked to a specific wallet address drained approximately $2 million from Fetch.ai (FET) and NuNet (NTX) on September 20, 2026. The coordinated exploit caused the NTX token to crash by over 70%, hitting a new all-time low and raising urgent questions about cross-protocol security in the AI-crypto sector.
How did a single attacker exploit Fetch.ai and NuNet for $2 million in September 2026?

On September 20, 2026, a sophisticated attacker successfully exploited vulnerabilities in both Fetch.ai and NuNet, siphoning off roughly $2 million in digital assets. Security firm Blockaid confirmed that both breaches were executed by the same entity, as the stolen funds were traced back to a single malicious wallet. The attack was particularly devastating for NuNet, as the sudden liquidity drain caused its native token, NTX, to plummet by more than 70% to an all-time low within a single trading session.

The exploit appears to have targeted specific smart contract weaknesses or shared infrastructure utilized by these AI-focused decentralized protocols. While Fetch.ai (FET) maintains a larger market capitalization and showed more price resilience following the news, the breach highlights a critical failure in the security layers that protect interconnected DeFi ecosystems. Analysts suggest the attacker likely identified a common dependency or a bridge vulnerability that allowed for the simultaneous drainage of both protocols.

For US-based investors and regulators, this event serves as a stark reminder of the persistent risks within the 'AI-crypto' narrative that has dominated the 2026 market. The scale of the exploit and the resulting 70% crash in NTX value may invite further scrutiny from the CFTC and SEC regarding the security standards of decentralized platforms. As AI agents become more integrated into blockchain transactions, the surface area for such high-value exploits continues to expand, necessitating more robust auditing processes.

Moving forward, the crypto community should watch for official post-mortem reports from the Fetch.ai and NuNet development teams to see if a recovery plan or reimbursement for affected liquidity providers will be implemented. Additionally, blockchain forensics firms are closely monitoring the attacker's wallet for any attempts to move the $2 million through privacy mixers, which could trigger broader law enforcement involvement. Investors should remain cautious of high-volatility AI tokens until these specific vulnerabilities are patched across the ecosystem.

Editorial method

This report is based on the linked source and is labeled with its publication date, provider, category and market-impact assessment. Market interpretation is informational, not investment advice.