Triple-A said it identified unauthorised access on July 25 to wallets containing company treasury assets. It placed some services in maintenance for about three hours and said transactions and settlements later returned to normal.

Three hours of maintenance after the breach

The company says it does not custody digital assets for clients and that client money was held separately in trust accounts with safeguarding institutions. That remains Triple-A's account while the investigation continues.

Triple-A's account

Detected
July 25, 2026
Affected assets
Company treasury wallets
Service interruption
About three hours

Open questions

Triple-A has not disclosed the intrusion path, a final reconciled loss or every affected chain. It says cybersecurity specialists, blockchain investigators and Singapore police are involved. Until a technical report or independent review appears, the separation of client funds and the scope of the incident remain attributed claims.

Next reporting

  • A technical incident report or root-cause summary.
  • A reconciled company loss figure.
  • Confirmation of recovery actions and control changes.

Sources

Triple-APrimary evidence · Published Jul 27, 2026Open original
The BlockReporting source · Published Jul 26, 2026Open original