NewsCryptoNeopool Discloses Security Incident Involving Corporate Domain and Infrastructure Compromise

Neopool Discloses Security Incident Involving Corporate Domain and Infrastructure Compromise

Author: CryptoNewsNet·

Key Takeaways

  • Attackers seized control of Neopool's corporate domain neopool.com and its associated email service during a breach on July 29, 2026.
  • Neopool confirmed that user funds remain fully secure and asset custody was maintained throughout the incident, as corporate infrastructure is separated from on-chain asset storage.
  • The company has migrated all external communications to its official Telegram channel @neopool_support and advised treating all @neopool.com emails as untrusted.
  • Law enforcement authorities have been engaged and are assisting with the investigation into the breach.
  • Neopool strongly recommended that users transfer their full hashrate to an alternative mining pool as a precautionary measure while the incident is being resolved.
Neopool Discloses Security Incident Involving Corporate Domain and Infrastructure Compromise

Neopool, a cryptocurrency mining pool, has confirmed a significant information security incident in which threat actors seized control of its corporate domain and associated email services.

According to the company's disclosure, the attack occurred on July 29, 2026, when elements of Neopool's infrastructure were compromised. The threat actors gained access to and control over the corporate domain neopool.com and its associated @neopool.com email service, as well as critical infrastructure facilities. Domain and email takeovers of this nature are particularly concerning in the cryptocurrency sector because they can enable convincing phishing campaigns, social engineering attempts, and fraudulent communications directed at users who historically trust official channels.

Upon detecting the incident, Neopool activated its incident response procedures and launched a thorough investigation into the circumstances surrounding the breach. The company stated it is implementing measures to minimize any potential impact stemming from the compromise.

Law enforcement authorities have been engaged and are providing assistance with the investigation. Neopool said all necessary measures are being taken to identify and hold the individuals responsible for the attack accountable.

Despite the infrastructure breach, Neopool confirmed that user funds remain fully secure and that control over assets has been maintained throughout the incident. The separation between corporate infrastructure and on-chain asset custody is a critical distinction in such incidents, as funds held in mining pool wallets are not necessarily accessible through domain or email system compromises alone.

Due to the compromise of the corporate domain and email systems, Neopool is migrating all external communications to a single official Telegram channel: @neopool_support. The company urged users, partners, and media outlets to treat any messages originating from @neopool.com addresses as untrusted until recovery procedures are completed, and to rely exclusively on the official Telegram channel for communications.

As a precautionary measure while the incident remains under investigation, Neopool strongly recommended that users transfer their full hashrate to an alternative mining pool. This advisory carries operational significance for the pool, as hashrate directly determines a mining pool's share of network block rewards and overall revenue, meaning a sustained hashrate exodus could materially impact Neopool's competitive position. For miners, redirecting hashrate promptly also mitigates the risk of lost mining income during any service disruption.

Source: CryptoNewsNet