CYBER THREATS TO TOKENIZED ASSETS IN INTERNATIONAL FINANCE: “REACTIVATION”

Authors

  • Serhii Tsyhanov
  • Bohdan Khyzhnyak

DOI:

https://doi.org/10.17721/apmv.2026.167.1.178-185

Abstract

The rapid development of blockchain technologies has led to the emergence of tokenized assets, which is already claiming the title of one of the key innovations in international finance. Although tokenization is a promising direction for the development of the international financial system, it also introduces new cyber risks associated with vulnerabilities in smart contracts. This article examines one of the most influential risks, “reactivation” attacks, and assesses their impact in the context of international financial relations. The study highlights the economic consequences of smart contract vulnerabilities, including financial losses, reduced investor confidence, and systemic risks for global financial markets. Based on the results of the analysis, a list of recommendations has been formed to minimize the likelihood of occurrence and spreading of understanding of the consequences of the “reactivation” vulnerability. The conclusions emphasize the need to improve security standards and spread understanding of the threat to ensure the sustainable development of tokenized financial instruments.

References:

Bank for International Settlements, & Committee on Payments and Market Infrastructures. (2024, October). Tokenisation in the context of money and other assets: Concepts and implications for central banks. https://www.bis.org/cpmi/publ/d225.pdf

Britannica, T. Editors, & Hemmendinger, D. (2026, February 13). Control structures. In Computer programming language. Encyclopaedia Britannica. https://www.britannica.com/technology/computer-programming-language/Control-structures

CertiK. (2022, April 30). Fei Protocol incident analysis. Medium. https://certik.medium.com/fei-protocol-incident-analysis-8527440696cc

Chainlink. (2026, February 11). What is a liquidity pool? DeFi markets explained. https://chain.link/article/what-is-liquidity-pool

Ethereum Foundation. (2016, July 20). Hard fork completed. Ethereum Foundation Blog. https://blog.ethereum.org/2016/07/20/hard-fork-completed

Ethereum.org. (n.d.). Smart contract security. https://ethereum.org/developers/docs/smart-contracts/security/#reentrancy

LlamaRisk. (2023, August 2). Curve pool reentrancy exploit postmortem July 30th, 2023. HackMD. https://hackmd.io/@LlamaRisk/BJzSKHNjn

Nervos Network. (2025, November 7). What is a reentrancy attack and how does it work? https://www.nervos.org/knowledge-base/what_is_a_reentrancy_attack_(explainCKBot)

OpenZeppelin. (2020, October 6). The state of smart contract upgrades. https://www.openzeppelin.com/news/the-state-of-smart-contract-upgrades

REKT. (2022, May 1). Fei Rari - REKT 2. https://rekt.news/fei-rari-rekt

Siegel, D. (2023, January 13). Understanding the DAO attack. CoinDesk. https://www.coindesk.com/learn/understanding-the-dao-attack

Solidity Authors. (n.d.). Security considerations. Solidity documentation. https://docs.soliditylang.org/en/latest/security-considerations.html#re-entrancy

Vyperlang Team. (2023, August 5). Vyper nonreentrancy lock vulnerability technical post-mortem report. HackMD. https://hackmd.io/@vyperlang/HJUgNMhs2

World Economic Forum. (2025, May 23). Asset tokenization in financial markets: The next generation of value exchange [Insight report]. https://reports.weforum.org/docs/WEF_Asset_Tokenization_in_Financial_Markets_2025.pdf

XStocks. (n.d.). Products. https://xstocks.fi/products

 

Received: 02.04.26 / Revised: 17.04.26 / Accepted: 04.05.26 / Published: 30.06.26

Downloads

Published

2026-06-30