Aurum update graphic with a blue shield and magnifying glass over a digital world map, with the text The Facts, The Questions, The Truth Ahead.

Aurum Update: What We Know, What We Don’t, and Why I’m Concerned

Updated August 19, 2026

A lot has happened since my last Aurum update on July 27.

Unfortunately, a lot has also not happened.

We still do not have the kind of concrete, independently verifiable answers I would expect when people’s money is involved.

So I want to do something very simple with this post: lay out what has happened, separate what Aurum has publicly claimed from what has actually been verified, explain why I am increasingly concerned, and tell you exactly where I stand today.

I am not going to tell you Aurum has definitely been a scam or a rug pull.

I am also not going to tell you everything is fine simply because the company says a recovery is underway.

At this point, I do not believe either conclusion is justified by the evidence available to us.

What I do believe is that the situation has become serious enough that everyone involved deserves direct answers, documentation, and transparency.

Where Things Stood Before the Problems Escalated

In late July, Aurum was in the middle of moving its platform to a new Web3-based infrastructure.

Aurum publicly announced that the transition had been successfully completed and said new profit withdrawals, commission withdrawals, deposits, and WalletConnect transfers were being processed through the new infrastructure. The company also said older requests submitted during the transition were being processed in batches.

Then the story began changing quickly.

Aurum announced technical maintenance.

It later said the migration had been more complicated than expected, requiring a full backend restart and additional system optimization. The company said synchronization was underway and expected most functionality to return shortly.

A subsequent update said synchronization had reached its final stage, although some services could remain temporarily unavailable.

Then came the announcement that changed everything.

Aurum Says It Was Hit by a Cyberattack

In its official Telegram channel, Aurum said that during the final stage of the Web3 transition, the platform became the target of what it described as a “sophisticated and coordinated cyberattack.”

According to Aurum, attackers gained unauthorized access to internal company resources and the incident affected company funds, user funds held by the company, the neyro.network domain, and portions of Aurum’s databases and infrastructure.

Aurum said it had isolated affected systems and brought in cybersecurity, engineering, legal, and security specialists to investigate what happened.

That is a very serious statement.

But there is an important distinction I want everyone reading this to understand:

This is Aurum’s account of what happened.

As of this update, I have not seen a completed independent forensic report publicly establishing exactly how the attack happened, who was responsible, how much money was affected, where the funds went, or what portion of customer balances can currently be recovered.

Aurum itself says that a comprehensive audit is still being finalized.

That does not mean the cyberattack did not happen.

It means we should distinguish between a company statement and independent verification.

The Emergency Calls and Recovery Plan

Aurum did begin holding community calls after the incident.

In an official recap of its emergency call, the company said the majority of assets remained secure, that Aurum was continuing to operate, and that technical, financial, legal, and cybersecurity teams were conducting a full assessment.

Aurum also said it was developing a recovery and compensation framework while restoring the platform in stages.

That was followed by additional recovery meetings and a three-phase restart plan.

According to Aurum, the plan was:

  1. Limited partner-compensation withdrawals under temporary daily limits.
  2. Restoration of Quantum Alpha and the related partner compensation structure.
  3. Progressive restoration of centralized products such as EX-AI Bot, EX-AI PRO Bot, Zeus Bot, and RWA GOLD after technical and security audits were completed.

The company later released a three-month Aurum and Neyro roadmap focused on restoring operations, strengthening infrastructure, and continuing development of the Neyro ecosystem.

So it would be inaccurate to say Aurum has gone completely silent.

They have made announcements.

They have held calls.

They have released a recovery plan.

But for me, communication is not the same thing as proof.

And that distinction becomes much more important when we get to the latest developments.

The Latest Official Audit Update

The screenshot I received matches Aurum’s current public Telegram update.

Aurum now says that several company accounts on centralized exchanges were temporarily frozen and that it is completing procedures to restore access to those accounts.

The company also says the audit of its decentralized products is nearing completion and that technical and security reviews are in their final stages.

Finally, Aurum says a comprehensive audit report is being finalized and will be published when the review is complete.

That may ultimately provide some of the answers everyone has been waiting for.

But as of August 19, we are still waiting for that report.

And until it exists, there are major questions that remain unanswered publicly.

Shane Morand Stepping Down Changes the Situation

For me, one of the most significant developments came on August 17.

Shane Morand, who had been serving as Aurum’s Chief Network Development Officer on the public-facing side, issued a letter announcing that he was stepping down effective immediately.

This matters because Shane was not an outside critic looking in.

He was one of the most visible people representing Aurum to the network.

As recently as early August, Aurum was publicly promoting strategic update calls featuring Shane alongside company leadership.

In his resignation letter, Shane says he had repeatedly asked representatives of the ownership group for what he described as basic and foundational answers — and received silence.

He writes that his personal family funds had been inaccessible since July 20 and that he could no longer ask people to commit capital and trust when ownership would not answer basic questions.

Most importantly, Shane does not claim to know exactly what happened.

Instead, he lays out three possibilities: an outside hack, an internal compromise, or an operation that was orchestrated from the beginning.

Then he states plainly that he cannot tell people which possibility is correct.

He says he hopes the outside-hack explanation is the truth and that he would share substantive clarity if he receives it.

That is an extraordinarily important distinction.

Shane is not publicly accusing Aurum of fraud as a proven fact.

But a senior public-facing executive saying he cannot obtain basic answers from ownership, cannot access his own family’s funds, and can no longer put his reputation behind the organization is a major red flag.

I do not think it should be minimized.

Why I Am More Concerned Today Than I Was Three Weeks Ago

When these problems first started, there were several plausible explanations.

Large technology migrations can fail.

Crypto platforms do get hacked.

Centralized exchanges can freeze accounts during investigations.

Security audits can take time.

None of those things, by themselves, prove fraud.

But the longer this continues without independently verifiable answers, the more uncomfortable the situation becomes.

We have gone from a Web3 transition that was described as successfully completed, to technical problems, to a backend restart, to a reported cyberattack affecting company and user funds, to a phased recovery plan, to frozen company exchange accounts, to a still-unpublished audit report.

Now we also have one of Aurum’s most visible senior leaders resigning because, according to his own letter, he could not get basic answers from ownership.

That does not prove a rug pull.

But anyone pretending that those facts are not concerning is ignoring reality.

The Questions I Still Need Answered

Before I would feel comfortable reaching any strong conclusion in Aurum’s favor, I want to see much more than another Zoom call or Telegram post.

I want to know who performed the security audit and whether that auditor is genuinely independent.

I want to see the completed forensic report.

I want a clear accounting of what was compromised, how much was affected, and what assets remain available.

I want to understand exactly why centralized-exchange accounts were frozen and whether those freezes were initiated by the exchanges, law enforcement, compliance departments, or someone else.

I want to know whether law enforcement, insurers, regulators, outside counsel, or blockchain-forensics firms are involved — and, where appropriate, whether there are case numbers or documentation that can be independently checked.

I want clear information about withdrawal obligations and a realistic timetable for making users whole.

I want an explanation of governance and ownership responsibilities.

And after Shane Morand’s letter, I especially want to know why a senior executive who had attached his reputation to this company says he could not obtain answers to basic questions from the ownership group.

Those are not unreasonable demands.

Those are the kinds of questions that should be expected when a financial platform reports that user funds were affected.

Why I Am Not Calling Aurum a Rug Pull — Yet

I know what this looks like.

I understand why people are using words like “scam” and “rug pull.”

I understand why people are angry.

And yes, there are patterns here that should make anyone familiar with failed crypto projects uncomfortable.

But I do not have evidence proving that Aurum’s ownership intentionally planned to steal user funds.

I also do not have enough independently verified evidence to confidently accept Aurum’s version of events.

That puts me somewhere in the middle — skeptical, concerned, and waiting for proof.

A legitimate company can suffer a catastrophic breach.

A legitimate company can also communicate poorly during a crisis.

And a company that ultimately turns out to be fraudulent can spend weeks producing explanations, roadmaps, calls, and promises.

The communications themselves do not tell us which situation this is.

Evidence will.

What Would Change My View

If Aurum publishes a credible, independent forensic audit showing what happened, documents the losses, explains the frozen accounts, restores access to funds, and provides a transparent recovery process that actually works, that would matter.

A lot.

If, on the other hand, deadlines keep moving, reports never materialize, withdrawals remain inaccessible, explanations continue changing, or more senior people walk away because ownership will not answer questions, that would matter too.

The next stage cannot be judged by promises.

It has to be judged by verifiable actions.

What I Recommend People Do Right Now

If you currently have money, commissions, or account balances connected to Aurum, protect your records.

  • Save screenshots of your account.
  • Save your deposit history.
  • Save transaction hashes.
  • Save withdrawal requests and their dates.
  • Save emails and support responses.
  • Save wallet addresses and any communications you receive.

Do not rely on the assumption that information available inside an online dashboard today will necessarily remain available forever.

And most importantly, do not make a financial decision because someone online tells you everything is definitely fine — or definitely lost.

Work from evidence.

Where I Stand Today

I have always tried to approach Aurum through Stop Chasing Now from an education-first position.

My responsibility is not to defend a company at all costs.

It is not to create panic either.

My responsibility is to tell you what I know, what I do not know, and when the facts have changed.

Right now, I am concerned.

Very concerned.

I think Shane Morand’s resignation deserves to be taken seriously.

I think the lack of a completed public audit after weeks of uncertainty deserves scrutiny.

And I think anyone with money involved deserves more specific information than broad statements about recovery and future development.

At the same time, I am not going to make an accusation I cannot prove.

So this is where I stand:

I do not currently know whether Aurum suffered a genuine outside attack, an internal compromise, a catastrophic operational failure, or something more deliberate.

Neither does Shane Morand, according to his own letter.

Until there is credible evidence answering that question, I am going to remain skeptical, document what happens, and avoid pretending certainty exists where it does not.

If Aurum proves the recovery is legitimate, I will acknowledge that.

If the evidence eventually points in the other direction, I will acknowledge that too.

You deserve nothing less.


Important: This post is commentary and an account of publicly available statements and documents as of August 19, 2026. It is not financial or legal advice. Aurum’s statements about the cyberattack, affected funds, audits, and recovery are claims made by the company unless otherwise noted. Readers should review original sources, preserve their own records, and make decisions based on their individual circumstances.

You May Like These Similar Posts

Leave a Reply

Your email address will not be published. Required fields are marked *