Centralized Exchange Hot Wallet Signing Flow Compromised on Solana
State-sponsored threat actors bypassed CEX operational controls, draining $35 million in Solana assets via a rapid, high-frequency withdrawal approval attack.
Yearn Finance yETH Pool Drained Exploiting Cached Storage Arithmetic Flaw
A critical failure in state transition logic allowed a minimal 16 wei deposit to mint infinite tokens, leading to a $9 million loss via arithmetic overvaluation.
Bex Protocol Drained $12.4 Million by Inherited Smart Contract Logic Flaw
An architectural vulnerability in the V2 vault logic of a forked protocol allowed for unauthorized, multi-chain asset extraction.
Cross-Layer Protocol Private Key Leak Compromises User Funds and Contract Ownership
Server-side private key storage for admin functions enabled immediate contract ownership transfer, draining 227 user wallets.
Stablecoin Bank Drained $50 Million via Private Key Compromise
Custodial private key theft resulted in $50M USDC being drained and laundered, exposing critical internal control failures.
