Balancer V2 Pools Drained by Compounded Arithmetic Precision Loss
Asymmetric rounding in Composable Stable Pool math was weaponized via batched swaps, creating a multi-chain invariant drain and $128M loss.
Yearn yETH Pool Drained via Cached Storage Arithmetic Flaw
An uncleared internal storage variable enabled a minimal deposit to mint infinite tokens, exposing a critical risk in complex stableswap logic.
Legacy DeFi Pool Drained Exploiting Infinite Token Minting Flaw
A critical flaw in a custom stable-swap contract allowed an attacker to mint near-infinite yETH, bypassing core pool solvency checks.
DeFi Payment Protocol Drained by Compromised Admin Key and Staking Logic Flaw
A compromised admin key allowed a malicious actor to manipulate staking rewards, draining $3.1M and collapsing the protocol's token value.
Cross-Chain Bridge Drained by Compromised Private Key Access Control Flaw
A failure in off-chain key management allowed a threat actor to execute privileged contract functions, compromising $3.76M in cross-chain bridge assets.
UXLINK Multisig Wallet Compromised by Critical Delegate Call Vulnerability
A delegate call flaw in the multisig contract granted admin-level access, enabling unauthorized token minting and severe asset devaluation.
