Decentralized Exchange Hyperliquid Exploited by Coordinated Pricing Mechanism Attack
A critical flaw in the DEX's smart contract pricing mechanism allowed a coordinated attack to manipulate the POPCAT token's collateral value, draining millions.
Balancer V2 Composable Pools Drained via BatchSwap Rounding Flaw
A critical rounding error in the `batchSwap` upscale logic allowed adversaries to exploit deferred settlement mechanisms, resulting in over $128M in multi-chain asset loss.
Lending Protocol Moonwell Drained via External Oracle Price Manipulation
Oracle malfunction on a liquid staking derivative allowed collateral to be overvalued, bypassing solvency checks for a $1.1M loss.
EIP-7702 Exploit Weaponizes Wallet Upgrade Functionality against Users
The weaponization of EIP-7702's delegation logic by Phishing-as-a-Service syndicates bypasses traditional wallet security, accelerating user-level asset drain operations.
Balancer V2 Boosted Pools Drained across Six Chains by Access Control Flaw
A critical logic error in V2's boosted pool access control allowed unauthorized withdrawal, compromising $128M and proving access control is the paramount smart contract risk.
Arcadia Finance Drained via Rebalancer Contract Input Validation Flaw
A critical smart contract logic error allowed unvalidated `swapData` input to execute unauthorized rebalance calls, resulting in $3.6M in asset theft.
Centralized Exchange Hot Wallet Compromise Drains $48 Million across Seven Chains
A critical compromise of CEX hot wallet private keys enabled a multi-chain asset drain, exposing systemic risk in centralized key management.
Centralized Exchange Operational Account Compromised via Sophisticated Server Breach
A sophisticated server breach compromised an internal operational account, exposing a critical single point of failure and draining $44.2M in assets.
Balancer V2 Drained via BatchSwap Rounding Error across Multi-Chain Pools
A precision flaw in the BatchSwap upscale function allowed invariant manipulation, compromising capital integrity across interconnected DeFi vaults.
