DeFi Pools Drained across Seven Chains Exploiting Smart Contract Access Flaw
Unauthorized internal withdrawal logic in V2 Composable Stable Pools exposed $128M in cross-chain liquidity to a critical access control bypass.
Balancer V2 Composable Pools Drained Exploiting Faulty Smart Contract Access
A critical access control flaw in the V2 `manageUserBalance` function allowed unauthorized internal withdrawals, compromising cross-chain liquidity.
Hedgey Finance Token Locker Drained via Unrevoked Smart Contract Approval
A critical business logic flaw failed to revoke token approvals, allowing unauthorized `transferFrom` calls to drain $44.7 million in locked assets.
Base User Funds Drained Exploiting Uniswap V3 Callback Access Flaw
Unverified contracts weaponized a critical `UniswapV3SwapCallback` access control lapse, enabling unauthorized WETH approval draining.
Abracadabra Lending Protocol Drained Exploiting Deprecated Smart Contract Logic
A critical logic error in the cook function of deprecated cauldrons permitted unauthorized debt minting, bypassing core solvency checks.
Balancer V2 Pools Drained via Faulty Smart Contract Access Control Logic
A critical access control flaw in Balancer V2’s `manageUserBalance` function permitted unauthorized internal withdrawals, risking $128M in user capital.
Balancer V2 Composable Pools Drained by Faulty Smart Contract Access Control
A precision error in Balancer's V2 pool logic enabled unauthorized internal withdrawals, compromising $128M and exposing systemic DeFi composability risk.
Yield Platform Typus Finance Drained by Oracle Price Manipulation Flaw
An oracle manipulation vulnerability in a TLP contract allowed the attacker to distort asset price feeds and drain $3.4 million.
Balancer V2 Stable Pools Drained Exploiting Faulty Access Control Logic
Faulty access control in the core vault's manageUserBalance function allowed unauthorized internal withdrawal, compromising over $128 million in multi-chain liquidity.
