Marginfi Protocol Safeguards $160 Million from Collateral Management Vulnerability
A critical flaw in Marginfi's collateral management function could have enabled unauthorized flash loans, exposing $160 million to manipulation.
Zksync Airdrop Contract Admin Key Leak Leads to Unauthorized Minting
A compromised administrative key in a zkSync airdrop contract enabled unauthorized token minting, highlighting critical access control vulnerabilities.
Kinto Ethereum L2 Suffers Smart Contract Vulnerability, $1.55 Million Lost
A smart contract flaw allowed attackers to mint fake tokens, leading to a $1.55 million drain and platform insolvency.
OWASP Identifies Top 10 Smart Contract Vulnerabilities for 2025
The OWASP Smart Contract Top 10 for 2025 highlights persistent architectural flaws, posing systemic risk to decentralized finance protocols and user assets.
Bedrock uniBTC Minting Logic Flaw Drains $2 Million
A critical minting logic vulnerability in Bedrock's uniBTC token allowed attackers to exploit a price discrepancy, leading to a $2 million loss.
UXLINK Multi-Signature Wallet Compromised via Delegate Call Vulnerability
A critical delegate call flaw in UXLINK's multi-sig wallet granted unauthorized administrative control, enabling significant asset exfiltration.
Balancer V2 Stable Pools Drained via Invariant Manipulation Exploit
A multi-chain invariant manipulation attack on Balancer V2 pools compromised BPT logic, resulting in a $128M loss and systemic contagion risk.
Lending Protocol Drained via Oracle Price Feed Manipulation on Base
Critical oracle failure on Base allowed asset mispricing, enabling immediate, under-collateralized fund extraction from the lending pool.
Moonwell Protocol Drained via Collateral Oracle Price Manipulation Flaw
Critical oracle mispricing of wrstETH collateral allowed an attacker to over-borrow, resulting in a $1.1M liquidity drain.
