Security Incidents

Learn from past DeFi exploits and hacks. Understanding how attacks happen is essential for building secure protocols.

$3.8B+

Lost in 2022

$1.7B+

Lost in 2023

300+

Major Incidents

~30%

Funds Recovered

2024-03-13

$11.6M

Prisma Finance

Flash Loan AttackEthereum

Attacker exploited a vulnerability in the liquidation mechanism using a flash loan to manipulate collateral prices.

Funds Partially Recovered

2024-02-29

$6.4M

Seneca Protocol

Arbitrary Call BugEthereum

Vulnerability in the perform() function allowed attacker to make arbitrary external calls, draining user funds.

Funds Recovered

2024-01-30

$6.5M

Abracadabra

Oracle ManipulationEthereum

Price oracle was manipulated to undercollateralize positions, leading to bad debt in the system.

Funds Lost

2023-11-22

$48M

KyberSwap

Price ManipulationMultiple

Complex attack involving precision loss in tick math calculations, exploited across multiple chains.

Funds Partially Recovered

2023-10-11

$3M

Stars Arena

ReentrancyAvalanche

Classic reentrancy vulnerability in the sell function allowed attacker to drain contract funds.

Funds Recovered

2023-09-12

$2.1M

Balancer

Rate Provider BugEthereum

Vulnerability in boosted pool rate providers led to incorrect price calculations.

Funds Lost

2023-07-30

$70M

Curve Finance

Compiler BugEthereum

Reentrancy guard bypassed due to Vyper compiler vulnerability affecting pools with native ETH.

Funds Partially Recovered

2023-03-13

$197M

Euler Finance

Donation AttackEthereum

Attacker manipulated health factor calculations through donation mechanism.

Funds Recovered

2022-10-11

$114M

Mango Markets

Oracle ManipulationSolana

MNGO token price manipulated to take massive leveraged positions and drain treasury.

Attacker Charged

2022-04-17

$182M

Beanstalk

Flash Loan GovernanceEthereum

Flash loan used to gain governance tokens and pass malicious proposal in single transaction.

Funds Lost