COINPURO - Crypto Currency Latest News logo COINPURO - Crypto Currency Latest News logo
Cryptopolitan 2026-04-30 11:56:42

Virtuals Protocol denies exposure as Wasabi Protocol loses $5.5M in exploit

Wasabi Protocol is the latest victim of a hacking exploit, in a wave of accelerated exploits in April. On-chain investigators estimated up to $5.5M in losses as of reporting time. Wasabi Protocol is a DeFi platform for trading and lending, but with a dedicated venue for long-tail assets, including NFT and meme tokens. The protocol runs on multiple chains, leading to its exposure to the current hack. Wasabi Protocol did not explain the nature of the hack in the initial moments after the losses were discovered. The project called for users to stop using any Wasabi smart contracts . Just ahead of the hack, Wasabi Protocol held $8.52M in total value locked. Even this relatively low value did not prevent the app from being targeted by hackers. The attack follows the recent exploit of Aftermath Finance in a series of losses that have not spared minor DeFi protocols. PeckShield reported that Wasabi Protocol had been exploited on multiple chains, including Ethereum, Base, Berachain, and Blast. According to DeFi analyst @DefiIgnas, the recent hacks share a common pattern, targeting older or more obscure protocols. He stated the targets were probably selected using AI, and any vault with over $100K was a target. Wasabi Protocol attacked after expanding DEX activity The recent attack arrived just as Wasabi Protocol increased its DEX trading activity. The project’s native DEX started with higher trading volumes in March, based on DeFi Llama data . However, the recent exploit was not directly related to the increased DEX trading. On-chain researcher ZachXBT noted that the protocol was not sufficiently decentralized, and a single wallet controlled multiple critical functions. According to on-chain researchers, the most probable cause of the losses is a leaked private key. The compromised wallet apparently controlled upgradeable, permissionless vaults. Those vaults offer immediate yield with no multisig approval, timelock, or voting process. According to Blockaid , the attacker gained access to a private key, upgraded to admin access for several vaults, and drained all liquid tokens. The attacker then drained vaults on Ethereum and Base, as well as LongPool liquidity. According to researchers, the smart contracts of Wasabi Protocol were not the issue, but the attack was performed through private key theft, either physically or through malware. All Wasabi LP-share tokens are compromised The losses of Wasabi come from the drained vaults, which have left liquidity providers with compromised value. All tokens minted from the compromised vaults have practically zero value. For end users, wallets may still display book value, but they cannot be redeemed. Users with active approvals to receive tokens must revoke them, and other customers must flag the tokens as compromised where possible. The attacker managed to drain multiple vaults, containing USDC, WETH, REKT, and PEPE on Ethereum . On Base , the exploit affected WETH, USDC, and cbBTC. From the Blast vaults, the attacker took WETH and USDB. On Berachain, the vaults were drained for Wrapped BERA (WBERA) and HONEY. MOG, NEIRO and ZYN were also affected, but $1.9M of the losses were in WETH tokens. The funds were then bridged to Ethereum, consolidated, and some were sent for mixing on Tornado Cash. Virtuals Protocol , which often launches new AI agent tokens through Wasabi, announced it suffered no losses but preemptively stopped all interactions with vault smart contracts. The smartest crypto minds already read our newsletter. Want in? Join them .

最阅读新闻

coinpuro_earn
阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约