Latest DeFi News

DIP Token Bug Drains $111K From PancakeSwap Pool
Security researcher Defi Nerd said that the DIP token contained a flaw in its transfer mechanism that caused certain transactions…

Drift Protocol Attack Claims Another Victim: Pyra to Terminate All Card Services
The Solana-based company confirmed that it will wind down the service after months of attempts to recover as it helps…

Hyperbridge Didn’t Patch Its $2.5M Hack—It Rebuilt Everything
Instead of patching the issue, Hyperbridge rebuilt the entire system with stronger security and no centralized control.

ZachXBT Links $120M USDT Flow to Monero (XMR) Surge; Tether Freezes $72M on Tron
A high-speed laundering pipeline on the Tron network triggered a 27% Monero price spike before Tether deployed a 30-second blacklisting…

Vitalik’s Options-Based DeFi Is Already Being Built — He Wants It Verified First
Buterin has urged that the designs be formally verified before they reach mainnet, flagging oracle robustness as the next problem…

Raydium Exploit Update: GoPlus Reveals How Hacker Stole $1.34M
A logic vulnerability in deprecated AMM V3 contracts allowed an attacker to bypass verification checks and route stolen liquidity through…

Stani Reveals How Aave V4 Plans to Unlock Unlimited Lending
Aave V4 introduces credit lines, segregated liquidity hubs, and modular lending markets designed to balance capital efficiency with risk controls.

AI-Assisted Hackers Drain $36.7M From Hidden Smart Contracts in 2026
Chainalysis warns that AI-powered tools are helping attackers reverse-engineer hidden smart contract code, exposing vulnerabilities across the crypto ecosystem.

The DeFi Security Blind Spot That Cost Protocols $36.7M: Chainalysis
Four major exploits targeted contracts without verified source code, highlighting how AI-assisted analysis is changing DeFi attack strategies.

Aave’s Next Upgrade Isn’t About Features – It’s About Risk
If approved, the framework would become the baseline risk standard governing all assets across Aave’s ecosystem.

Why Paradigm and a16z Just Poured $175M Into Morpho
Paradigm, a16z, and Ribbit Capital co-led funding as Morpho targets banks, fintechs, and asset managers with open credit infrastructure.

Humanity Protocol Reveals Employee Laptop Breach Behind $36M Exploit
The project says attackers compromised an employee laptop and seized bridge administrator controls across Ethereum and BSC Chain.

AFI Protocol Shares Incident Update After $480K Exploit, Begins Recovery
The protocol says the attack targeted the protocol’s yield-bearing stablecoin product prompting them to pause the affected vault, launch an…

ZachXBT Calls $32M Humanity Protocol Hack ‘Possibly Staged,’ $H Crashes 86%
Humanity Protocol confirmed a private key compromise after attackers allegedly drained $10 million in H tokens, minted 100 million additional…

Ethereum DeFi Protocol Ambient Finance Suffers $110K Drain
A validation compromise on Ambient Finance allowed an attacker to route 83.72 ETH out of the protocol’s monolithic smart contract…

edgeX Completes First Goodwill Payment Distribution After EDGE Flash Crash
The decentralized derivatives platform has initiated its first round of distributions for users affected by the June 2 EDGE token…

Yuga Labs Rescues 68 Blue-Chip NFTs From Flooring Protocol Exploit
A major vulnerability in Flooring Protocol exposed blue-chip NFT collections to catastrophic drainage, prompting Yuga Labs to execute a rapid…

Syscoin Halts Bridge After Exploit Mints 5 Billion SYS Tokens
The project paused bridge operations after a validation proof flaw permitted the unauthorized minting of roughly 5 billion SYS tokens…

Gnosis Pay Restores Card Services for 99% of Users After Exploit
The self-custodial card provider completed a large-scale migration after attackers exploited a vulnerability in a transaction-delay security module.

ZachXBT Questions PiggyBank’s Risk Management Over $LAB Bet
PiggyBank’s $100,000 $LAB position grew into an illiquid holding, triggering losses for users and renewed scrutiny of the token.

BY Token Hit by BSC Exploit, $88.4K Vanishes in Suspect Drain
Security firm TenArmorAlert disclosed the incident after detecting suspicious activity linked to the token's smart contract and many transactions that…

Ethereum MEV Bot Error Sends $300K Windfall to Random User
Security firm Defimon Alerts reported an unusual 167 ETH transfer as an MEV bot bug surfaced, prompting operator admission and…

ZachXBT Traces RAIN Team’s Wallets to Networks Behind DOP and TOMI
The on-chain investigator's expanded warning includes specific wallet addresses, timestamps, and alleged shared CEX deposit infrastructure connecting RAIN Protocol's deployer…

Zcash Patches Critical Counterfeit Exploit as ZEC Drops 37%
Security researcher Taylor Hornby first discovered the issue on May 29, prompting developers to launch an emergency response and roll…

32.3 ETH Left Unclaimed From Euler’s $197M DeFi Hack
A dormant wallet was notified through an onchain message after assets tied to Euler’s 2023 post-exploit redistribution remained unclaimed.

IronWorm Malware Targets Web3 Developers via Compromised npm Packages
Discovered by JFrog, the self-propagating infostealer deploys eBPF rootkits, steals Exodus wallets, and uses OIDC tokens to automatically infect software…

ATM Token Exploit Drains $243K Through Hidden Swap Loophole
A flaw in ATM’s transfer function let an attacker repeatedly trigger token swaps and drain about $243K from the protocol.

Aave Labs Meets SEC Crypto Task Force Over Tokenized Vaults
The meeting focused on how tokenized vault standards and Aave V4’s architecture may fit within U.S. crypto asset regulation.

Zcash Block Halt Rumor Debunked After Faulty Node Confusion
The confusion emerged after several block explorers appeared to show no new blocks, raising questions about the network's status.

This 2-Cent Crypto Transaction Ended in a Hyperliquid Ban
A four-year-old wallet with $750,000 in trading history was locked out of Hyperliquid because someone sent it a single unsolicited…