The post This DeFi Protocol Was Hacked For Nearly $2 million appeared on BitcoinEthereumNews.com. DeFi project Abracadabra has suffered a fresh exploit that drained about $1.7 million from its platform. Blockchain security firm Go Security flagged the breach on October 4 and confirmed that attackers had already laundered about 51 ETH through Tornado Cash. At the time of reporting, the attacker’s wallet (identified as 0x1AaaDe) still held around 344 ETH, worth approximately $1.55 million. Sponsored Sponsored How Abracadabra Was Exploited for the Third Time Security researcher Weilin Li verified the exploit and explained that the attacker manipulated Abracadabra’s smart contract variables to bypass a solvency check. This allowed them to borrow assets beyond the intended limit, prompting Abracadabra’s team to pause all contracts to prevent further losses. Another blockchain audit firm, Phalcon, traced the root cause to a faulty logic sequence in the platform’s cook function. This is a mechanism that lets users execute several predefined actions in one transaction. .@MIM_Spell was attacked hours ago, resulting in a loss of ~$1.7M. The root cause stems from the flawed implementation logic of the cook function, which allows users to execute multiple predefined operations in a single transaction. Specifically, the actions share a common… pic.twitter.com/4tQzkRbwcT — BlockSec Phalcon (@Phalcon_xyz) October 4, 2025 According to the firm, the attacker carried out two operations that overrode key safeguards. Sponsored Sponsored The first, known as action 5, initiated a borrowing process that was supposed to pass solvency checks. The second, called action 0, acted as an empty update function that rewrote the check flag and skipped the final validation step. The attacker drained more than 1.79 million MIM tokens by repeating this pattern across six different addresses. As of press time, Abracadabra has yet to comment publicly on the incident. Notably, the project’s official X account has remained silent since early September. However, Go Security reported that the Abracadabra… The post This DeFi Protocol Was Hacked For Nearly $2 million appeared on BitcoinEthereumNews.com. DeFi project Abracadabra has suffered a fresh exploit that drained about $1.7 million from its platform. Blockchain security firm Go Security flagged the breach on October 4 and confirmed that attackers had already laundered about 51 ETH through Tornado Cash. At the time of reporting, the attacker’s wallet (identified as 0x1AaaDe) still held around 344 ETH, worth approximately $1.55 million. Sponsored Sponsored How Abracadabra Was Exploited for the Third Time Security researcher Weilin Li verified the exploit and explained that the attacker manipulated Abracadabra’s smart contract variables to bypass a solvency check. This allowed them to borrow assets beyond the intended limit, prompting Abracadabra’s team to pause all contracts to prevent further losses. Another blockchain audit firm, Phalcon, traced the root cause to a faulty logic sequence in the platform’s cook function. This is a mechanism that lets users execute several predefined actions in one transaction. .@MIM_Spell was attacked hours ago, resulting in a loss of ~$1.7M. The root cause stems from the flawed implementation logic of the cook function, which allows users to execute multiple predefined operations in a single transaction. Specifically, the actions share a common… pic.twitter.com/4tQzkRbwcT — BlockSec Phalcon (@Phalcon_xyz) October 4, 2025 According to the firm, the attacker carried out two operations that overrode key safeguards. Sponsored Sponsored The first, known as action 5, initiated a borrowing process that was supposed to pass solvency checks. The second, called action 0, acted as an empty update function that rewrote the check flag and skipped the final validation step. The attacker drained more than 1.79 million MIM tokens by repeating this pattern across six different addresses. As of press time, Abracadabra has yet to comment publicly on the incident. Notably, the project’s official X account has remained silent since early September. However, Go Security reported that the Abracadabra…

This DeFi Protocol Was Hacked For Nearly $2 million

DeFi project Abracadabra has suffered a fresh exploit that drained about $1.7 million from its platform.

Blockchain security firm Go Security flagged the breach on October 4 and confirmed that attackers had already laundered about 51 ETH through Tornado Cash. At the time of reporting, the attacker’s wallet (identified as 0x1AaaDe) still held around 344 ETH, worth approximately $1.55 million.

Sponsored

Sponsored

How Abracadabra Was Exploited for the Third Time

Security researcher Weilin Li verified the exploit and explained that the attacker manipulated Abracadabra’s smart contract variables to bypass a solvency check.

This allowed them to borrow assets beyond the intended limit, prompting Abracadabra’s team to pause all contracts to prevent further losses.

Another blockchain audit firm, Phalcon, traced the root cause to a faulty logic sequence in the platform’s cook function. This is a mechanism that lets users execute several predefined actions in one transaction.

According to the firm, the attacker carried out two operations that overrode key safeguards.

Sponsored

Sponsored

The first, known as action 5, initiated a borrowing process that was supposed to pass solvency checks. The second, called action 0, acted as an empty update function that rewrote the check flag and skipped the final validation step.

The attacker drained more than 1.79 million MIM tokens by repeating this pattern across six different addresses.

As of press time, Abracadabra has yet to comment publicly on the incident. Notably, the project’s official X account has remained silent since early September.

However, Go Security reported that the Abracadabra team confirmed on Discord that it would use DAO reserve funds to repurchase the affected MIM supply.

Meanwhile, if verified, the latest incident would mark the third exploit against Abracadabra in under two years.

In January 2024, the platform lost $6.49 million in a hack that briefly depegged the MIM stablecoin from the US dollar. A second exploit in March 2025 drained another $13 million from its cauldron contracts, after which the team offered the hacker a 20% bounty.

The recurrence of such breaches raises renewed questions about the security of the DeFi protocol and the sustainability of its cross-chain lending architectures.

Source: https://beincrypto.com/defi-platform-abracadabra-hit-by-major-exploit/

Market Opportunity
DeFi Logo
DeFi Price(DEFI)
$0.000449
$0.000449$0.000449
+1.58%
USD
DeFi (DEFI) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

XRP Hits ‘Extreme Fear’ Levels - Why This Is Secretly Bullish

XRP Hits ‘Extreme Fear’ Levels - Why This Is Secretly Bullish

Ripple’s native token XRP is still battling out with the bears at the $1.90 territory on Friday afternoon. The support-turned-resistance at $1.90 is particularly
Share
Coinstats2026/01/24 03:25
Tokyo’s Metaplanet Launches Miami Subsidiary to Amplify Bitcoin Income

Tokyo’s Metaplanet Launches Miami Subsidiary to Amplify Bitcoin Income

Metaplanet Inc., the Japanese public company known for its bitcoin treasury, is launching a Miami subsidiary to run a dedicated derivatives and income strategy aimed at turning holdings into steady, U.S.-based cash flow. Japanese Bitcoin Treasury Player Metaplanet Opens Miami Outpost The new entity, Metaplanet Income Corp., sits under Metaplanet Holdings, Inc. and is based […]
Share
Coinstats2025/09/18 00:32
The GENIUS Act Is Already Law. Banks Shouldn’t Try to Rewrite It Now

The GENIUS Act Is Already Law. Banks Shouldn’t Try to Rewrite It Now

The post The GENIUS Act Is Already Law. Banks Shouldn’t Try to Rewrite It Now appeared on BitcoinEthereumNews.com. Healthy competition drives innovation and better products for consumers; it is at the center of American economic leadership. Unfortunately, now that the bipartisan GENIUS Act has been signed into law, major legacy financial institutions seem to be having second thoughts about the innovations that stablecoins can bring to financial markets. Bank lobbying groups and public affairs teams have been peppering Congress with complaints about the law, urging members to reopen debate and introduce changes to the legislation that will ensure the stablecoin market doesn’t grow too quickly, protecting banks’ profits and stifling consumer choice. This reactionary response is both overblown and unnecessary. What legacy financial firms should do instead is embrace competition and offer exciting new products and services that consumers want, not try to kneecap emerging players through anti-innovation rules and regulations. The GENIUS Act was carefully designed with a thorough bipartisan process to strengthen consumer safeguards, ensure regulatory oversight, and preserve financial stability. Efforts to roll back its provisions are less about protecting families and more about protecting entrenched banking interests from the competition that helps ensure the U.S. banking system stays the strongest and most innovative in the world. Critics warn that allowing stablecoins to provide rewards could lead to massive deposit outflows from community banks, with figures as high as $6.6 trillion cited. But closer examination shows this fear is unfounded. A July 2025 analysis by consulting firm Charles River Associates found no statistically significant relationship between stablecoin adoption and community bank deposit outflows. In fact, the overwhelming majority of stablecoin reserves remain in the traditional financial system — either in commercial bank accounts or in short-term Treasuries — where they continue to support liquidity and credit in the broader U.S. economy. The dire estimates rely on unrealistic assumptions that every dollar of stablecoin issuance permanently…
Share
BitcoinEthereumNews2025/09/18 09:39