Close Menu
    Facebook X (Twitter) Instagram
    • Privacy Policy
    • Terms Of Service
    • Legal Disclaimer
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Facebook X (Twitter) Instagram
    Brief ChainBrief Chain
    • Home
    • Crypto News
      • Bitcoin
      • Ethereum
      • Altcoins
      • Blockchain
      • DeFi
    • AI News
    • Stock News
    • Learn
      • AI for Beginners
      • AI Tips
      • Make Money with AI
    • Reviews
    • Tools
      • Best AI Tools
      • Crypto Market Cap List
      • Stock Market Overview
      • Market Heatmap
    • Contact
    Brief ChainBrief Chain
    Home»Crypto News»DeFi»StakeDAO vsdCRV Attacker Limited to $91K By Thin Liquidity
    Cointelegraph
    DeFi

    StakeDAO vsdCRV Attacker Limited to $91K By Thin Liquidity

    May 28, 20262 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email
    changelly


    An attacker minted more than 5.4 trillion vsdCRV on Arbitrum after a suspected compromise of a StakeDAO-linked deployer key, though thin liquidity limited the realized proceeds to about $91,000.

    Blockchain security firm PeckShield said Wednesday the attacker swapped part of the minted vsdCRV for 43.7 Ether (ETH), worth about $91,000, and bridged the funds to Ethereum. Onchain analyst EmberCN said the attacker swapped about 16.83 million vsdCRV, while the remaining tokens had little meaningful liquidity to exit.

    EmberCN estimated the 5.4 trillion vsdCRV at about $763 billion on paper, though the figure does not represent the attacker’s realized profit or the protocol’s confirmed loss.

    The incident highlights the gap between nominal token values and extractable value in decentralized finance exploits, where attackers can mint enormous token amounts but only cash out what available liquidity allows. In this case, the attacker’s proceeds were limited by the small size of vsdCRV liquidity pools.

    changelly

    StakeDAO said it was aware of the incident and warned its users not to interact with vsdCRV.

    Stake DAO said it was aware of the incident. Source: Stake DAO

    Incident points to a deployer-key compromise 

    Shalev Keren, chief product officer and co-founder of crypto key-management firm Sodot, told Cointelegraph that the StakeDAO incident was “structurally similar” to other deployer-key compromises seen this year, including the Wasabi incident last month, which drained about $5.5 million in crypto. 

    Keren said a single StakeDAO deployer key on Arbitrum was used to repoint the vsdCRV cross-chain bridge configuration to an attacker-controlled contract on Ethereum. About 25 seconds later, that contract sent a LayerZero message back to Arbitrum, causing the legitimate Arbitrum token to mint more than 5 trillion vsdCRV to the attacker.

    Related: Crypto hackers stole $17B over past 10 years: DefiLlama

    “There is no smart contract bug here and no flaw in LayerZero,” Keren said. “There is one private key, controlling one privileged configuration function, with no multi-signature and no delay between the configuration change going through and the mint clearing onchain.” 

    Keren said the broader issue for DeFi protocols in 2026 is no longer only whether contracts are audited, but whether the operational keys behind those contracts remain single points of failure. 

    Magazine: ETH bears growling, Tom Lee’s buying, XRP to ‘explode’: Market Moves



    Source link

    livechat
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    CryptoExpert
    • Website

    Related Posts

    MiCA Architect Says EU Should Prioritize Tokenization Over DeFi Rules

    June 9, 2026

    EdgeX Blames Outsider for EDGE Token Crash as ZachXBT Alleges Insider Manipulation

    June 2, 2026

    Radiant to Wind Down After Failing to Recover From 2024 Hack

    June 2, 2026

    Kelp DAO Recovery Hopes Fade as Hacker Launders About $220 Million

    June 1, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    aistudios
    Latest Posts

    Best AI Agent Tools In 2026 (Beginner Friendly)

    June 9, 2026

    Could Dogecoin (DOGE) Be Setting Up for Its Next Big Move? Analysts Think So

    June 9, 2026

    Humanity Says Laptop Breach Led To $36M H Token Exploit

    June 9, 2026

    Ethereum price forecast as BitMine buys 126,971 ETH: has ETH bottomed?

    June 9, 2026

    TSX Today: What to Watch for in Stocks on Tuesday, June 9

    June 9, 2026
    ledger
    LEGAL INFORMATION
    • Privacy Policy
    • Terms Of Service
    • Legal Disclaimer
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Top Insights

    Checkonchain Analyst Says AI Rotation Creates Bitcoin’s Next Major Entry Point for Holders

    June 9, 2026

    MiCA Architect Says EU Should Prioritize Tokenization Over DeFi Rules

    June 9, 2026
    binance
    Facebook X (Twitter) Instagram Pinterest
    © 2026 BriefChain.com - All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.