Close Menu
    Facebook X (Twitter) Instagram
    • Privacy Policy
    • Terms Of Service
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Facebook X (Twitter) Instagram
    Fintech Fetch
    • Home
    • Crypto News
      • Bitcoin
      • Ethereum
      • Altcoins
      • Blockchain
      • DeFi
    • AI News
    • Stock News
    • Learn
      • AI for Beginners
      • AI Tips
      • Make Money with AI
    • Reviews
    • Tools
      • Best AI Tools
      • Crypto Market Cap List
      • Stock Market Overview
      • Market Heatmap
    • Contact
    Fintech Fetch
    Home»Crypto News»DeFi»StakeDAO vsdCRV Attacker Limited to $91K By Thin Liquidity
    Cointelegraph
    DeFi

    StakeDAO vsdCRV Attacker Limited to $91K By Thin Liquidity

    May 28, 20263 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email
    synthesia

    rewrite this content and keep HTML tags as is. This is content from rss feed and I don’t need their *Daily Debrief Newsletter*, their tags from bottom like this *Share this articleCategoriesTags*, Editorial Process section, phrases like *Featured image from Peakpx, chart from Tradingview.com*, SPECIAL OFFERS and similar sections – just remove such sections and save only article itself:

    An attacker minted more than 5.4 trillion vsdCRV on Arbitrum after a suspected compromise of a StakeDAO-linked deployer key, though thin liquidity limited the realized proceeds to about $91,000.

    Blockchain security firm PeckShield said Wednesday the attacker swapped part of the minted vsdCRV for 43.7 Ether (ETH), worth about $91,000, and bridged the funds to Ethereum. Onchain analyst EmberCN said the attacker swapped about 16.83 million vsdCRV, while the remaining tokens had little meaningful liquidity to exit.

    EmberCN estimated the 5.4 trillion vsdCRV at about $763 billion on paper, though the figure does not represent the attacker’s realized profit or the protocol’s confirmed loss.

    The incident highlights the gap between nominal token values and extractable value in decentralized finance exploits, where attackers can mint enormous token amounts but only cash out what available liquidity allows. In this case, the attacker’s proceeds were limited by the small size of vsdCRV liquidity pools.

    ledger

    StakeDAO said it was aware of the incident and warned its users not to interact with vsdCRV.

    Stake DAO said it was aware of the incident. Source: Stake DAO

    Incident points to a deployer-key compromise 

    Shalev Keren, chief product officer and co-founder of crypto key-management firm Sodot, told Cointelegraph that the StakeDAO incident was “structurally similar” to other deployer-key compromises seen this year, including the Wasabi incident last month, which drained about $5.5 million in crypto. 

    Keren said a single StakeDAO deployer key on Arbitrum was used to repoint the vsdCRV cross-chain bridge configuration to an attacker-controlled contract on Ethereum. About 25 seconds later, that contract sent a LayerZero message back to Arbitrum, causing the legitimate Arbitrum token to mint more than 5 trillion vsdCRV to the attacker.

    Related: Crypto hackers stole $17B over past 10 years: DefiLlama

    “There is no smart contract bug here and no flaw in LayerZero,” Keren said. “There is one private key, controlling one privileged configuration function, with no multi-signature and no delay between the configuration change going through and the mint clearing onchain.” 

    Keren said the broader issue for DeFi protocols in 2026 is no longer only whether contracts are audited, but whether the operational keys behind those contracts remain single points of failure. 

    Magazine: ETH bears growling, Tom Lee’s buying, XRP to ‘explode’: Market Moves

    frase
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Fintech Fetch Editorial Team
    • Website

    Related Posts

    Cointelegraph

    Token Buybacks Are Booming. Are They Good For Crypto Projects?

    September 4, 2026
    Cointelegraph

    Sui DeFi Project Full Sail Shuts Down After Oracle Incident

    September 2, 2026
    Cointelegraph

    More Markets Lending Reserve Drained for $9.3M: Blockaid

    August 31, 2026
    Cointelegraph

    Term Finance Vault Governance Exploit Drains Estimated $8.5M

    August 24, 2026
    Add A Comment

    Comments are closed.

    Join our email newsletter and get news & updates into your inbox for free.


    Privacy Policy

    Thanks! We sent confirmation message to your inbox.

    coinbase
    Latest Posts
    Supply chains detect fast, act slow: How AI agents fix it

    Supply chains detect fast, act slow: How AI agents fix it

    September 11, 2026
    The SIMPLEST Way To Make Money Online With Claude AI In 2026

    The SIMPLEST Way To Make Money Online With Claude AI In 2026

    September 11, 2026
    Liquid Hackers Call Blockstream 'Delusional, Greedy, and Arrogant,' Demand 10% Bounty

    Liquid Hackers Accuse Blockstream of Being ‘Delusional, Greedy, and Arrogant,’ Seek 10% Reward

    September 11, 2026
    Cointelegraph

    Bitcoin ETF Withdrawals Hit $167 Million as Ether and Solana ETFs Experience Recovery

    September 10, 2026
    Toncoin

    Ton Mini Apps Surpass 100 Million Monthly Active Users on Telegram

    September 10, 2026
    binance
    LEGAL INFORMATION
    • Privacy Policy
    • Terms Of Service
    • Social Media Disclaimer
    • DMCA Compliance
    • Anti-Spam Policy
    Top Insights
    Bitcoin.com News

    ZEC Falls Below $1,100 Amid Market Selloff Causing Altcoin Decline

    September 11, 2026
    Bitcoin.com News

    Bitmine Acquires 28,086 ETH as Ethereum Reserves Reach $14.8 Billion

    September 11, 2026
    notion
    Facebook X (Twitter) Instagram Pinterest
    © 2026 FintechFetch.com - All rights reserved.

    Type above and press Enter to search. Press Esc to cancel.