Anome Hack
Incident Overview
June 10, 2025 – DeFi project Anome on Base was exploited for approximately $120K due to a flawed token valuation mechanism that allowed massive over-borrowing.
An attacker exploited Anome by purchasing a massive amount (1e20) of Bnome tokens for just 0.2 ETH, then supplying them to contract 0x7144. Due to faulty price validation or lack of checks on the token’s true value, the attacker was able to borrow Anome USD repeatedly, draining around 44 ETH (~$120K) in value. The stolen funds were quickly funneled through Tornado Cash to obfuscate the trail.
Incident Report
Protocol Information
What the Attacker Needed to Succeed
Understanding the prerequisites for this type of attack helps auditors identify protocols that are most at risk and helps developers build better defenses.
What Auditors Should Check
If you're auditing a protocol with similar architecture to Anome, these are the critical security checks that could have prevented this incident (June 2025).
- Verify all logic paths related to Other are guarded by proper access controls and input validation
- Review privileged functions (owner, admin, governance) for potential abuse vectors - centralization risks should be documented and bounded with timelocks or multi-sigs
Master these auditing techniques with hands-on labs and real exploit scenarios in the Smart Contract Hacking course.
Free TrialSources & References
Learn to Prevent the Next Anome
The Anome hack is one of many attacks that skilled auditors are trained to detect before deployment. Master real exploit patterns and defense techniques with hands-on Web3 security training.