Blueberry Protocol Foundation Hack

TOTAL LOST $1.3M
Medium Other

What happened

Blueberry DeFi leverage project exploited due to a contract vulnerability, resulting in the loss of 91 $ETH or approximately 266,023 $USD.

Blueberry, a decentralized financial lending and leverage protocol, suffered an exploit on February 23, 2024.An attacker attempted to exploit the vulnerability, but was overtaken by c0ffeebabe.eth, a well-known MEV bot and whitehat operator that had previously beaten other exploits and returned funds to projects. Initially 457.7 ETH was withdrawn from the project, but 366.6 ETH was of that was able to be returned.The remaining 91 ETH, worth about $1,350,000, was lost due to validator payments.

Validator Payment Transaction:

https://etherscan.io/tx/0x6b6231c1…3d3853

Funds Return Transaction:

https://etherscan.io/tx/0xc4d45a51…386a52

c0feebabe.eth's Contract Address:

https://etherscan.io/address/0x3AA228a8…0a6809

Case & protocol details

Classification Yield Aggregator,Borrowing and Lending
Protocol Type Exploit/Other
Affected asset / contract bWETH
Official Website www.blueberry.garden/
Protocol Twitter/X @blueberryFDN

Funds Recovery

80.1%

Recovered

$1.1M

Net Loss

$266,088

Evidence & learning

Sources and on-chain records

Practice this exploit pattern safely

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.