DEUS Finance March Hack

REPORTED LOSS $3.0M
Medium Flash Loan Attack fantom

What happened

On March 15, 2022, an attacker used flash liquidity to manipulate the Fantom USDC/DEI pool price used by DEUS Finance's lending logic, causing user positions to appear insolvent and extracting roughly $3 million.

Technical Root Cause

The lending and liquidation path accepted a manipulable AMM spot price for the USDC/DEI pair as an oracle input, allowing temporary flash-loan price distortion to change collateral and liquidation outcomes.

Case & protocol details

Classification Oracle Manipulation
Protocol Type CDP
Affected asset / contract DEI
Implementation language Solidity
Official Website deus.finance/
Protocol Twitter/X @DeusDao

How it happened

  1. The attacker obtained flash liquidity and distorted the USDC/DEI pool price used by the Fantom lending system.
  2. The manipulated valuation made borrower positions appear insolvent, allowing the attacker to liquidate them.
  3. The transaction unwound the price-manipulation position and repaid the borrowed liquidity, extracting roughly $3 million.

This case covers March 15, 2022. The later April 28 DEUS exploit was a separate incident and its losses should not be added to this transaction's total.

Build your security review skills

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.