EasyFi Hack
What happened
EasyFi reported a 19 April 2021 attack in which an attacker remotely accessed the founder’s machine and obtained mnemonic and admin keys. Protocol pools on Ethereum and Polygon were drained; BSC pools were reported unaffected.
The operator’s post-mortem attributes the incident to remote compromise of a founder device and exposed mnemonic/admin keys. It does not establish the malware or remote-access technique used.
Case & protocol details
How it happened
- The attacker compromised the founder’s machine and accessed wallet and admin key material.
- Funds were removed from USDT, USDC, MATIC, ETH and DAI pools, and EASY token contracts were affected.
- EasyFi investigated, worked with forensics partners and proposed a token migration and recovery process.
Evidence & learning
Attack pattern
Compare incidents →Sources and on-chain records
- report Post-mortem medium.com
- report EasyFi Security Incident medium.com
- report Post-mortem rekt.news
- analysis EasyFi Hacked for $81 Million dn.institute
Build your security review skills
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.