MAID Hack

Reported loss $166K
Access Control

What happened

On March 13, 2025, the $MAID token suffered a private key leak, allowing an attacker to mint 0x10000000000000000000000000 MAID tokens and swap them for 89 ETH ($166K). The deployer wallet was also drained, increasing the total loss to 101 ETH ($190K). Funds were dispersed to four different addresses.

The attacker used the compromised deployer wallet to mint 0x10000000000000000000000000 MAID tokens and immediately swapped them for 89 ETH ($166K). Additionally, the deployer wallet held 12.4 ETH, which was also drained, bringing the total stolen amount to 101 ETH ($190K). The stolen funds were distributed across four different addresses for further obfuscation.

This incident highlights the critical importance of securing deployer and multisig keys, implementing timelocks or additional security layers for minting functions, and actively monitoring wallet activity to detect suspicious transactions early. There has been no official response from the $MAID team regarding fund recovery or mitigation actions.

Protocol details

Classification Token
Protocol Type Exploit/Access control

Understand the attack patterns

Build your security review skills

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.