MonoX Hack

TOTAL LOST $31.4M
High Oracle Manipulation & Price Manipulation Ethereum Polygon

What happened

On November 30, 2021, an attacker exploited MonoX's single-sided AMM on Ethereum and Polygon. A swap path allowed MONO to be both the input and output token, inflating its internal virtual price and allowing the attacker to exchange overpriced MONO for the pools' real assets.

Technical Root Cause

The swap function did not reject identical input and output token addresses. Applying distinct buy and sell price-update paths to the same asset broke the AMM's virtual-price accounting invariant.

Case & protocol details

Classification AMM Virtual-Price Manipulation
Protocol Type DEX
Affected asset / contract MONO
Smart Contract Language Solidity
Official Website monox.finance/
Protocol Twitter/X @MonoXFinance

Attack Timeline

MonoX independently updated the virtual price for tokenIn and tokenOut. When both addresses were MONO, the final output-side update overwrote the input-side adjustment and ratcheted MONO's price upward. The attacker repeated the same-token swap, then used the artificially expensive MONO to drain WETH, WMATIC, WBTC, stablecoins, and other pooled tokens across both deployments.

Security review history

Practice this exploit pattern safely

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.