MooCakeCTX Hack
What happened
MooCakeCTX was exploited via a flash loan attack. The attacker's profit reached 122,960 $USD.
MooCakeCTX is a yield protocol on the Binance Chain. The protocol supports $CAKE deposits for $mooCakeCTX. The attacker took 400,000 $BUSD as a flash loan and exploited the protocol's smart contract for 424 $BNB.
The attacker's malicious smart contract bypassed isContract() function check by performing actions on the constructor and got rewards as $mooCakeCTX tokens after depositing $CAKE tokens. The flash loan was paid back after repeating previous actions multiple times and the exploiter took a profit of 424 $BNB. All the stolen funds were transferred to several EOA addresses in 4 transactions.
Attacker address:
https://bscscan.com/address/0x35700c4a…0facd5
Malicious contract:
https://bscscan.com/address/0x71ac864f…10467c
Malicious transaction:
https://bscscan.com/tx/0x03d36346…d2ec8e
Funds transfer transactions:
https://bscscan.com/tx/0x963d1ff2…9cad6a
https://bscscan.com/tx/0x602c2220…87ba45
https://bscscan.com/tx/0x44922e96…9ec913
https://bscscan.com/tx/0x58096e41…cca119
Case & protocol details
Evidence & learning
Attack pattern
Compare incidents →Sources and on-chain records
- report Report twitter.com
Practice this exploit pattern safely
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.