Predy finance Hack

TOTAL LOST $464K
Low Access Control Attacks arbitrum

What happened

On the 14th of May Predy finance on Arbitrum L2 network was exploited with losses about 464k USD.

On May 14th, Predy Finance on Arbitrum was exploited due to a vulnerability in the Lending Pool, which did not properly handle small positions, leading to arithmetic issues.

Some of the funds, amounting to $293,000, were bridged to ETH and parked at address 0xeDe4E. The remaining $217,000 is still at the attacker's address on Arbitrum, 0x76b02.

Exploiters:

https://arbiscan.io/address/0x76b02ab4…c6d008

https://arbiscan.io/address/0xe1783b01…936653

Exploiter contract:

https://arbiscan.io/address/0x8affdd35…80cad9

Exploit tx example:

https://arbiscan.io/tx/0xbe163f65…78f50f

Case & protocol details

Classification Borrowing and Lending / Access Control
Protocol Type Exploit/Other
Smart Contract Language Solidity
Official Website www.predy.finance/
Protocol Twitter/X @predyfinance

Evidence & learning

Sources and on-chain records

Practice this exploit pattern safely

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.