Web3 Hacks & DeFi Exploit Intelligence

Security trends
  • $91B+Lost
  • 3595Incidents
  • 141Chains
  • 19Classes
# Project Date Amount Lost Chain Technique Links
121 Across $4.5M solana Spoofed Event Log
122 CrowdRingCircle $209K bsc Incorrect Share Accounting
123 DeFiTuna $580K solana Swap Logic Flaw
124 Zunami Protocol - Case File $3.0M — —
125 BarnBridge $777K ethereum Malicious Proposal
126 TeleSwap $735K bitcoin Hot Wallet Key Compromised
127 Cascade $1.3M arbitrum Mark Price Manipulation
128 Ostium $24.0M arbitrum Oracle Issue / Private Key Compromised
129 Drips Network $25K ethereum Arithmetic Error
130 Chi Protocol $8K ethereum Redeem Logic Flaw / Peg Check Bypass
131 Lumi Finance $270K arbitrum Signature Verification Flaw
132 PHX $90K bsc Incorrect Share Accounting
133 BlueMove DEX $529K sui Reserve Desynchronization / Incorrect Share Accounting
134 Bonzo $9.1M hedera Oracle Issue / Spot Price Manipulation
135 BFB $198K bsc Incorrect Share Accounting
136 BonkDAO $21.0M solana Access Control / Malicious Proposal
137 Summer.fi $6.0M ethereum NAV / Share-Price Manipulation
138 Hinkal $820K ethereum Deposit Logic Flaw
139 Digging for Gold $39.0M — —
140 Edel Finance $353K ethereum Oracle Issue / Spot Price Manipulation
141 Pepe Trump $38K — Rugpull
142 AIDC $121K bsc Arithmetic Error / Other
143 Nomic nBTC Bridge $3.1M nomic Unbacked Cross-Chain Mint
144 Lixir Finance $12K ethereum Signature Verification Flaw
145 Ocean Protocol $128K polygon Deposit Logic Flaw
146 Polymarket $3.0M polygon Frontend Compromise
147 DLMC $223K bsc Spot Price Manipulation
148 Royal.io $263K polygon Incorrect Share Accounting
149 Quicksilver Zone $4K quicksilver Unbacked Mint
150 SecondFi $2.4M cardano Weak Key Generation

Data sourced from DefiLlama & SunWeb3Sec/DeFiHackLabs . Thank you for keeping Web3 security data open.

Understanding Smart Contract Vulnerabilities

Explore the technical causes behind reentrancy, flash loan attacks, and oracle manipulation in our attack guides.

Learn how these hacks actually worked

Study the exploit patterns behind the incidents in this database, then practice finding them before attackers do.