TLDR Abracadabra’s third exploit drains $1.7 million, exploiting smart contract flaws. Hackers laundered stolen funds via Tornado Cash after attacking Abracadabra. Abracadabra pauses contracts to limit further losses from the latest breach. Abracadabra’s prior hacks in 2024 and 2025 led to $19.5 million in losses. Abracadabra, a decentralized finance (DeFi) protocol, has fallen victim to [...] The post Abracadabra Faces Third DeFi Exploit as Hackers Drain $1.7 Million appeared first on CoinCentral.TLDR Abracadabra’s third exploit drains $1.7 million, exploiting smart contract flaws. Hackers laundered stolen funds via Tornado Cash after attacking Abracadabra. Abracadabra pauses contracts to limit further losses from the latest breach. Abracadabra’s prior hacks in 2024 and 2025 led to $19.5 million in losses. Abracadabra, a decentralized finance (DeFi) protocol, has fallen victim to [...] The post Abracadabra Faces Third DeFi Exploit as Hackers Drain $1.7 Million appeared first on CoinCentral.

Abracadabra Faces Third DeFi Exploit as Hackers Drain $1.7 Million

2025/10/06 01:51
4 min read
For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

TLDR

  • Abracadabra’s third exploit drains $1.7 million, exploiting smart contract flaws.
  • Hackers laundered stolen funds via Tornado Cash after attacking Abracadabra.
  • Abracadabra pauses contracts to limit further losses from the latest breach.
  • Abracadabra’s prior hacks in 2024 and 2025 led to $19.5 million in losses.

Abracadabra, a decentralized finance (DeFi) protocol, has fallen victim to its third major exploit. Hackers drained approximately $1.7 million from the platform, marking another setback for the project. The breach was first identified by blockchain security firm Go Security on October 4, 2025. This attack follows previous incidents in which the platform lost millions, raising concerns over its security measures.

How the Attack Unfolded

On October 4, Go Security reported the latest breach, revealing that hackers managed to exploit a vulnerability in Abracadabra’s smart contract. The attackers manipulated the platform’s contract variables, allowing them to bypass a solvency check. This exploitation let them borrow assets beyond the intended limit, resulting in a substantial loss for the protocol.

Weilin Li, a security researcher, confirmed the breach, explaining that the vulnerability occurred due to faulty logic in the smart contract. The attack took advantage of a sequence error within Abracadabra’s cook function, which is designed to execute multiple actions in a single transaction. According to Phalcon, another blockchain audit firm, the exploit occurred through two specific actions.

The first, called “action 5,” triggered a borrowing process intended to pass solvency checks. The second, labeled “action 0,” bypassed the validation step by overriding the check flag. The attackers repeated this process across six different addresses, stealing over 1.79 million MIM tokens in the process.

The Response from Abracadabra’s Team

Following the exploit, Abracadabra’s team quickly acted to prevent further damage. They paused all contracts on the platform to limit additional losses. At the time of reporting, the hacker’s wallet contained around 344 ETH, worth roughly $1.55 million, though the stolen funds had already been partially laundered through Tornado Cash.

Go Security noted that the Abracadabra team confirmed on Discord that it would use its DAO reserve funds to repurchase the affected MIM tokens. However, as of October 5, the official social media channels of Abracadabra, including its X account, remained silent on the incident. This lack of communication has raised concerns about the project’s ongoing transparency.

Previous Exploits Raise Concerns

This breach is not the first time Abracadabra has been targeted by attackers. In January 2024, the platform suffered a hack that resulted in a $6.49 million loss and briefly caused the MIM stablecoin to depeg from the US dollar. A second exploit in March 2025 drained an additional $13 million from Abracadabra’s cauldron contracts, leading the team to offer the hacker a 20% bounty in exchange for the stolen funds.

The recurrence of such breaches in a relatively short period has prompted ongoing questions about the security of the platform. Despite the team’s efforts to address vulnerabilities, these repeated attacks have damaged the project’s reputation and raised concerns about the sustainability of its cross-chain lending system.

The Future of Abracadabra’s Security

As the third exploit adds to the growing list of security issues, the DeFi space is left questioning how Abracadabra plans to strengthen its protocols moving forward. While the team’s response to the current exploit appears swift, it remains to be seen whether these actions will be enough to restore user trust and prevent further breaches.

The continued challenges faced by Abracadabra highlight the importance of robust security measures in the rapidly evolving DeFi sector. For now, the platform’s future security strategy will likely remain under scrutiny as both developers and users await clearer answers from the project’s team.

The post Abracadabra Faces Third DeFi Exploit as Hackers Drain $1.7 Million appeared first on CoinCentral.

Market Opportunity
DeFi Logo
DeFi Price(DEFI)
$0.000298
$0.000298$0.000298
-6.28%
USD
DeFi (DEFI) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

UK crypto holders brace for FCA’s expanded regulatory reach

UK crypto holders brace for FCA’s expanded regulatory reach

The post UK crypto holders brace for FCA’s expanded regulatory reach appeared on BitcoinEthereumNews.com. British crypto holders may soon face a very different landscape as the Financial Conduct Authority (FCA) moves to expand its regulatory reach in the industry. A new consultation paper outlines how the watchdog intends to apply its rulebook to crypto firms, shaping everything from asset safeguarding to trading platform operation. According to the financial regulator, these proposals would translate into clearer protections for retail investors and stricter oversight of crypto firms. UK FCA plans Until now, UK crypto users mostly encountered the FCA through rules on promotions and anti-money laundering checks. The consultation paper goes much further. It proposes direct oversight of stablecoin issuers, custodians, and crypto-asset trading platforms (CATPs). For investors, that means the wallets, exchanges, and coins they rely on could soon be subject to the same governance and resilience standards as traditional financial institutions. The regulator has also clarified that firms need official authorization before serving customers. This condition should, in theory, reduce the risk of sudden platform failures or unclear accountability. David Geale, the FCA’s executive director of payments and digital finance, said the proposals are designed to strike a balance between innovation and protection. He explained: “We want to develop a sustainable and competitive crypto sector – balancing innovation, market integrity and trust.” Geale noted that while the rules will not eliminate investment risks, they will create consistent standards, helping consumers understand what to expect from registered firms. Why does this matter for crypto holders? The UK regulatory framework shift would provide safer custody of assets, better disclosure of risks, and clearer recourse if something goes wrong. However, the regulator was also frank in its submission, arguing that no rulebook can eliminate the volatility or inherent risks of holding digital assets. Instead, the focus is on ensuring that when consumers choose to invest, they do…
Share
BitcoinEthereumNews2025/09/17 23:52
Bitcoin Exchange Binance Announces New Listings on its Futures Platform! Here Are the Details

Bitcoin Exchange Binance Announces New Listings on its Futures Platform! Here Are the Details

The post Bitcoin Exchange Binance Announces New Listings on its Futures Platform! Here Are the Details appeared on BitcoinEthereumNews.com. Bitcoin Exchange
Share
BitcoinEthereumNews2026/04/02 19:26
ServiceNow (NOW) Stock Faces Pressure as Federal Spending Concerns Mount

ServiceNow (NOW) Stock Faces Pressure as Federal Spending Concerns Mount

ServiceNow (NOW) stock tumbles 43% in six months as Stifel cuts price target to $135 citing weak federal spending and Q1 headwinds. Earnings due April 22. The post
Share
Blockonomi2026/04/02 21:26

$30,000 in PRL + 15,000 USDT

$30,000 in PRL + 15,000 USDT$30,000 in PRL + 15,000 USDT

Deposit & trade PRL to boost your rewards!