Sentora warns audits aren’t a guarantee: audited DeFi projects lost $3.3B+ from 2020–2025. Experts urge continuous monitoring and stronger post-audit controls.Sentora warns audits aren’t a guarantee: audited DeFi projects lost $3.3B+ from 2020–2025. Experts urge continuous monitoring and stronger post-audit controls.

Audits Aren’t Enough? $3.3B Lost in Audited DeFi Projects, Data Reveals

hack-scam main

Audits matter, but they’re not a magic shield. That’s the blunt takeaway from a recent thread by blockchain data analysis platform Sentora, paired with a bar chart breaking down billions lost in DeFi hacks and exploits. The data covers 2020 through 2025 (excluding the Terra collapse) and makes a clear, uncomfortable point: even projects that paid for security reviews lost serious money.

“Audits are essential for DeFi, but not a guarantee,” Sentora wrote. “Audited projects saw $3.3B+ in losses between ’20–’25, driven by rugs, private key compromises and post-audit changes. DeFi audits are the baseline, but effective risk management still requires active monitoring of risk.”

The accompanying chart, which sorts losses by auditor, shows unaudited projects suffering the single-largest hit, roughly in the neighborhood of $5 billion, but it also shows that audited projects and well-known firms like Certik, NCC Group and Trail of Bits are far from immune.

A Layered Problem

Taken together, the visuals and Sentora’s summary sketch a layered problem. One part is the obvious: projects that skipped audits or cut corners paid for it. Another part, equally important, is that audits themselves are snapshots, often conducted before last-minute code edits, governance changes, or the introduction of new admin keys.

Those post-audit modifications, along with social-engineering attacks that capture private keys and malicious rug pulls by insiders, account for a large share of the $3.3 billion in losses Sentora flagged for audited projects. The chart also highlights a middle category, a long tail of smaller auditors grouped as “Other (68),” which together account for a substantial chunk of losses.

That suggests the issue isn’t just whether a project was audited, but the quality and comprehensiveness of the audit, the auditor’s scope, and what happens after the report is issued. An audit that misses critical design assumptions, or a team that ignores recommended mitigations, leaves the door open.

Security practitioners have been saying for years that a single audit should be treated as the start of a security program, not the finish line. Continuous monitoring, staged deployments, multisignature controls, timelocks on privileged functions, proactive bug-bounty programs, and insurance products are all part of a more resilient approach.

Sentora’s message reinforces that audits set a minimum standard, but teams and investors must layer protections and keep watching. For a DeFi ecosystem that prizes composability and rapid iteration, the tension is real. Developers want to ship features and pivot quickly; auditors need scope and time to be thorough; attackers look for the brief windows between them.

The upshot of the data is simple and uncomfortable; spending on audits will remain necessary, but the community also needs better post-audit discipline and operational safeguards if it wants to meaningfully cut losses.

Sentora’s thread and the chart are a reminder that security in DeFi is a process, not a certificate. Audits help find problems, but they don’t stop problems from happening. Until teams treat security as continuous work rather than a checkbox, the headline numbers are likely to keep growing.

Market Opportunity
Threshold Logo
Threshold Price(T)
$0.009471
$0.009471$0.009471
0.00%
USD
Threshold (T) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Who is Juno Sauler, Gilas Pilipinas Youth’s new head coach?

Who is Juno Sauler, Gilas Pilipinas Youth’s new head coach?

CALLING THE SHOTS. Juno Sauler (right) huddles with UST head coach Pido Jarencio (center) and fellow assistant Peter Martin during the UAAP men's basketball tournament
Share
Rappler2026/01/12 10:00
US federal prosecutors open inquiry into Fed Chair Powell

US federal prosecutors open inquiry into Fed Chair Powell

The post US federal prosecutors open inquiry into Fed Chair Powell appeared on BitcoinEthereumNews.com. Federal prosecutors have opened a criminal investigation
Share
BitcoinEthereumNews2026/01/12 09:49
IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge!

IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge!

The post IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge! appeared on BitcoinEthereumNews.com. Crypto News 17 September 2025 | 18:00 Discover why BlockDAG’s upcoming Awakening Testnet launch makes it the best crypto to buy today as Story (IP) price jumps to $11.75 and Hyperliquid hits new highs. Recent crypto market numbers show strength but also some limits. The Story (IP) price jump has been sharp, fueled by big buybacks and speculation, yet critics point out that revenue still lags far behind its valuation. The Hyperliquid (HYPE) price looks solid around the mid-$50s after a new all-time high, but questions remain about sustainability once the hype around USDH proposals cools down. So the obvious question is: why chase coins that are either stretched thin or at risk of retracing when you could back a network that’s already proving itself on the ground? That’s where BlockDAG comes in. While other chains are stuck dealing with validator congestion or outages, BlockDAG’s upcoming Awakening Testnet will be stress-testing its EVM-compatible smart chain with real miners before listing. For anyone looking for the best crypto coin to buy, the choice between waiting on fixes or joining live progress feels like an easy one. BlockDAG: Smart Chain Running Before Launch Ethereum continues to wrestle with gas congestion, and Solana is still known for network freezes, yet BlockDAG is already showing a different picture. Its upcoming Awakening Testnet, set to launch on September 25, isn’t just a demo; it’s a live rollout where the chain’s base protocols are being stress-tested with miners connected globally. EVM compatibility is active, account abstraction is built in, and tools like updated vesting contracts and Stratum integration are already functional. Instead of waiting for fixes like other networks, BlockDAG is proving its infrastructure in real time. What makes this even more important is that the technology is operational before the coin even hits exchanges. That…
Share
BitcoinEthereumNews2025/09/18 00:32