Wasabi Protocol Suffers $5.7M Loss to Spring Boot Actuator Misconfiguration on May 9

Wasabi Protocol disclosed a security incident today (May 9) in which attackers exploited a Spring Boot Actuator misconfiguration in its AWS infrastructure to steal private keys controlling EVM smart contracts. The breach resulted in approximately $4.8 million in user funds and $900,000 in protocol reserves being stolen across Ethereum, Base, Blast, and Berachain vaults, totaling $5.7 million in losses. Solana deployments and Prop AMM were unaffected. The protocol stated that compensating all affected users remains its highest priority, though no final compensation plan has been announced yet.
Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments