Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Abracadabra Suffers Third DeFi Exploit As Hackers Drain $1.7 million

Abracadabra Suffers Third DeFi Exploit As Hackers Drain $1.7 million

BeInCryptoBeInCrypto2025/10/05 07:00
By:Oluwapelumi Adejumo

Abracadabra has suffered its third major breach in two years, reigniting scrutiny over the project’s code security and DeFi risk controls.

DeFi project Abracadabra has suffered a fresh exploit that drained about $1.7 million from its platform.

Blockchain security firm Go Security flagged the breach on October 4 and confirmed that attackers had already laundered about 51 ETH through Tornado Cash. At the time of reporting, the attacker’s wallet (identified as 0x1AaaDe) still held around 344 ETH, worth approximately $1.55 million.

How Abracadabra Was Exploited for the Third Time

Security researcher Weilin Li verified the exploit and explained that the attacker manipulated Abracadabra’s smart contract variables to bypass a solvency check.

This allowed them to borrow assets beyond the intended limit, prompting Abracadabra’s team to pause all contracts to prevent further losses.

Another blockchain audit firm, Phalcon, traced the root cause to a faulty logic sequence in the platform’s cook function. This is a mechanism that lets users execute several predefined actions in one transaction.

.@MIM_Spell was attacked hours ago, resulting in a loss of ~$1.7M. The root cause stems from the flawed implementation logic of the cook function, which allows users to execute multiple predefined operations in a single transaction. Specifically, the actions share a common… pic.twitter.com/4tQzkRbwcT

— BlockSec Phalcon (@Phalcon_xyz) October 4, 2025

According to the firm, the attacker carried out two operations that overrode key safeguards.

The first, known as action 5, initiated a borrowing process that was supposed to pass solvency checks. The second, called action 0, acted as an empty update function that rewrote the check flag and skipped the final validation step.

The attacker drained more than 1.79 million MIM tokens by repeating this pattern across six different addresses.

As of press time, Abracadabra has yet to comment publicly on the incident. Notably, the project’s official X account has remained silent since early September.

However, Go Security reported that the Abracadabra team confirmed on Discord that it would use DAO reserve funds to repurchase the affected MIM supply.

🚨 GoPlus Security Alert: The lending and stablecoin platform Abracadabra ( $SPELL ) appears to have been attacked again, with losses of approximately $1.77 million. Its official Twitter account @MIM_Spell has not been updated since September 9.Attacker Address:… pic.twitter.com/IjECKsOCWX

— GoPlus Security 🚦 (@GoPlusSecurity) October 5, 2025

Meanwhile, if verified, the latest incident would mark the third exploit against Abracadabra in under two years.

In January 2024, the platform lost $6.49 million in a hack that briefly depegged the MIM stablecoin from the US dollar. A second exploit in March 2025 drained another $13 million from its cauldron contracts, after which the team offered the hacker a 20% bounty.

The recurrence of such breaches raises renewed questions about the security of the DeFi protocol and the sustainability of its cross-chain lending architectures.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Monad Airdrop Enigma Deepens as Hayes’ DeFi Actions Reveal Liquidity Dilemma

- Arthur Hayes, ex-BitMEX CEO, boosted ENA/PENDLE/ETHFI exposure via liquidity provider Cumberland , reflecting DeFi risk management strategies amid volatility. - Hyperliquid listed MON-USD at $0.13, generating $28M trading volume as Monad's October 14 airdrop looms, though allocation rules remain undisclosed. - Hayes' ENA "buy low, sell high" trades highlight DeFi liquidity dynamics, while Monad's 12% circulating float raises liquidity sustainability concerns. - The airdrop's success depends on user adopt

Bitget-RWA2025/11/30 17:08
Monad Airdrop Enigma Deepens as Hayes’ DeFi Actions Reveal Liquidity Dilemma

Saudi Arabia's Vision 2030 Encounters Houthi Challenges Amidst Growth in Trade and Technology

- Saudi Arabia strengthens regional trade ties with Egypt, aiming to boost 86% of Egyptian firms' trade under Vision 2030, focusing on tech and energy sectors. - Chinese aesthetic tech firm Aphranel showcases innovations at Saudi medical congress, highlighting growing Middle East market integration. - Houthi threats in Yemen persist, raising regional security risks that could hinder Saudi economic ambitions and foreign investment goals. - Saudi-Egyptian investment agreements aim to enhance legal frameworks

Bitget-RWA2025/11/30 16:44
Saudi Arabia's Vision 2030 Encounters Houthi Challenges Amidst Growth in Trade and Technology

"Retail's Digital Revolution: Black Friday's 9.1% Online Spike Signals New Consumer Era" <div>Retail's Digital Revolution: Black Friday's 9.1% Online Spike Signals New Consumer Era</div> 改写: <div>The Digital Shift in Retail: Black Friday Sees 9.1% Surge in Online Sales, Marking a New Age for Shoppers</div>

- U.S. online Black Friday spending hit $11.8B in 2025, a 9.1% surge driven by AI tools and social media campaigns. - In-store traffic fell 3.6% as shoppers spread purchases across extended promotions, while tariffs pushed average prices up 7% despite 1% lower order volumes. - Holiday sales are projected to reach $1.01-$1.02 trillion, reflecting a 3.7-4.2% growth but slower than 2023's 4.3% increase. - Scams targeted 31% of U.S. adults, while grassroots boycotts against Trump-linked retailers emerged, thou

Bitget-RWA2025/11/30 16:44
"Retail's Digital Revolution: Black Friday's 9.1% Online Spike Signals New Consumer Era"

<div>Retail's Digital Revolution: Black Friday's 9.1% Online Spike Signals New Consumer Era</div>

改写:

<div>The Digital Shift in Retail: Black Friday Sees 9.1% Surge in Online Sales, Marking a New Age for Shoppers</div>

Bitcoin News Today: Surging Institutional Interest Pushes BlackRock’s Bitcoin ETF to $70 Billion

- BlackRock's IBIT bitcoin ETF surged to $70.7B in 341 days, generating $245M annual fees as top revenue driver. - U.S. spot bitcoin ETF approval fueled institutional demand, with IBIT capturing 3% of total bitcoin supply. - BlackRock increased its own IBIT stake by 14%, despite $2.34B November outflows deemed "normal" for retail-driven products. - ETF resilience shown through $21.1M November 27 inflow, reinforcing bitcoin's strategic role amid macroeconomic uncertainties.

Bitget-RWA2025/11/30 16:44