Purrlend encounters security incident: breach due to multi-signature administrator, loss of approximately $1.52 million

robot
Abstract generation in progress

Golden Finance reports that on May 1st, Purrlend announced that they experienced a security incident during deployment on HyperEVM and MegaETH, resulting in a loss of approximately $1.52 million.
The attacker compromised two-thirds of the team’s multi-signature wallet, granted permissions such as BRIDGE_ROLE to malicious EOA, and minted unbacked pUSDm and pUSDC through mintUnbacked, using them as collateral to borrow assets from the lending pool. Purrlend stated that they have paused the protocol, revoked related permissions, and are working with security teams, law enforcement agencies, and cross-chain bridge partners to track and attempt to recover the funds.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin