Weekly Web3 Security Recap
- Morpho Labs Front-End Vulnerability: A white-hat hacker, known as c0ffeebabe.eth, intercepted a $2.6 million exploit targeting @MorphoLabs. The vulnerability, now reverted, stemmed from a recent front-end update.
- Mantra ($OM) Sell-Off Rattles RWA Sector: $OM experienced a 90% drop, erasing over $5B in market capitalization. 43.6M tokens (4.5% of the circulating supply) were deposited into exchanges shortly before the crash, raising concerns about insider activity. Co-founder @jp_mullin888 denied allegations of a rug pull.
- MEV Bot Exploit: An Ethereum-based MEV bot lost approximately $180,000 due to an access control vulnerability. The attacker exploited the bot by swapping its $ETH to a dummy token through a malicious pool created within the same transaction.
- HEX Whale Hack: An elderly crypto whale lost nearly $4.5 million in a prolonged hack that drained staked $HEX tokens over several years. The attack involved phishing, laundering, and wallet-draining operations.