Purrlend suffers a security incident: the multi-signature administrator was compromised, resulting in an estimated loss of about $1.52 million

robot
Abstract generation in progress

ChainCatcher message: Purrlend said that during its deployment on HyperEVM and MegaETH, Purrlend encountered a security incident, resulting in a loss of about $1.52 million.

The attacker compromised the team’s multi-signature wallet held by 2/3 of the administrators, granted malicious EOA accounts permissions such as BRIDGE_ROLE, and minted unbacked pUSDm and pUSDC via mintUnbacked, using them as collateral to borrow assets from the lending pool. Purrlend stated that it has paused the protocol, revoked the relevant permissions, and is working with the security team, law enforcement agencies, and cross-chain bridge partners to track and attempt to recover the funds.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin