Security incident · 2021-12-02
Badger DAO
According to the public DefiLlama incident dataset, Badger DAO (Ethereum) suffered a security incident on 2021-12-02, with about $120.0M reported lost.
| Date | 2021-12-02 |
|---|---|
| Reported loss | $120.0M |
| Chain | Ethereum |
| Target type | DeFi Protocol |
| Technique class | Frontend & Infrastructure |
| Technique | CDN Compromise |
| Bridge incident | No |
| Within 2021 | #7 by loss that year, 4.2% of all reported losses that year |
How this kind of attack works
The website, domain or hosting was hijacked, and users signed transactions that sent funds to the attacker from a page that looked normal.
Would a pre-payment check have helped
When a frontend or domain is hijacked the payee address is freshly generated and on no list, but the hijacked host is often already in public phishing feeds, so endpoint screening catches part of this class.
Other incidents with the same technique
- Mixin Network2023-09-23 · $200.0M
- Atomic Wallet2023-06-03 · $100.0M
- NiceHash2017-12-08 · $64.0M
- SwissBorg2025-09-09 · $41.5M
- IRA Financial / Gemini2022-02-12 · $36.0M
- Crypto.com2022-01-18 · $33.7M

