OceanAltOceanAlt

Security incident · 2022-05-01

Rari Capital

According to the public DefiLlama incident dataset, Rari Capital (Ethereum, Arbitrum) suffered a security incident on 2022-05-01, with about $80.0M reported lost.

Date2022-05-01
Reported loss$80.0M
ChainEthereum, Arbitrum
Target typeDeFi Protocol
Technique classReentrancy
TechniqueReentrancy
Bridge incidentNo
Within 2022#11 by loss that year, 2.2% of all reported losses that year

How this kind of attack works

The contract sent funds before updating balances, and the attacker re-entered during the transfer to withdraw repeatedly.

Would a pre-payment check have helped

Needs other controls

Reentrancy is a classic contract bug, unrelated to the counterparty; code audits address it.

Other incidents with the same technique

Sources

This page restates public reports and is not OceanAlt's judgment of any party. To report an error, email business@oceanalt.com; we review within 48 hours.

← Back to incidents