OceanAltOceanAlt

Security incident · 2024-04-30

Pike V1

According to the public DefiLlama incident dataset, Pike V1 (Ethereum, Optimism, Arbitrum) suffered a security incident on 2024-04-30, with about $1.6M reported lost.

Date2024-04-30
Reported loss$1.6M
ChainEthereum, Optimism, Arbitrum
Target typeDeFi Protocol
Technique classAccess Control
TechniqueProxy Upgrade Hijack
Bridge incidentNo
Within 2024#79 by loss that year, 0.1% of all reported losses that year

How this kind of attack works

A contract function meant for administrators was not locked down, and the attacker called it directly to move funds.

Would a pre-payment check have helped

Needs other controls

Broken contract permissions are a code-audit matter that pre-payment screening cannot see.

Other incidents with the same technique

Sources

This page restates public reports and is not OceanAlt's judgment of any party. To report an error, email business@oceanalt.com; we review within 48 hours.

← Back to incidents