Data leak [loss] $20M+

Etherscan transaction message

2022-11-06 [vendor] Pando
Primary Source ↗
Financial Loss $20.0M (20,000,000 USD)
Recovered $50.0M

Incident Details

The defi protocol Pando suffered a $20 million loss when it was exploited with an oracle manipulation attack. The protocol suspended several of its projects in response to the hack, and wrote that they hoped to negotiate with the hacker to regain some of the stolen proceeds. Some of the stolen funds were able to be locked, although it’s not clear if it was the total amount.

Total loss estimated at $20,000,000.

Technical Details

Initial Attack Vector
Oracle price manipulation
Vendor / Product
Pando

Timeline

  1. 2022-11-06 Breach occurred
  2. 2022-11-06 Publicly disclosed