TREE NEWS reports: Losses from an exploit on a Base chain vault have grown to about $6 million, involving roughly 1,783 wstETH. The attacker added a new contract to the vault’s whitelist, borrowed aBaswstETH from the vault and moved the funds to an attacker-controlled contract.
Base Vault Exploit Losses Grow to About $6M, 1,783 wstETH Involved
The whitelist mechanism is the story: an attacker didn't break cryptography, they got a contract added to an approved list, then used the vault's own lending logic to borrow its assets. That points to governance or access control as the weak layer, not the Base chain itself, and it matters for any vault where whitelisting is the gate. Whether the borrowed aBaswstETH is recovered, and whether the whitelist process changes, is the open question.
Generated by AI for reference only.
Share on WeChat
Open WeChat → Scan → then tap "…" to send to a chat or Moments.
Tap "…" in the top-right corner to send to a chat or share to Moments.