ResupplyFi Rekt: How a $4K Flash Loan Led to a $9.8M ERC-4626 Donation Attack
1. Introduction In June 2025, ResupplyFi — a lending protocol integrated with the Convex and Yearn ecosystems — suffered a devastating exploit that drained approximately $9.8 million in under 90 minutes. The attacker leveraged a classic ERC-4626 “donation attack” combined with a flawed vault implementation to manipulate the exchange rate of vault shares, turning a […]
ResupplyFi Rekt: How a $4K Flash Loan Led to a $9.8M ERC-4626 Donation Attack Read More »