The post Bunni DEX Exploited for $2.3M After Liquidity Rebalancing Flaw appeared on BitcoinEthereumNews.com. Decentralized exchange Bunni fell victim to an exploit, losing about $2.4 million in stablecoins after attackers manipulated the platform’s liquidity calculations, according to onchain data by multiple Web3 security firms. “The Bunni app has been affected by a security exploit,” its team confirmed on X on Tuesday. “As a precaution, we have paused all smart contract functions on all networks. Our team is actively investigating and will provide updates soon,” the team added. The attack targeted Bunni’s Ethereum-based smart contracts. Funds were drained to an address holding $1.33 million in USDC (USDC) and $1.04 million in USDt (USDT). Bunni core contributor @Psaul26ix asked users to withdraw funds from the platform as soon as possible. “If you have money on Bunni, remove it ASAP,” they wrote on X. Bunni channels liquidity through Euler Finance, a decentralized lending platform that enables users to borrow, lend and design structured crypto products. In light of the exploit, Euler co-founder and CEO Michael Bentley clarified that the protocol itself remains unaffected by the exploit. Experts ask Bunni users to remove funds. Source: Michael Bentley Cointelegraph reached out to Bunni and Euler for comment, but had not received a response by publication. Related: Indian court sentences 14 to life in Bitcoin extortion case How Bunni fell victim to the hack While a technical post-mortem remains incomplete, early analysis from developers and researchers points to a flaw in how Bunni handles liquidity rebalancing. Bunni, built on top of Uniswap v4, uses a custom mechanism called Liquidity Distribution Function (LDF) instead of Uniswap’s default logic. This mechanism allows Bunni to optimize liquidity allocation across price ranges, aiming to increase returns for liquidity providers. According to Victor Tran, co-founder of KyberNetwork, the attacker was able to manipulate the LDF curve by executing trades of specific sizes that triggered faulty… The post Bunni DEX Exploited for $2.3M After Liquidity Rebalancing Flaw appeared on BitcoinEthereumNews.com. Decentralized exchange Bunni fell victim to an exploit, losing about $2.4 million in stablecoins after attackers manipulated the platform’s liquidity calculations, according to onchain data by multiple Web3 security firms. “The Bunni app has been affected by a security exploit,” its team confirmed on X on Tuesday. “As a precaution, we have paused all smart contract functions on all networks. Our team is actively investigating and will provide updates soon,” the team added. The attack targeted Bunni’s Ethereum-based smart contracts. Funds were drained to an address holding $1.33 million in USDC (USDC) and $1.04 million in USDt (USDT). Bunni core contributor @Psaul26ix asked users to withdraw funds from the platform as soon as possible. “If you have money on Bunni, remove it ASAP,” they wrote on X. Bunni channels liquidity through Euler Finance, a decentralized lending platform that enables users to borrow, lend and design structured crypto products. In light of the exploit, Euler co-founder and CEO Michael Bentley clarified that the protocol itself remains unaffected by the exploit. Experts ask Bunni users to remove funds. Source: Michael Bentley Cointelegraph reached out to Bunni and Euler for comment, but had not received a response by publication. Related: Indian court sentences 14 to life in Bitcoin extortion case How Bunni fell victim to the hack While a technical post-mortem remains incomplete, early analysis from developers and researchers points to a flaw in how Bunni handles liquidity rebalancing. Bunni, built on top of Uniswap v4, uses a custom mechanism called Liquidity Distribution Function (LDF) instead of Uniswap’s default logic. This mechanism allows Bunni to optimize liquidity allocation across price ranges, aiming to increase returns for liquidity providers. According to Victor Tran, co-founder of KyberNetwork, the attacker was able to manipulate the LDF curve by executing trades of specific sizes that triggered faulty…

Bunni DEX Exploited for $2.3M After Liquidity Rebalancing Flaw

Decentralized exchange Bunni fell victim to an exploit, losing about $2.4 million in stablecoins after attackers manipulated the platform’s liquidity calculations, according to onchain data by multiple Web3 security firms.

“The Bunni app has been affected by a security exploit,” its team confirmed on X on Tuesday. “As a precaution, we have paused all smart contract functions on all networks. Our team is actively investigating and will provide updates soon,” the team added.

The attack targeted Bunni’s Ethereum-based smart contracts. Funds were drained to an address holding $1.33 million in USDC (USDC) and $1.04 million in USDt (USDT).

Bunni core contributor @Psaul26ix asked users to withdraw funds from the platform as soon as possible. “If you have money on Bunni, remove it ASAP,” they wrote on X.

Bunni channels liquidity through Euler Finance, a decentralized lending platform that enables users to borrow, lend and design structured crypto products. In light of the exploit, Euler co-founder and CEO Michael Bentley clarified that the protocol itself remains unaffected by the exploit.

Experts ask Bunni users to remove funds. Source: Michael Bentley

Cointelegraph reached out to Bunni and Euler for comment, but had not received a response by publication.

Related: Indian court sentences 14 to life in Bitcoin extortion case

How Bunni fell victim to the hack

While a technical post-mortem remains incomplete, early analysis from developers and researchers points to a flaw in how Bunni handles liquidity rebalancing.

Bunni, built on top of Uniswap v4, uses a custom mechanism called Liquidity Distribution Function (LDF) instead of Uniswap’s default logic. This mechanism allows Bunni to optimize liquidity allocation across price ranges, aiming to increase returns for liquidity providers.

According to Victor Tran, co-founder of KyberNetwork, the attacker was able to manipulate the LDF curve by executing trades of specific sizes that triggered faulty rebalancing logic.

“Exploiter figured out they could manipulate this LDF by making trades of very specific sizes,” Tran wrote on X. “These carefully chosen amounts caused the rebalancing calculation to break, giving wrong results for how much each LP share should own,” he added.

The attacker appears to have executed the exploit multiple times, gradually draining the protocol’s funds without immediately triggering alarms.

Attacker exploits Bunni’s liquidity function. Source: Victor Tran

As part of their response to the exploit, the Bunni protocol team has offered a 10% bounty to the attacker in exchange for the return of the remaining stolen funds. In an onchain message sent via Ethereum, the team proposed the bounty as a resolution pathway. The message includes a contact address and an email, inviting the attacker to negotiate terms.

Bunni protocol team offers a 10% bounty reward to the hacker. Source: Etherscan

Related: Criminals are ‘vibe hacking’ with AI at unprecedented levels: Anthropic

Crypto hacks top $163 million in August

In August, crypto hackers and scammers stole over $163 million across 16 separate incidents, marking a 15% increase from July’s $142 million. While the figure is still 47% lower year-over-year, it reflects a troubling rise in targeted attacks as crypto markets gain momentum.

PeckShield and other cybersecurity experts noted a strategic shift in hacker behavior, with attackers now focusing on centralized exchanges and high-value individuals, rather than smaller, decentralized targets.

The largest loss in August came from a social engineering attack, where a Bitcoiner was tricked into sending 783 BTC (worth $91 million) to attackers posing as support agents from a crypto exchange and hardware wallet provider.

Magazine: Coinbase hack shows the law probably won’t protect you — Here’s why

Source: https://cointelegraph.com/news/bunni-hack-2-4m-stablecoin-exploit-uniswap-v4?utm_source=rss_feed&utm_medium=feed&utm_campaign=rss_partner_inbound

Market Opportunity
USDCoin Logo
USDCoin Price(USDC)
$1.0001
$1.0001$1.0001
0.00%
USD
USDCoin (USDC) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Sunmi Cuts Clutter and Boosts Speed with New All-in-One Mobile Terminal & Scanner-Printer

Sunmi Cuts Clutter and Boosts Speed with New All-in-One Mobile Terminal & Scanner-Printer

SINGAPORE, Jan. 16, 2026 /PRNewswire/ — Business Challenge: Stores today face dual pressures: the need for faster, more flexible customer service beyond fixed counters
Share
AI Journal2026/01/16 20:31
Cloud mining is gaining popularity around the world. LgMining’s efficient cloud mining platform helps you easily deploy digital assets and lead a new wave of crypto wealth.

Cloud mining is gaining popularity around the world. LgMining’s efficient cloud mining platform helps you easily deploy digital assets and lead a new wave of crypto wealth.

The post Cloud mining is gaining popularity around the world. LgMining’s efficient cloud mining platform helps you easily deploy digital assets and lead a new wave of crypto wealth. appeared on BitcoinEthereumNews.com. SPONSORED POST* As the cryptocurrency market continues its recovery, Ethereum has once again become the center of attention for investors. Recently, the well-known crypto mining platform LgMining predicted that Ethereum may surpass its previous all-time high and surge past $5,000. In light of this rare market opportunity, choosing a high-efficiency, secure, and low-cost mining platform has become the top priority for many investors. With its cutting-edge hardware, intelligent technology, and low-cost renewable energy advantages, LgMining Cloud Mining is rapidly emerging as a leader in the cloud mining industry. Ethereum: The Driving Force of the Crypto Market Ethereum is not only the second-largest cryptocurrency by market capitalization but also the backbone of the blockchain smart contract ecosystem. From DeFi (Decentralized Finance) to NFTs (Non-Fungible Tokens) and the broader Web3.0 infrastructure, most innovations are built on Ethereum. This widespread utility gives Ethereum tremendous growth potential. With the upcoming scalability upgrades, the Ethereum network is expected to offer improved performance and transaction speed—likely triggering a fresh wave of market enthusiasm. According to the LgMining research team, Ethereum’s share among institutional and retail investors continues to grow. Combined with shifting monetary policies and global economic uncertainties, Ethereum is expected to break past its previous high of over $4,000 and aim for $5,000 or more in the coming months. LgMining Cloud Mining: Unlocking a Low-Barrier Path to Wealth Traditional crypto mining often requires expensive mining rigs, stable electricity, and complex maintenance—making it inaccessible for the average person. LgMining Cloud Mining breaks down these barriers, allowing anyone to easily participate in mining Ethereum and Bitcoin without owning hardware. LgMining builds its robust and efficient mining infrastructure around three core advantages: 1. High-End Equipment LgMining uses top-tier mining hardware with exceptional computing power and reliability. The platform’s ASIC and GPU miners are carefully selected and tested to…
Share
BitcoinEthereumNews2025/09/18 03:04
State Street Corporation (NYSE: STT) Reports Fourth-Quarter and Full-Year 2025 Financial Results

State Street Corporation (NYSE: STT) Reports Fourth-Quarter and Full-Year 2025 Financial Results

BOSTON–(BUSINESS WIRE)–State Street Corporation (NYSE: STT) reported its fourth-quarter and full-year 2025 financial results today. The news release, presentation
Share
AI Journal2026/01/16 20:46