Market Cap: $2.2274T 1.22%
Volume(24h): $43.1719B 13.79%
  • Market Cap: $2.2274T 1.22%
  • Volume(24h): $43.1719B 13.79%
  • Fear & Greed Index:
  • Market Cap: $2.2274T 1.22%
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
Top News
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
bitcoin
bitcoin

$87959.907984 USD

1.34%

ethereum
ethereum

$2920.497338 USD

3.04%

tether
tether

$0.999775 USD

0.00%

xrp
xrp

$2.237324 USD

8.12%

bnb
bnb

$860.243768 USD

0.90%

solana
solana

$138.089498 USD

5.43%

usd-coin
usd-coin

$0.999807 USD

0.01%

tron
tron

$0.272801 USD

-1.53%

dogecoin
dogecoin

$0.150904 USD

2.96%

cardano
cardano

$0.421635 USD

1.97%

hyperliquid
hyperliquid

$32.152445 USD

2.23%

bitcoin-cash
bitcoin-cash

$533.301069 USD

-1.94%

chainlink
chainlink

$12.953417 USD

2.68%

unus-sed-leo
unus-sed-leo

$9.535951 USD

0.73%

zcash
zcash

$521.483386 USD

-2.87%

Cryptocurrency News Articles

$2 Million in SOL Drained from Pump.Fun in Flashloan Attack Amidst Private Key Breach

May 17, 2024 at 02:01 am

Memecoin launchpad Pump.Fun fell victim to an exploit today, resulting in the theft of approximately $2 million worth of SOL. The attacker exploited the platform's service account to withdraw liquidity intended for Raydium, which was then used to repay a flashloan and donate funds to Solana token holders. The Pump.Fun team has upgraded their contracts to prevent further damage, emphasizing that user wallets and burned tokens are secure.

$2 Million in SOL Drained from Pump.Fun in Flashloan Attack Amidst Private Key Breach

Pump.Fun Exploited for $2 Million in SOL Amidst Private Key Compromise

In a brazen cyberattack today, Pump.Fun, a memecoin launchpad platform, fell victim to a malicious flashloan exploit that siphoned away a staggering 12,300 SOL, valued at approximately $2 million.

The sophisticated attack utilized flashloans, instantaneous loans designed to be borrowed and repaid within a single blockchain block, to drain funds from the platform. According to analysts, the exploiter was able to gain access to Pump.Fun's service account, which acted as a cosigner for all of the attacker's transactions, suggesting a possible private key compromise.

Pump.Fun's service account is responsible for burning bonding curve liquidity to Raydium, a decentralized exchange, once a token has filled its bonding curve on Pump.Fun, allowing the token to commence trading on the open market. However, by accessing the service account through the compromised key, the hacker intercepted the liquidity meant for Raydium, used it to repay the flashloan, and donated the remaining funds to holders of various Solana tokens.

In response to the attack, the Pump.Fun team swiftly upgraded their contracts to prevent further damage. They have assured users that all wallets connected to the application remain secure, and any tokens previously burned to Raydium are unaffected. However, trading on Pump.Fun has been temporarily suspended, and tokens that were manipulated to migrate to Raydium via the exploit will remain in limbo for an indefinite period.

Pump.Fun, a platform that empowers non-technical individuals to launch memecoins with minimal effort or expense, has seen explosive growth, enabling the launch of hundreds of tokens on Blast and Solana. According to DeFiLlama, the platform generated over $10 million in revenue last month alone.

The incident highlights the vulnerabilities that persist in the decentralized finance (DeFi) ecosystem, particularly around private key security and the potential for malicious flashloan exploits. As DeFi continues to gain popularity, the industry must prioritize robust security measures to safeguard user assets and maintain investor confidence.

Original source:memecoin launchpad pump

Disclaimer:info@kdj.com

The information provided is not trading advice. kdj.com does not assume any responsibility for any investments made based on the information provided in this article. Cryptocurrencies are highly volatile and it is highly recommended that you invest with caution after thorough research!

If you believe that the content used on this website infringes your copyright, please contact us immediately (info@kdj.com) and we will delete it promptly.

Other articles published on Jul 27, 2026