Market Cap: $3.8891T 0.190%
Volume(24h): $173.222B 5.870%
  • Market Cap: $3.8891T 0.190%
  • Volume(24h): $173.222B 5.870%
  • Fear & Greed Index:
  • Market Cap: $3.8891T 0.190%
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
Top News
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
bitcoin
bitcoin

$116456.131019 USD

-0.28%

ethereum
ethereum

$4033.984829 USD

3.47%

xrp
xrp

$3.302804 USD

-1.30%

tether
tether

$1.000091 USD

-0.01%

bnb
bnb

$796.111649 USD

1.49%

solana
solana

$177.708245 USD

1.48%

usd-coin
usd-coin

$0.999898 USD

0.00%

dogecoin
dogecoin

$0.231348 USD

3.97%

tron
tron

$0.338271 USD

0.27%

cardano
cardano

$0.798939 USD

1.02%

stellar
stellar

$0.449834 USD

-1.65%

chainlink
chainlink

$20.553128 USD

9.64%

hyperliquid
hyperliquid

$41.209935 USD

0.81%

sui
sui

$3.912439 USD

3.64%

bitcoin-cash
bitcoin-cash

$585.050857 USD

1.50%

Cryptocurrency News Articles

Tiny Overflow Bug in Cetus Smart Contract Was Root Cause of $230M DeFi Loss

May 26, 2025 at 04:07 pm

SlowMist confirmed bug in checked_shlw function was root cause of $230M DeFi loss. Tiny overflow bug in Cetus smart contract allowed attacker to fake massive liquidity deposits.

Tiny Overflow Bug in Cetus Smart Contract Was Root Cause of $230M DeFi Loss

On May 22, something alarming happened in the SUI blockchain world. Prices on the Cetus decentralized exchange (DEX) suddenly dropped, and its liquidity pools were drained. The total estimated loss was over $230 million.

Several reports quickly implicated a single triple-entry arbitrageur who used a flash loan to crash a token price instantly and siphon off funds from multiple protocols. However, the precise technical vulnerability that enabled this massive exploit remained a subject of discussion.

Now, renowned blockchain security team SlowMist has released a detailed analysis, revealing a tiny overflow bug in Cetus’ smart contract as the root cause of the staggering DeFi loss.

The checked_shlw function, designed to check for errors like overflows, failed to properly detect an overflow in the get_delta_a function, which is used to calculate the delta of token A when adding liquidity.

This bug allowed the attacker to claim to be adding a huge amount of liquidity by displaying a nearly impossible price and submitting only 1 token, while the system expected 367506680905089974005506088888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888

Original source:coinpedia

Disclaimer:info@kdj.com

The information provided is not trading advice. kdj.com does not assume any responsibility for any investments made based on the information provided in this article. Cryptocurrencies are highly volatile and it is highly recommended that you invest with caution after thorough research!

If you believe that the content used on this website infringes your copyright, please contact us immediately (info@kdj.com) and we will delete it promptly.

Other articles published on Aug 09, 2025