BarnBridge's SMART Yield protocol on Ethereum has suffered a governance attack, resulting in losses of approximately $776,000. According to BlockSec Phalcon monitoring, the attacker gained DAO governance permissions and upgraded the SmartYield/controller proxy to a malicious contract. This allowed the attacker to exploit the CompoundProvider's _takeUnderlying function, leveraging pre-existing USDC approvals from 50 user accounts to transfer the aggregated funds via transferFees to their own account.
BarnBridge Governance Attack Results in $776,000 Loss
Disclaimer: The content provided on Phemex News is for informational purposes only. We do not guarantee the quality, accuracy, or completeness of the information sourced from third-party articles. The content on this page does not constitute financial or investment advice. We strongly encourage you to conduct you own research and consult with a qualified financial advisor before making any investment decisions.
