Skip to main content
Featured AnalysisPrimary topicSecurity

Deployer admin key compromise enables multi-chain upgrade exploit, siphoning ~$5M from Wasabi perpetuals

Wasabi Protocol lost millions after an attacker seized a deployer/admin key and upgraded contracts to drain funds across multiple chains.

Apr 30, 202611:58 AMNewsroom AI

Wasabi Protocol, a perpetuals trading platform, suffered a multi-chain exploit that drained between roughly $4.5 million and more than $5 million after an attacker seized an admin/deployer key, according to reporting by security firms and crypto outlets [1] [2] [3].

Security firm Blockaid traced the breach to a deployer wallet that held the sole ADMIN_ROLE in Wasabi’s permission system; the attacker used the compromised admin key to upgrade vault contracts and withdraw funds from affected chains, including Ethereum and Base [2] [1].

Observers and news outlets highlighted that the incident underscores the critical need for robust admin-key protections and secure governance controls in DeFi platforms, noting the attack moved funds across multiple chains [4] [3].

Investigations and on-chain analysis are ongoing; reported loss estimates vary by outlet, but the exploit has renewed attention on permissioned-key risk and upgradeability controls in decentralized finance [1] [2] [4].

Was this useful?

Anonymous signal used only for weekly cluster rankings. No public counters.

Share

Broadcast this coverage

Copy-ready links for the networks your audience checks first.

Support independent reporting

If this summary helped, a small tip helps keep ClusterWire running.

Privacy note: we log tip UI events (page + action, and article slug when applicable) to improve the feature. We don’t store IP address, user-agent, or wallet addresses in analytics. Tips are on-chain, so the sending address is public in the transaction.

Source Ledger

Citations

Follow the primary reporting behind this analysis. Click a citation to open the referenced source in a new tab.

Themes

Themes driving this story

Curated from the cluster of sources powering this article.

DeFiThemeSecurity/HacksThemeEthereumThemeBitcoinThemeAltcoinsTheme
Live Wire

Latest Coverage

Real-time crypto intelligence ordered by publication time.

35h ago

SEC pauses plan to permit tokenized U.S. stocks over legal, operational and investor-protection concerns

The U.S. Securities and Exchange Commission has paused a planned "innovation exemption" for tokenized U.S. stocks amid legal and technical concerns, delaying regulatory clarity …

Read more
42h ago

House Oversight Demands Kalshi and Polymarket Records Amid Insider Trading Inquiry

House Oversight Committee Chair Rep. James Comer has opened a probe into alleged insider trading at prediction-market platforms Kalshi and Polymarket and has sought information …

Read more
43h ago

Intercontinental Exchange joins OKX to launch always-open Brent and WTI perpetual futures for crypto users

Intercontinental Exchange and crypto exchange OKX will list perpetual oil futures tied to ICE Brent and WTI, bringing 24/7 crude exposure to OKX users.

Read more
43h ago

Bitcoin Pizza Day 2026: Anniversary Observed as 10,000 BTC Drops $300M and Community Debates Its Legend

Bitcoin Pizza Day 2026 is being observed as the 10,000 BTC used in the original 2010 pizza purchase is roughly $300 million cheaper than a year ago [1].

Read more
45h ago

Verus recovers 4,052 ETH after negotiated bounty deal that lets exploiter keep 1,350 ETH

Verus recovered 4,052 ETH (about $8.5M) after a bounty deal that left the exploiter with 1,350 ETH [1][3][4].

Read more
46h ago

On-chain watchers flag UMA adapter exploit on Polygon; $520K-$660K traced, Polymarket says user funds safe

On-chain investigators flagged activity on Polymarket’s UMA CTF Adapter on Polygon; estimates of assets moved vary across reports while Polymarket says user funds remain safe.

Read more