Public AML

Solido Cash Exploited Due to Oracle Misassignment

Solido Cash experienced an exploit resulting in a loss of $73,400. The incident was caused by an oracle misassignment that overvalued collateral, allowing the attacker to mint excess CASH.

The exploit involved an oracle misassignment on SOLID collateral, which led to a stale feed fallback to the CASH oracle. This misconfiguration allowed the attacker to deposit cheap collateral, mint excess CASH, and subsequently sell it on decentralized exchanges for SUPRA, resulting in significant gains for the attacker.

No user funds were affected by the exploit; however, the losses primarily impacted liquidity providers and protocol reserves. In response to the incident, Solido Cash paused relevant functions and released a forensic report to address the vulnerabilities.

Sources

Share:XTelegramLinkedIn