Yearn Finance Faces New Security Breach in yETH Liquidity Pool

12/1/2025, 2:54:56 AM
Beginner
Quick Reads
Yearn Finance's yETH pool was recently hit by a highly sophisticated attack. The attacker used manipulated minting events to rapidly withdraw the majority of LST assets from the pool. This resulted in millions of dollars in losses. While Yearn's primary Vault products remained unaffected, this incident highlights the ongoing security challenges DeFi protocols face in cross-contract interactions, minting mechanisms, and asset pool governance.

Major Security Risk Hits Yearn Finance yETH Pool

Yearn Finance, the decentralized yield protocol, has once again faced a security incident. The yETH liquidity pool recently experienced irregular trading activity, with a substantial volume of Liquid Staking Tokens (LSTs) withdrawn in a short span. As the primary pool aggregating leading LSTs, the yETH pool is a cornerstone of the Yearn protocol. This incident is a significant concern for the market.

Attack Method: Forged Minting and Instant Pool Drain

On-chain data shows that the attacker deployed a series of custom contracts to mint an unlimited supply of yETH tokens in a single transaction. Using these artificially generated tokens, they exchanged for all LST assets in the pool, resulting in the pool being emptied within seconds. The losses are estimated at several million US dollars.

Following the attack, approximately 1,000 ETH (about $3 million) was quickly transferred into Tornado Cash, complicating efforts to trace the funds. Multiple attack contracts self-destructed after execution, highlighting the attack’s meticulous planning and technical sophistication.

Loss Estimates Await Official Confirmation

Prior to the incident, the yETH pool held roughly $11 million in assets. However, the actual losses require confirmation from Yearn Finance and blockchain security teams, as some ETH may have been consumed or become untraceable during the exploit.

On-chain analyst Togbe was the first to detect the breach, identifying anomalies while tracking large fund movements and bringing the attack to light.

Official Response and Historical Context


(Source: yearnfi)

Yearn Finance announced on X that it is actively investigating the incident. The team emphasized that V2 and V3 Vaults remain unaffected. The protocol has previously faced several security and technical challenges:

  • 2021: yDAI Vault vulnerability resulted in losses of approximately $11 million
  • 2022: Founder Andre Cronje announced his departure from the project
  • Late 2023: A script error reduced treasury assets by 63%, though user funds were not impacted

As of now, Yearn’s team has not released further details from its investigation. The market continues to await additional updates.

To learn more about Web3, sign up here: https://www.gate.com/

Summary

This incident demonstrates that even long-standing DeFi protocols with robust communities and audit histories remain vulnerable to flaws in contract logic, cross-contract interactions, and governance design. Yearn Finance needs to focus not only on fixing vulnerabilities but also on restoring market trust. The broader DeFi ecosystem is reminded that security audits, monitoring systems, and ongoing maintenance are critical for long-term stability. While innovation drives DeFi forward, striking the right balance between speed and security will ultimately determine the sector’s longevity and success.

Author: Allen
* The information is not intended to be and does not constitute financial advice or any other recommendation of any sort offered or endorsed by Gate.
* This article may not be reproduced, transmitted or copied without referencing Gate. Contravention is an infringement of Copyright Act and may be subject to legal action.

Share

Crypto Calendar
Abu Dhabi Buluşması
Helium, 10 Aralık'ta Abu Dhabi'de Helium House networking etkinliğine ev sahipliği yapacak ve bu etkinlik, 11-13 Aralık tarihlerinde düzenlenecek olan Solana Breakpoint konferansının öncesi olarak konumlandırılacak. Tek günlük toplantıda, Helium ekosistemindeki profesyonel ağ kurma, fikir alışverişi ve topluluk tartışmalarına odaklanılacak.
HNT
-0.85%
2025-12-09
Hayabusa Yükseltmesi
VeChain, Aralık ayında planlanan Hayabusa yükseltmesini duyurdu. Bu yükseltmenin, protokol performansını ve tokenomi'yi önemli ölçüde artırmayı hedeflediği belirtiliyor ve ekip, bu güncellemeyi bugüne kadarki en çok fayda odaklı VeChain sürümü olarak nitelendiriyor.
VET
-3.53%
2025-12-27
Litewallet Gün Batımları
Litecoin Vakfı, Litewallet uygulamasının 31 Aralık'ta resmi olarak sona ereceğini duyurdu. Uygulama artık aktif olarak korunmamakta olup, bu tarihe kadar yalnızca kritik hata düzeltmeleri yapılacaktır. Destek sohbeti de bu tarihten sonra sona erecektir. Kullanıcıların Nexus Cüzdan'a geçiş yapmaları teşvik edilmektedir; Litewallet içinde geçiş araçları ve adım adım bir kılavuz sağlanmıştır.
LTC
-1.1%
2025-12-30
OM Token Göçü Sona Erdi
MANTRA Chain, kullanıcıları OM token'larını 15 Ocak'tan önce MANTRA Chain ana ağına taşımaları için bir hatırlatma yayınladı. Taşıma işlemi, $OM'nin yerel zincirine geçişi sırasında ekosistemdeki katılıma devam edilmesini sağlar.
OM
-4.32%
2026-01-14
CSM Fiyat Değişikliği
Hedera, Ocak 2026'dan itibaren KonsensüsSubmitMessage hizmeti için sabit USD ücretinin $0.0001'den $0.0008'e yükseleceğini duyurdu.
HBAR
-2.94%
2026-01-27
sign up guide logosign up guide logo
sign up guide content imgsign up guide content img
Start Now
Sign up and get a
$100
Voucher!
Create Account

Related Articles

2025 BTC Price Prediction: BTC Trend Forecast Based on Technical and Macroeconomic Data
Beginner

2025 BTC Price Prediction: BTC Trend Forecast Based on Technical and Macroeconomic Data

This article will provide a systematic interpretation of the Bitcoin price trend in 2025 from the perspectives of technical analysis, on-chain data, and macroeconomic factors, combining the latest trends and data, and supplemented with example charts to help investors form a comprehensive judgment.
7/11/2025, 10:42:17 AM
Pi Coin Transaction Guide: How to Transfer to Gate.com
Beginner

Pi Coin Transaction Guide: How to Transfer to Gate.com

Pi Network is a decentralized cryptocurrency network for the general public, using the Stellar Consensus Protocol (SCP) consensus mechanism, which allows users to easily mine Pi tokens from their mobile devices and use them for payments and transactions. With the official opening of the mainnet on February 20, 2025, investors can deposit and trade $PI on exchanges such as Gate.com. This article details how to securely transfer Pi Coins to Gate.com, including obtaining a deposit address, completing the transfer using the Pi Network mainnet wallet, and the exchange's arrival confirmation process. In addition, we have analysed $PI investment risks, including market volatility, compliance and potential fraud risks, to remind investors to take risk management before trading.
2/25/2025, 8:21:43 AM
Flare Crypto Explained: What Is Flare Network and Why It Matters in 2025
Beginner

Flare Crypto Explained: What Is Flare Network and Why It Matters in 2025

Discover what Flare Crypto is, how it works, its use cases, tokenomics, and why it's gaining traction in the blockchain space in 2025.
4/15/2025, 1:21:45 AM
How to Use a Crypto Whale Tracker: Top Tool Recommendation for 2025 to Follow Whale Moves
Beginner

How to Use a Crypto Whale Tracker: Top Tool Recommendation for 2025 to Follow Whale Moves

This article will take you through what is a crypto whale tracker and why it has become the "must-have weapon" for encryption investors. We will recommend seven mainstream Whale tracking tools, and combined with usage scenarios, teach you how to efficiently use these tools to obtain first-hand signals from the market. Of course, Whale behavior may also be a "lure," so while using these tools, you also need to have a certain level of judgment and data interpretation ability. This article is suitable for beginners to quickly get started, as well as for experienced players to optimize strategies.
4/14/2025, 6:57:17 AM
What is N2: An AI-Driven Layer 2 Solution
Beginner

What is N2: An AI-Driven Layer 2 Solution

This article introduces N2 (Niggachain AI Layer 2), the world's first AI-driven Layer 2 blockchain solution. N2 combines AI technology and quantum computing resistance to address the limitations of traditional blockchains in scalability, transaction speed, and cost. Its core technologies include '0-second block time', AI-driven network optimization, and quantum-resistant security protection, aiming to improve transaction efficiency and ensure system stability.
12/23/2024, 7:21:00 AM
Understand Baby doge coin in one article
Beginner

Understand Baby doge coin in one article

Baby Doge Coin, also known as "Baby Dog Token", is a meme token derived from the Dogecoin community, which gained popularity through Elon Musk's tweets and enhanced token utility through mechanisms such as deflation, payment integration, and NFT ecosystem. This article comprehensively analyzes the project background, token information, application scenarios, and market performance of Baby Doge, helping investors quickly understand its potential and risks.
2/14/2025, 4:53:03 PM