Yearn Finance Hit by 63% Treasury Loss Due to Script Glitch

Maxwell Mutuma
December 14, 2023
Why Trust CoinGape
CoinGape has covered the cryptocurrency industry since 2017, aiming to provide informative insights to our readers. Our journal analysts bring years of experience in market analysis and blockchain technology to ensure factual accuracy and balanced reporting. By following our Editorial Policy, our writers verify every source, fact-check each story, rely on reputable sources, and attribute quotes and media correctly. We also follow a rigorous Review Methodology when evaluating exchanges and tools. From emerging blockchain projects and coin launches to industry events and technical developments, we cover all facets of the digital asset space with unwavering commitment to timely, relevant information.
Yearn.finance (YFI) Price Crashes 45% Within Hours, What's Happening?

In a significant setback for Yearn Finance, a leading player in the decentralized finance (DeFi) sector, a script malfunction in its multisig (multi-signature) system led to a substantial loss of its treasury assets. The incident on December 11 resulted in the unintended swap of Yearn’s treasury balance, amounting to a loss of approximately 63%.

The company confirmed that the loss affected only the treasury funds and did not impact customer funds. The mishap involved the accidental exchange of 3,794,894 lp-yCRVv2 tokens from Yearn’s treasury. This transaction, executed on CoW Swap, led to significant market slippage due to the large volume involved, further exacerbating the loss.

Advertisement
Advertisement

Yearn Finance Treasury Error Triggers Huge Loss

The event unfolded as a result of multiple oversights in handling the treasury funds. Yearn’s statement explained that the entire treasury balance, including fees, was mistakenly transferred to a trading multisig, initiating over 30 trade orders. Among these was the critical swap of the treasury balance.

This transaction’s complexity and high volume of trades hindered effective human review, allowing the error to pass unnoticed. The protocol identified that the script used for token swapping lacked adequate output checks and contained a logical flaw. This flaw failed to cap the trade size, leading to the unintended large-scale transaction.

Advertisement
Advertisement

New Safety Steps at Yearn Post Loss

Yearn Finance has implemented several measures to prevent a recurrence in response to this incident. The protocol plans to segregate protocol-owned liquidity (POL) funds into separate entities and enhance its trading scripts to produce more comprehensible output messages. Additionally, it will enforce stricter price impact thresholds during trades.

This incident is not the first security challenge Yearn has faced. Earlier in the year, the protocol was the target of an attack where a vulnerability in a Yearn vault was exploited, resulting in the theft of approximately $11 million in stablecoins. The attacker utilized a small amount of tether (USDT) to mint a vast quantity of yUSDT. This Yearn-equivalent token was exchanged for stablecoins, culminating in a significant financial loss for the protocol.

Yearn Finance has reached out to the community, appealing to those who profited from arbitraging the mistake to return a reasonable amount to Yearn’s main multisig wallet, ychad.eth. This appeal highlights the collaborative and self-regulating nature of the DeFi community.

Read Also: FASB Introduces Fair-Value Crypto Accounting Standards

Advertisement
coingape google news coingape google news
Investment disclaimer: The content reflects the author’s personal views and current market conditions. Please conduct your own research before investing in cryptocurrencies, as neither the author nor the publication is responsible for any financial losses.
Ad Disclosure: This site may feature sponsored content and affiliate links. All advertisements are clearly labeled, and ad partners have no influence over our editorial content.

Why Trust CoinGape

CoinGape has covered the cryptocurrency industry since 2017, aiming to provide informative insights Read more…to our readers. Our journal analysts bring years of experience in market analysis and blockchain technology to ensure factual accuracy and balanced reporting. By following our Editorial Policy, our writers verify every source, fact-check each story, rely on reputable sources, and attribute quotes and media correctly. We also follow a rigorous Review Methodology when evaluating exchanges and tools. From emerging blockchain projects and coin launches to industry events and technical developments, we cover all facets of the digital asset space with unwavering commitment to timely, relevant information.

About Author
About Author
Maxwell is a crypto-economic analyst and Blockchain enthusiast, passionate about helping people understand the potential of decentralized technology. I write extensively on topics such as blockchain, cryptocurrency, tokens, and more for many publications. My goal is to spread knowledge about this revolutionary technology and its implications for economic freedom and social good.
Investment disclaimer: The content reflects the author’s personal views and current market conditions. Please conduct your own research before investing in cryptocurrencies, as neither the author nor the publication is responsible for any financial losses.
Ad Disclosure: This site may feature sponsored content and affiliate links. All advertisements are clearly labeled, and ad partners have no influence over our editorial content.