Crema Finance Exploit
ID: 06aebbe1-7308-52f2-9ba9-a9f29a75d08b
STIX ID: report--06aebbe1-7308-52f2-9ba9-a9f29a75d08b
Feed Name: CertiK Blog
Threat Score
Crema Finance was exploited on 02–03 July 2022 via flashloans that abused a spoofed tick account and flaws in claim()/WithdrawAllTokenTypes() handling, resulting in roughly $8.78M drained (including ~69k SOL and assets bridged as ~6,064 ETH to 0x8021…). The team suspended the contract, initiated an investigation, and offered an $800k bounty with a 72-hour deadline, but the attacker’s on-chain behavior suggests they will not return the funds.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
