logo

Revisiting Beanstalk Farms Exploit

ID: f7450b3b-9e79-59cd-bf27-737172fd42fc

STIX ID: report--f7450b3b-9e79-59cd-bf27-737172fd42fc

Feed Name: CertiK Blog

Threat Score
85/100

Date Published: 2022-07-28

Date Updated: 2026-06-11

...
...

A flash-loan governance exploit targeted Beanstalk Farms on 2022-04-17: the attacker used flash loans to obtain and deposit large amounts of tokens to create voting power, passed a malicious proposal (InitBip18/BIP18) that enabled an emergencyCommit() transfer, drained protocol liquidity (reported ~$182M affected, ~$76M profit), converted proceeds to ETH and routed funds through Tornado Cash; Beanstalk paused governance following the incident.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.