According to the official disclosure of Purrlend, a security incident occurred on April 25, 2026, during deployment on HyperEVM and MegaETH, resulting in a loss of approximately 1.52 million USD.
The cause was that the team’s multi-signature admin wallet was compromised, and the attacker gained multiple management permissions including BRIDGE_ROLE.
They then minted about 2 million pUSDm and 4.85 million pUSDC, among other uncollateralized tokens, through mintUnbacked, and used these as collateral to borrow real assets.
Finally, they withdrew about 1.52 million USD worth of assets from th
原文表示