{"investigation":{"slug":"wasabi-protocol","entity_name":"Wasabi Protocol","trust_score":18,"severity_base":null,"score_modifier":0,"confidence":0.82,"status":"draft","content_type":"investigation","summary":"Wasabi Protocol is a decentralized perpetual futures trading platform backed by Electric Capital, offering leveraged trading on long-tail assets including memecoins and NFTs across Ethereum, Base, Berachain, and Blast. On April 30, 2026, the protocol suffered an estimated $5–5.9 million exploit after an attacker compromised the sole deployer wallet (wasabideployer.eth), which held unchecked ADMIN_ROLE permissions across all upgradeable vault contracts with no multisig or timelock protections. The attacker drained all pool balances within approximately three minutes via UUPS proxy upgrades, subsequently routing the majority of funds through Tornado Cash.","sections":[{"content":"On April 30, 2026, Wasabi Protocol was drained of approximately $5 to $5.9 million across four blockchain networks: Ethereum, Base, Berachain, and Blast. Security firm Blockaid detected the drain in real time and issued public alerts before the protocol had made any official statement. The attack was completed in approximately three minutes, from initial drain to final distribution across attacker-controlled wallets. Estimates of the total loss vary by source, with CoinDesk reporting $4.55 million, The Block and AMBCrypto reporting more than $5 million, and Rekt News reporting $5.9 million. The discrepancy likely reflects different methodologies for accounting assets across four chains and at varying token prices. Virtuals Protocol froze related margin deposits as a precautionary measure following the alert.","heading":"Exploit Overview","sources":[{"url":"https://www.coindesk.com/tech/2026/04/30/wasabi-protocol-drained-for-usd4-5-million-in-apparent-admin-key-compromise","name":"CoinDesk: Wasabi Protocol drained for $4.5 million in apparent admin key compromise","type":"news_article","credibility":1},{"url":"https://www.theblock.co/amp/post/399558/wasabi-protocol-hit-by-more-than-5-million-exploit-across-multiple-chains-security-firms-say","name":"The Block: Wasabi Protocol hit by more than $5 million exploit across multiple chains","type":"news_article","credibility":1},{"url":"https://rekt.news/wasabi-protocol-rekt","name":"Rekt News: Wasabi Protocol Rekt","type":"research","credibility":2},{"url":"https://thedefiant.io/news/hacks/wasabi-protocol-hack","name":"The Defiant: Wasabi Loses $5M+ in Latest DeFi Exploit","type":"news_article","credibility":2}],"severity":"critical"},{"content":"The root cause of the exploit was the protocol's access control architecture. A single externally owned account, wasabideployer.eth (on-chain address 0x5c629f8c0b5368f523c85bfe79d2a8efb64fb0c8), held the sole ADMIN_ROLE across every upgradeable vault Wasabi had deployed. This arrangement lacked three standard governance safeguards: (1) no multisignature wallet sharing administrative authority, meaning compromise of a single private key was sufficient for full protocol control; (2) no timelock introducing a delay between administrative actions and their execution, which would have made any malicious upgrade visible on-chain before it took effect; and (3) no DAO governance body with the ability to intervene. The Universal Upgradeable Proxy Standard (UUPS) pattern used by the vaults allows a contract to change its underlying implementation while retaining the same address — a feature intended for legitimate upgrades that became a direct path to arbitrary code execution on all user deposits once the admin key was compromised.","heading":"Root Cause: Single-EOA Admin Control with No Governance Safeguards","sources":[{"url":"https://www.halborn.com/blog/post/explained-the-wasabi-protocol-hack-april-2026","name":"Halborn: Explained: The Wasabi Protocol Hack (April 2026)","type":"research","credibility":2},{"url":"https://www.coindesk.com/tech/2026/04/30/wasabi-protocol-drained-for-usd4-5-million-in-apparent-admin-key-compromise","name":"CoinDesk: Wasabi Protocol drained for $4.5 million in apparent admin key compromise","type":"news_article","credibility":1},{"url":"https://rekt.news/wasabi-protocol-rekt","name":"Rekt News: Wasabi Protocol Rekt","type":"research","credibility":2}],"severity":"critical"},{"content":"The attacker, using the compromised private key for wasabideployer.eth, executed the following sequence. First, they called grantRole() with a delay parameter of zero, granting ADMIN_ROLE to an attacker-controlled orchestrator contract (identified on-chain as 0x878E94142409DAFCC5CC83D5cD2e9DA2Bf0BF3bF). Second, the orchestrator contract executed UUPS proxy upgrades on multiple Wasabi vault contracts, replacing their legitimate implementations with malicious code while retaining the original contract addresses. Third, the attacker called strategyDeposit() on the malicious implementations to sweep all pool balances. Affected vaults on Ethereum included wWETH, sUSDC, wBITCOIN, wPEPE, and the Long Pool. On Base, affected vaults included sUSDC, wWETH, sBTC, sVIRTUAL, sAERO, and sBRETT. Berachain and Blast deployments were also drained, though for substantially smaller amounts (approximately $50,000 on Berachain). Stolen assets included WETH, PEPE, MOG, USDC, ZYN, REKT, cbBTC, AERO, and VIRTUAL tokens. The attacker consolidated proceeds into ETH, then distributed them across five wallets between 07:53 and 08:01 UTC. The primary attacker EOA is identified as 0x02228b0afcdbEdf8180D96Fc181Da3AF5DD1d1ab. Security firm BlockSec noted that Tornado Cash-funded wallets received admin-level roles and participated in the attack. Subsequently, four of the five identified attacker wallets moved funds through Tornado Cash.","heading":"Attack Mechanics","sources":[{"url":"https://rekt.news/wasabi-protocol-rekt","name":"Rekt News: Wasabi Protocol Rekt","type":"research","credibility":2},{"url":"https://coinedition.com/wasabi-protocol-suffers-over-5m-loss-in-multi-chain-exploit/","name":"CoinEdition: Wasabi Protocol Suffers Over $5M Loss in Multi-Chain Exploit","type":"news_article","credibility":2},{"url":"https://ambcrypto.com/wasabi-protocol-exploit-tied-to-admin-key-breach-5m-drained-across-chains/","name":"AMBCrypto: Wasabi Protocol exploit tied to admin key breach, $5M+ drained across chains","type":"news_article","credibility":2},{"url":"https://www.cryptopolitan.com/wasabi-protocol-exploited-over-5m/","name":"Cryptopolitan: Wasabi Protocol has been exploited for over $5M","type":"news_article","credibility":2}],"severity":"critical"},{"content":"Wasabi Protocol raised $3 million in a seed round led by Electric Capital, which closed in mid-2024 (announced June 18, 2024). Co-investors included Alliance, Memeland, Spencer Ventures, Pudgy Penguins CEO Luca Netz, and Magic Eden co-founder Zhouxun Yin. At the time of the exploit, the protocol reported a total value locked of over $8.5 million in user deposits, more than 18,000 traders, and over $500 million in cumulative trading volume. The protocol offered leveraged perpetuals on long-tail assets — memecoins and NFTs — distinguishing itself from broader DeFi perpetuals platforms. The seed funding and user traction indicate the protocol was a functioning, actively used product, not a nascent or obscure deployment, at the time of the exploit.","heading":"Institutional Background and Prior Funding","sources":[{"url":"https://www.theblock.co/post/300465/memecoin-leverage-trading-protocol-wasabi-funding","name":"The Block: Memecoin leverage trading protocol Wasabi raises $3 million led by Electric Capital","type":"news_article","credibility":1},{"url":"https://bitcoinfoundation.org/news/defi/electric-capital-backed-wasabi-protocol-hit-by-4-5m-exploit/","name":"Bitcoin Foundation: Electric Capital-backed Wasabi Protocol Hit by $4.5M Exploit","type":"news_article","credibility":2},{"url":"https://www.rootdata.com/news/232738","name":"RootData: Wasabi Protocol raised $3M Seed Funding on Jun 18, 2024","type":"other","credibility":2}],"severity":"medium"},{"content":"Wasabi Protocol's initial public response arrived more than two hours after Blockaid's live alert, and contained no loss figure, no transaction hash, and no technical detail. A second statement, issued approximately three hours after the initial alert, added only that SEAL-911 and Blockaid were assisting. The protocol urged users to stop interacting with all contracts until further notice and to revoke approvals to vault contracts. Subsequent statements confirmed that Solana deployments were unaffected. According to multiple reports, the protocol contacted law enforcement including the FBI, and engaged SEAL 911, a security incident response group operating in the DeFi space. As of early May 2026, no final user compensation plan had been announced. Bitget News and CoinCu reported Wasabi Protocol explicitly stating that no final compensation plan was in place, with the post-incident review process still ongoing. No eligibility list, claim process, or distribution schedule had been published.","heading":"Protocol Response and Incident Communication","sources":[{"url":"https://www.bitget.com/news/detail/12560605404710","name":"Bitget News: Wasabi Protocol Says No Final Compensation Plan in Security Response","type":"news_article","credibility":2},{"url":"https://coincu.com/wasabi-protocol-no-final-user-compensation-plan-security-response/","name":"CoinCu: Wasabi Protocol Says No Final User Compensation Plan","type":"news_article","credibility":2},{"url":"https://rekt.news/wasabi-protocol-rekt","name":"Rekt News: Wasabi Protocol Rekt","type":"research","credibility":2},{"url":"https://www.banklesstimes.com/articles/2026/04/30/blockaid-flags-live-admin-key-exploit-hitting-wasabi-protocol-on-ethereum-and-base/","name":"BanklessTimes: Wasabi Protocol Exploit: Admin Key Attack Drains Funds on Ethereum and Base","type":"news_article","credibility":2}],"severity":"high"},{"content":"The Wasabi Protocol exploit occurred on April 30, 2026 — the final day of what multiple security researchers characterized as the worst month for DeFi security on record. April 2026 saw approximately $635 million in losses across 28 or more separate incidents. Other significant events that month included the alleged Drift Protocol exploit on April 1 (approximately $285–286 million, attributed to North Korean Lazarus Group actors who spent months in-person social engineering team members) and the Kelp DAO exploit on April 19 (approximately $292–293 million). CoinDesk reporting on April 30, 2026, noted that North Korean state-backed hackers accounted for approximately 76% of all crypto exploit losses in 2026 at that point, totaling nearly $600 million. TRM Labs attributed the Drift exploit directly to Lazarus Group. The Wasabi exploit has been contextually compared to both Drift and Kelp DAO in terms of its admin key compromise vector, though no specific attribution of the Wasabi attack to any state-sponsored actor has been confirmed by law enforcement as of the time of this investigation. Some reporting noted that Tornado Cash-funded wallets were used in the attack, a pattern observed in Lazarus Group operations, but this alone is not confirmation of attribution.","heading":"Broader Context: April 2026 DeFi Exploit Surge","sources":[{"url":"https://www.coindesk.com/business/2026/04/30/north-korean-hackers-are-moving-faster-they-account-for-76-of-crypto-exploits-this-year-trmlabs","name":"CoinDesk: North Korean hackers account for 76% of crypto exploits this year — TRM Labs","type":"news_article","credibility":1},{"url":"https://svrn.net/news/defi-worst-month-april-2026","name":"SVRN: April 2026 was DeFi's worst month ever — $635M lost across 28 exploits","type":"news_article","credibility":2},{"url":"https://beincrypto.com/wasabi-protocol-exploit-ai-hacker-theory/","name":"BeInCrypto: Wasabi Protocol $5 Million Exploit Accelerates AI-Driven DeFi Hacker Theory","type":"news_article","credibility":2},{"url":"https://www.coindesk.com/tech/2026/04/30/wasabi-protocol-drained-for-usd4-5-million-in-apparent-admin-key-compromise","name":"CoinDesk: Wasabi Protocol drained for $4.5 million in apparent admin key compromise","type":"news_article","credibility":1}],"severity":"high"},{"content":"Security researchers from Halborn, Blockaid, PeckShield, and CertiK each confirmed the exploit and its root cause. The consensus finding is that the exploit was preventable with standard DeFi governance tooling. A multisig requirement on the ADMIN_ROLE would have required multiple signers to approve any role grant, raising the cost of compromise. A timelock on the upgrade function would have created a mandatory delay window between an upgrade proposal and its execution, making malicious code changes visible on-chain before they could take effect. Neither safeguard was present. The deployer EOA held total unilateral control over the entire protocol. There is no public record of a pre-exploit security audit that flagged the admin key concentration risk, though the absence of evidence is not evidence of absence. The exploit did not arise from a flaw in the UUPS standard itself but from the governance architecture around who could invoke it.","heading":"Security Audit and Governance Assessment","sources":[{"url":"https://www.halborn.com/blog/post/explained-the-wasabi-protocol-hack-april-2026","name":"Halborn: Explained: The Wasabi Protocol Hack (April 2026)","type":"research","credibility":2},{"url":"https://medium.com/@favoriteblockchain/anatomy-of-a-preventable-drain-what-the-wasabi-protocol-exploit-teaches-defi-about-admin-key-096abef96408","name":"Medium (Favorite_blockchain_lady): Anatomy of a Preventable Drain","type":"community_report","credibility":3},{"url":"https://en.cryptonomist.ch/2026/05/01/wasabi-protocol-cross-chain-exploit/","name":"Cryptonomist: Wasabi Protocol hit by $5 million admin key exploit across chains","type":"news_article","credibility":2}],"severity":"critical"}],"timeline":[{"date":"2024-06-18","event":"Wasabi Protocol closes $3 million seed round led by Electric Capital, with co-investors including Alliance, Memeland, Spencer Ventures, Pudgy Penguins CEO Luca Netz, and Magic Eden co-founder Zhouxun Yin.","source":"The Block","source_url":"https://www.theblock.co/post/300465/memecoin-leverage-trading-protocol-wasabi-funding"},{"date":"2026-04","event":"Drift Protocol exploited for approximately $285–286 million in a social-engineering and admin key compromise attributed to the North Korean Lazarus Group, establishing the month's pattern of admin key exploits.","source":"CoinDesk","source_url":"https://www.coindesk.com/business/2026/04/30/north-korean-hackers-are-moving-faster-they-account-for-76-of-crypto-exploits-this-year-trmlabs","date_original":"2026-04-01"},{"date":"2026-04-19","event":"Kelp DAO exploited for approximately $292–293 million in a separate admin key compromise incident.","source":"CoinDesk","source_url":"https://www.coindesk.com/tech/2026/04/30/wasabi-protocol-drained-for-usd4-5-million-in-apparent-admin-key-compromise"},{"date":"2026-04-30","event":"Attacker compromises private key of wasabideployer.eth (0x5c629f8c0b5368f523c85bfe79d2a8efb64fb0c8), the sole ADMIN_ROLE holder across all Wasabi Protocol vault contracts on Ethereum, Base, Berachain, and Blast.","source":"Rekt News","source_url":"https://rekt.news/wasabi-protocol-rekt"},{"date":"2026-04-30","event":"Attacker calls grantRole() with delay=0 to assign ADMIN_ROLE to orchestrator contract 0x878E94142409DAFCC5CC83D5cD2e9DA2Bf0BF3bF, then executes UUPS proxy upgrades on all vault contracts, draining the protocol in approximately three minutes.","source":"Rekt News","source_url":"https://rekt.news/wasabi-protocol-rekt"},{"date":"2026-04-30","event":"Blockaid detects the drain live and issues public warnings. Virtuals Protocol freezes related margin deposits as a precaution. Wasabi Protocol's first public statement arrives more than two hours after Blockaid's alert.","source":"BanklessTimes","source_url":"https://www.banklesstimes.com/articles/2026/04/30/blockaid-flags-live-admin-key-exploit-hitting-wasabi-protocol-on-ethereum-and-base/"},{"date":"2026-04-30","event":"Stolen funds distributed across five attacker wallets between 07:53 and 08:01 UTC. Four of the five wallets subsequently route funds through Tornado Cash.","source":"Rekt News","source_url":"https://rekt.news/wasabi-protocol-rekt"},{"date":"2026-04-30","event":"Wasabi Protocol confirms engagement of SEAL-911 and Blockaid for incident response, and states it has contacted law enforcement including the FBI. Users are urged to stop interacting with all contracts and revoke vault approvals.","source":"AMBCrypto","source_url":"https://ambcrypto.com/wasabi-protocol-exploit-tied-to-admin-key-breach-5m-drained-across-chains/"},{"date":"2026-05-04","event":"One attacker wallet (0xd48180d4697ce4b45a8056b0f3d716d10018ed03) still holds 737.36 ETH as of this date, per Rekt News on-chain tracking.","source":"Rekt News","source_url":"https://rekt.news/wasabi-protocol-rekt"},{"date":"2026-05","event":"Reports confirm no final user compensation plan has been announced. Wasabi Protocol states the post-incident review is still ongoing with no eligibility list, claim process, or distribution schedule published.","source":"Bitget News","source_url":"https://www.bitget.com/news/detail/12560605404710","date_original":"2026-05-01"}],"sources_used":[{"url":"https://www.coindesk.com/tech/2026/04/30/wasabi-protocol-drained-for-usd4-5-million-in-apparent-admin-key-compromise","name":"CoinDesk: Wasabi Protocol drained for $4.5 million in apparent admin key compromise","type":"news_article","archive_url":"http://web.archive.org/web/20260501020705/https://www.coindesk.com/tech/2026/04/30/wasabi-protocol-drained-for-usd4-5-million-in-apparent-admin-key-compromise","credibility":1,"archive_timestamp":"2026-05-01T02:07:05+00:00"},{"url":"https://www.theblock.co/amp/post/399558/wasabi-protocol-hit-by-more-than-5-million-exploit-across-multiple-chains-security-firms-say","name":"The Block: Wasabi Protocol hit by more than $5 million exploit across multiple chains","type":"news_article","archive_url":"http://web.archive.org/web/20260501154616/https://www.theblock.co/amp/post/399558/wasabi-protocol-hit-by-more-than-5-million-exploit-across-multiple-chains-security-firms-say","credibility":1,"archive_timestamp":"2026-05-01T15:46:16+00:00"},{"url":"https://www.theblock.co/post/300465/memecoin-leverage-trading-protocol-wasabi-funding","name":"The Block: Memecoin leverage trading protocol Wasabi raises $3 million led by Electric Capital","type":"news_article","archive_url":null,"credibility":1,"archive_error":"error:no-request","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://www.coindesk.com/business/2026/04/30/north-korean-hackers-are-moving-faster-they-account-for-76-of-crypto-exploits-this-year-trmlabs","name":"CoinDesk: North Korean hackers account for 76% of crypto exploits this year — TRM Labs","type":"news_article","archive_url":"http://web.archive.org/web/20260530173909/https://www.coindesk.com/business/2026/04/30/north-korean-hackers-are-moving-faster-they-account-for-76-of-crypto-exploits-this-year-trmlabs","credibility":1,"archive_timestamp":"2026-05-30T17:39:09+00:00"},{"url":"https://rekt.news/wasabi-protocol-rekt","name":"Rekt News: Wasabi Protocol Rekt","type":"research","archive_url":"http://web.archive.org/web/20260609200806/https://rekt.news/wasabi-protocol-rekt","credibility":2,"archive_timestamp":"2026-06-09T20:08:06+00:00"},{"url":"https://thedefiant.io/news/hacks/wasabi-protocol-hack","name":"The Defiant: Wasabi Loses $5M+ in Latest DeFi Exploit","type":"news_article","archive_url":"http://web.archive.org/web/20260720064957/https://thedefiant.io/news/hacks/wasabi-protocol-hack","credibility":2,"archive_timestamp":"2026-07-20T06:49:57+00:00"},{"url":"https://www.halborn.com/blog/post/explained-the-wasabi-protocol-hack-april-2026","name":"Halborn: Explained: The Wasabi Protocol Hack (April 2026)","type":"research","archive_url":"http://web.archive.org/web/20260520124514/https://www.halborn.com/blog/post/explained-the-wasabi-protocol-hack-april-2026","credibility":2,"archive_timestamp":"2026-05-20T12:45:14+00:00"},{"url":"https://ambcrypto.com/wasabi-protocol-exploit-tied-to-admin-key-breach-5m-drained-across-chains/","name":"AMBCrypto: Wasabi Protocol exploit tied to admin key breach, $5M+ drained across chains","type":"news_article","archive_url":"http://web.archive.org/web/20260501092805/https://ambcrypto.com/wasabi-protocol-exploit-tied-to-admin-key-breach-5m-drained-across-chains/","credibility":2,"archive_timestamp":"2026-05-01T09:28:05+00:00"},{"url":"https://coinedition.com/wasabi-protocol-suffers-over-5m-loss-in-multi-chain-exploit/","name":"CoinEdition: Wasabi Protocol Suffers Over $5M Loss in Multi-Chain Exploit","type":"news_article","archive_url":"https://web.archive.org/web/20260724220635/https://coinedition.com/wasabi-protocol-suffers-over-5m-loss-in-multi-chain-exploit/","credibility":2,"archive_timestamp":"2026-07-24T22:06:35+00:00"},{"url":"https://www.cryptopolitan.com/wasabi-protocol-exploited-over-5m/","name":"Cryptopolitan: Wasabi Protocol has been exploited for over $5M","type":"news_article","archive_url":"https://web.archive.org/web/20260725100817/https://www.cryptopolitan.com/wasabi-protocol-exploited-over-5m/","credibility":2,"archive_timestamp":"2026-07-25T10:08:17+00:00"},{"url":"https://www.banklesstimes.com/articles/2026/04/30/blockaid-flags-live-admin-key-exploit-hitting-wasabi-protocol-on-ethereum-and-base/","name":"BanklessTimes: Wasabi Protocol Exploit: Admin Key Attack Drains Funds on Ethereum and Base","type":"news_article","archive_url":"http://web.archive.org/web/20260515141113/https://www.banklesstimes.com/articles/2026/04/30/blockaid-flags-live-admin-key-exploit-hitting-wasabi-protocol-on-ethereum-and-base/","credibility":2,"archive_timestamp":"2026-05-15T14:11:13+00:00"},{"url":"https://bitcoinfoundation.org/news/defi/electric-capital-backed-wasabi-protocol-hit-by-4-5m-exploit/","name":"Bitcoin Foundation: Electric Capital-backed Wasabi Protocol Hit by $4.5M Exploit","type":"news_article","archive_url":"https://web.archive.org/web/20260725042847/https://bitcoinfoundation.org/news/defi/electric-capital-backed-wasabi-protocol-hit-by-4-5m-exploit/","credibility":2,"archive_timestamp":"2026-07-25T04:28:47+00:00"},{"url":"https://www.bitget.com/news/detail/12560605404710","name":"Bitget News: Wasabi Protocol Says No Final Compensation Plan in Security Response","type":"news_article","archive_url":"https://web.archive.org/web/20260724234003/https://www.bitget.com/news/detail/12560605404710","credibility":2,"archive_timestamp":"2026-07-24T23:40:03+00:00"},{"url":"https://coincu.com/wasabi-protocol-no-final-user-compensation-plan-security-response/","name":"CoinCu: Wasabi Protocol Says No Final User Compensation Plan","type":"news_article","archive_url":"https://web.archive.org/web/20260725043213/https://coincu.com/wasabi-protocol-no-final-user-compensation-plan-security-response/","credibility":2,"archive_timestamp":"2026-07-25T04:32:13+00:00"},{"url":"https://beincrypto.com/wasabi-protocol-exploit-ai-hacker-theory/","name":"BeInCrypto: Wasabi Protocol $5 Million Exploit Accelerates AI-Driven DeFi Hacker Theory","type":"news_article","archive_url":null,"credibility":2,"archive_error":"error:no-request","archive_status":"unarchivable","archive_timestamp":null},{"url":"https://svrn.net/news/defi-worst-month-april-2026","name":"SVRN: April 2026 was DeFi's worst month ever — $635M lost across 28 exploits","type":"news_article","archive_url":"https://web.archive.org/web/20260724231843/https://svrn.net/news/defi-worst-month-april-2026","credibility":2,"archive_timestamp":"2026-07-24T23:18:43+00:00"},{"url":"https://www.rootdata.com/news/232738","name":"RootData: Wasabi Protocol raised $3M Seed Funding on Jun 18, 2024","type":"other","archive_url":"https://web.archive.org/web/20260725102309/https://www.rootdata.com/news/232738","credibility":2,"archive_timestamp":"2026-07-25T10:23:09+00:00"},{"url":"https://news.bitcoin.com/wasabi-protocol-loses-5m-after-attacker-seizes-deployer-admin-key-across-3-chains/","name":"Bitcoin.com News: Wasabi Protocol Loses $5M After Attacker Seizes Deployer Admin Key Across 3 Chains","type":"news_article","archive_url":"https://web.archive.org/web/20260724230540/https://news.bitcoin.com/wasabi-protocol-loses-5m-after-attacker-seizes-deployer-admin-key-across-3-chains/","credibility":2,"archive_timestamp":"2026-07-24T23:05:40+00:00"},{"url":"https://www.cryptotimes.io/2026/04/30/wasabi-protocol-hack-drains-5m-across-ethereum-base-and-blast/","name":"CryptoTimes: Wasabi Protocol Hack Drains $5M Across Ethereum, Base, and Blast","type":"news_article","archive_url":"https://web.archive.org/web/20260725004117/https://www.cryptotimes.io/2026/04/30/wasabi-protocol-hack-drains-5m-across-ethereum-base-and-blast/","credibility":2,"archive_timestamp":"2026-07-25T00:41:17+00:00"},{"url":"https://medium.com/@favoriteblockchain/anatomy-of-a-preventable-drain-what-the-wasabi-protocol-exploit-teaches-defi-about-admin-key-096abef96408","name":"Medium (Favorite_blockchain_lady): Anatomy of a Preventable Drain","type":"community_report","archive_url":"https://web.archive.org/web/20260726034421/https://favoriteblockchain.medium.com/anatomy-of-a-preventable-drain-what-the-wasabi-protocol-exploit-teaches-defi-about-admin-key-096abef96408","credibility":3,"archive_timestamp":"2026-07-26T03:44:21+00:00"}],"source_tags":[],"addresses":[],"reviewed":false,"reviewed_by":null,"model_used":"claude-sonnet-4-6","created_at":"2026-05-28T03:33:12.495727+00:00","updated_at":"2026-07-26T04:03:52.695618+00:00"}}