← Bonzo Lend1 decision on this page
Audit log
Every state-changing event for Bonzo Lend: moderation decisions on community submissions, plus corrections and updates from the news pipeline. URL-based decisions are designed to carry three independent witnesses — the original source, an Internet Archive snapshot, and a Solana memo signed by our publicly-disclosed publisher key. Archive coverage is still being backfilled, so each decision below reports its own snapshot status rather than assuming one exists.
- #1publishby system:backfill2026-07-26 17:12:01ZScore: ? → ? (no score change)anchorpending
- chain
- ●—
- hash
4RgdMEVybBgf…gYnXkdBrsha256 → base58
verifying row…canonical bytes (26133 B) ▸
{"actor":"system:backfill","investigation_id":"c14918b0-c12b-45f1-bd69-355ef003c1f2","kind":"publish","page_slug":"bonzo-lend","published_at":"2026-07-26T17:12:01.827Z","sequence_num":1,"snapshot":{"content_type":"investigation","entity_name":"Bonzo Lend","sections":[{"content":"Bonzo Finance Labs was founded by Brady Gentile (Co-Founder and CEO), who has more than six years of experience with the Hedera ecosystem, having previously worked at Hedera and Swirlds Labs, and Gaurang (Co-Founder and CTO). The broader team includes software engineers, a frontend developer, and marketing staff. The protocol was built as an adaptation of the Aave v2 open-source lending architecture, modified to support Hedera's EVM compatibility layer and its native Hedera Token Service (HTS). Bonzo Finance competed at ETHDenver 2024 BuidlWeek in the Hedera bounty category titled 'Data-Driven DeFi: Revolutionize Finance with Oracle Feeds,' winning first place. The protocol described itself as the 'liquidity layer of Hedera,' offering non-custodial lending, borrowing, staking, and yield strategies. At the time of the July 2026 exploit, it was Hedera's largest lending protocol by total value locked. The protocol had previously received a smart-contract audit from security firm Halborn. Bonzo Lend integrated Supra's on-demand pull oracle for price feeds, a dependency that became central to the July 2026 incident.","heading":"Protocol Background","severity":"low","sources":[{"credibility":2,"name":"Bonzo Finance: Pioneering Lending and Borrowing for Hedera DeFi (Official Blog)","type":"official","url":"https://bonzo.finance/blog/bonzo-finance-pioneering-lending-and-borrowing-for-hedera-defi"},{"credibility":2,"name":"Bonzo Finance Team — Litepaper Documentation","type":"official","url":"https://docs.bonzo.finance/bonzo-finance-litepaper/team"},{"credibility":2,"name":"Hedera Case Study: Bonzo Finance","type":"official","url":"https://hedera.com/case-study/bonzo/"},{"credibility":2,"name":"Halborn Audit Reports — Bonzo Finance","type":"research","url":"https://www.halborn.com/audits/bonzo-finance"}]},{"content":"At approximately 00:39 UTC on July 11, 2026, an attacker identified as Wallet A (Hedera account 0.0.10633526, EVM alias 0x9a4966152f6e10b33cb7a37975e8619816d6a494) deposited 250 SAUCE tokens — worth approximately three dollars at market prices — into Bonzo Lend as collateral. At 00:51:39 UTC, the same wallet submitted a manipulated price update to Supra's pull oracle contract (Hedera contract 0.0.4323024) for the SAUCE/HBAR trading pair (pair ID 425). The submitted price update carried a BLS signature with both the signature field and the referenced committee public key set to zero, representing the cryptographic 'point at infinity' or identity element. Supra's verifier contract (0.0.4323006) failed to reject this input and instead passed it to Hedera's pairing precompile (system contract 0.0.8). Because both points were the mathematical identity, the pairing equation evaluated to true by definition, causing the verifier to treat the result as valid cryptographic proof of an authorized price committee signature. The manipulated update inflated SAUCE's recorded price by approximately twelve orders of magnitude above its market value. Eight seconds after the corrupted price reached on-chain storage, Wallet A borrowed 6.63 million USDC at 00:51:47 UTC, followed by 34.52 million wrapped HBAR (WHBAR) at 00:51:57 UTC, against collateral worth a few dollars. A second account, Wallet B (Hedera account 0.0.683607), subsequently borrowed approximately $1.0 million in additional assets under the same inflated price conditions between approximately 01:11 and 01:36 UTC. Wallet B later contacted the Bonzo team via Discord, identified itself as a white-hat responder, and stated it intended to return those funds. At 01:36 UTC, a legitimate oracle update restored the correct SAUCE price. Bonzo Lend was paused at 01:41 UTC. Bonzo Finance Labs attributed the root cause entirely to Supra's verifier contract, noting that Bonzo Lend's own smart contracts 'functioned exactly as designed' given the corrupted price input.","heading":"The July 11, 2026 Oracle Exploit","severity":"critical","sources":[{"credibility":1,"name":"Bonzo Lend Incident Report: Oracle Provider Exploit (Official)","type":"official","url":"https://bonzo.finance/blog/bonzo-lend-incident-report-oracle-provider-exploit"},{"credibility":2,"name":"Bonzo Finance — Rekt News","type":"research","url":"https://rekt.news/bonzo-finance-rekt"},{"credibility":1,"name":"CoinDesk: Lending Protocol Bonzo Loses 77% of Value Locked as $9 Million Oracle Exploit Rattles Hedera","type":"news_article","url":"https://www.coindesk.com/web3/2026/07/11/lending-protocol-bonzo-loses-77-of-value-locked-as-usd9-million-oracle-exploit-rattles-hedera"},{"credibility":1,"name":"CoinTelegraph: Oracle Exploit Drains $9M From Bonzo Lend on Hedera","type":"news_article","url":"https://cointelegraph.com/news/bonzo-lend-9m-oracle-exploit-hedera"},{"credibility":2,"name":"CryptoSlate: How a Zeroed Oracle Signature Unlocked $9M from Hedera DeFi Lender Bonzo Lend","type":"news_article","url":"https://cryptoslate.com/how-a-zeroed-oracle-signature-unlocked-9m-from-hedera-defi-lender-bonzo-lend/"}]},{"content":"The underlying vulnerability resided in the `requireHashVerified_V2` function within Supra's on-chain oracle verifier contract (0.0.4323006 on Hedera). Security analysts identified three absent input validation checks that collectively allowed the exploit: (1) the function performed no range validation on the committee ID lookup; (2) it did not reject identity element keys or signatures before passing them to the pairing precompile; and (3) it performed no on-curve validation before pairing operations. The absence of an identity-element check alone would have prevented the attack. Because both the submitted signature point and the referenced committee public key resolved to zero (the point at infinity), the BLS pairing equation was satisfied trivially — the cryptographic library correctly computed the identity, returning true. The verifier then treated this mathematically correct but semantically meaningless result as proof of authorized committee endorsement, allowing the manipulated price to propagate to on-chain storage. According to Supra CEO Joshua Tobkin, the flaw had gone undetected for two years and was surfaced by 'AI-assisted hacking that found what human eyes had missed.' Supra's only documented prior audit, a MoveBit report, covered Aptos contracts and did not include the Hedera `requireHashVerified_V2` implementation. Separately, analyst Tomachi Anura documented that Supra deployed a patched verifier to at least eleven other blockchains — including Base (June 29, 2026) and Polygon (July 3, 2026) — in the days before the Hedera exploit. Hedera remained unpatched until approximately six hours after the July 11 attack. Supra acknowledged the vulnerability publicly and stated it deployed a fix for the affected verifier following the incident.","heading":"Supra Oracle Vulnerability: Technical Analysis","severity":"critical","sources":[{"credibility":2,"name":"Protos: Supra Patched Oracle on 11 Other Chains Before $9M Hedera Exploit","type":"news_article","url":"https://protos.com/supra-patched-oracle-on-11-other-chains-before-9m-hedera-exploit/"},{"credibility":2,"name":"CryptoDaily: Bonzo Lend's $9M Oracle Exploit: Why Verifier Assumptions Are DeFi's Weak Link","type":"news_article","url":"https://cryptodaily.co.uk/2026/07/bonzo-lend-9m-oracle-verifier"},{"credibility":2,"name":"Blockonomi: Bonzo Lend Loses $9.05M in Hedera Oracle Exploit Linked to Supra Flaw","type":"news_article","url":"https://blockonomi.com/bonzo-lend-loses-9-05m-in-hedera-oracle-exploit-linked-to-supra-flaw"},{"credibility":2,"name":"Bonzo Finance — Rekt News","type":"research","url":"https://rekt.news/bonzo-finance-rekt"}]},{"content":"Following the exploit, stolen assets were rapidly moved off the Hedera network. The primary attacker (Wallet A) bridged approximately $5.25 million worth of assets to Ethereum via the LayerZero bridge and routed additional funds through Stargate integrations to Arbitrum and Base. Intermediate swaps converted the stolen USDC and WHBAR into WBTC and stablecoins before final conversion to ETH. The receiving Ethereum wallet (0xaf20D792A19fD42dCf697ceBa6100291D96dD93e) accumulated approximately 2,360 ETH and 15.58 WBTC. The stolen funds were subsequently deposited into the Tornado Cash mixing service. Analysis of on-chain data revealed that the attacker's Ethereum wallet had been pre-seeded with 1 ETH from Tornado Cash approximately ten hours before the exploit, a pattern consistent with deliberate pre-positioning. Supra CEO Joshua Tobkin publicly offered the attacker a 72-hour window to return the funds, proposing that the attacker keep $100,000, receive no prosecution, and be offered guaranteed employment at Supra, while warning that a bounty — growing 10% per year — would otherwise be placed on whoever ultimately turned them in. The Supra recovery address for this offer was 0x913BDd807608DEA920C689a7c3222E94e07551cC. As of the most recent reporting, no substantive recovery of attacker funds had been confirmed.","heading":"Fund Movement and Asset Laundering","severity":"critical","sources":[{"credibility":2,"name":"CryptoTimes: Hedera's Biggest DeFi Lender Bonzo Lend Hacked for $9M, $5.25M Bridged to Ethereum","type":"news_article","url":"https://www.cryptotimes.io/2026/07/11/hederas-biggest-defi-lender-bonzo-lend-hacked-for-9m-5-25m-bridged-to-ethereum/"},{"credibility":2,"name":"BeInCrypto: Hedera-Based Bonzo Lend Loses $9 Million in Oracle Exploit","type":"news_article","url":"https://beincrypto.com/hedera-exploit-5-million-ethereum-bridge/"},{"credibility":2,"name":"Bonzo Finance — Rekt News","type":"research","url":"https://rekt.news/bonzo-finance-rekt"},{"credibility":2,"name":"The Defiant: Bonzo Lend Loses $9M on Hedera in Supra Oracle Exploit","type":"news_article","url":"https://thedefiant.io/news/hacks/bonzo-lend-loses-9m-on-hedera-in-supra-oracle-exploit"}]},{"content":"The July 11, 2026 exploit had significant cascading effects on the broader Hedera DeFi ecosystem. Bonzo Lend's total value locked (TVL) fell approximately 77% in the 24 hours following the incident. Hedera's network-wide TVL declined nearly 40% in the same period, falling to approximately $25.7 million according to DeFi tracker DefiLlama. The HBAR token experienced selling pressure in the immediate aftermath as users withdrew funds from the ecosystem. The exploit also contributed to broader negative sentiment in the DeFi sector that week: alongside the $6 million Summer.fi exploit and an alleged $20 million BonkDAO governance attack, the three incidents collectively accounted for more than $35 million in losses in a single week. Contextually, Q2 2026 had already recorded 83 DeFi exploits totaling $755 million in losses, with broader DeFi TVL declining 39% to $70 billion during the quarter. Lloyds Banking Group's concurrent deepening of institutional involvement with Hedera was noted by analysts as a countervailing positive signal, though it did not arrest the immediate TVL decline.","heading":"Impact on Hedera Ecosystem","severity":"high","sources":[{"credibility":1,"name":"CoinDesk: Lending Protocol Bonzo Loses 77% of Value Locked as $9 Million Oracle Exploit Rattles Hedera","type":"news_article","url":"https://www.coindesk.com/web3/2026/07/11/lending-protocol-bonzo-loses-77-of-value-locked-as-usd9-million-oracle-exploit-rattles-hedera"},{"credibility":2,"name":"CryptoTimes: Crypto Loses $35M in a Week: BonkDAO, Bonzo Lend, Summer.fi Hacked","type":"news_article","url":"https://www.cryptotimes.io/2026/07/12/crypto-loses-35m-in-a-week-bonkdao-bonzo-lend-summer-fi-hacked/"},{"credibility":2,"name":"KuCoin: Hedera's TVL Drops 40% After $9.05M Bonzo Lend Exploit, Despite Institutional Progress","type":"news_article","url":"https://www.kucoin.com/news/flash/hedera-s-tvl-drops-40-after-9-05m-bonzo-lend-exploit-despite-institutional-progress"},{"credibility":1,"name":"CoinTelegraph: Oracle Exploit Drains $9M From Bonzo Lend on Hedera","type":"news_article","url":"https://cointelegraph.com/news/bonzo-lend-9m-oracle-exploit-hedera"}]},{"content":"Following the exploit, Bonzo Lend's lending service and rewards program were suspended. Bonzo Vaults, the LayerZero bridge integration, and staking functions were reported as unaffected by the incident. On approximately July 17, 2026, Bonzo Finance Foundation announced a recovery program backed by a funding facility committed by the Hedera Foundation. Affected users are to receive advances matching the full value of their pre-exploit positions. Distribution is to occur through a separate administration mechanism from standard smart contracts, with payments made to eligible wallets following a verification procedure. The team stated that users need not take immediate action pending further guidance through official channels. New redemption smart contracts are under development on Hedera mainnet and are pending a Halborn security audit and testing before deployment. The team explicitly stated that no rushed timeline had been set and that security was the priority. The team advised community members to follow only official channels and be vigilant against scams, noting that no official communication would request seed phrases or private keys. As of the most recent available reporting, Bonzo Lend remained paused. The white-hat responder (Wallet B) pledged to return approximately $1.0 million in funds borrowed during the incident.","heading":"Recovery Plan and Protocol Status","severity":"high","sources":[{"credibility":2,"name":"CryptoTimes: Bonzo to Restore Pre-Exploit Positions with Hedera Backing","type":"news_article","url":"https://www.cryptotimes.io/2026/07/17/bonzo-to-restore-pre-exploit-positions-with-hedera-backing/"},{"credibility":1,"name":"Bonzo Lend Incident Report: Oracle Provider Exploit (Official)","type":"official","url":"https://bonzo.finance/blog/bonzo-lend-incident-report-oracle-provider-exploit"},{"credibility":2,"name":"NFT Plazas: Hedera-Based Bonzo Lend Loses $9 Million in Oracle Exploit","type":"news_article","url":"https://nftplazas.com/hedera-based-bonzo-lend-loses-9-million-in-oracle-exploit/"}]},{"content":"The Bonzo Lend exploit highlights a systemic risk in DeFi protocols that rely on third-party price oracle providers without independently auditing the oracle's on-chain verification logic. Bonzo Finance Labs' position that its own contracts 'functioned exactly as designed' is technically supported by the post-incident analysis: the flaw resided in Supra's `requireHashVerified_V2` function, not in Bonzo's lending pool contracts. However, a protocol's trust model inherently includes all components it depends upon, including oracle price feeds. The flawed Supra verifier had been deployed on Hedera and visible on-chain for approximately two years before exploitation. Supra's only documented formal audit covered a different codebase on a different chain (Aptos via MoveBit), leaving the Hedera implementation unaudited. The selective patching pattern — eleven chains updated between June 29 and July 3, 2026, but Hedera remaining unpatched at the time of the July 11 exploit — raises questions about Supra's internal vulnerability triage and communication processes, though no regulatory findings or formal allegations of negligence have been published as of the investigation date. The incident follows a similar pattern to a February 2026 attack on the Stellar-based YieldBlox protocol, in which oracle-manipulated collateral pricing enabled approximately $10 million in losses.","heading":"Oracle Dependency Risk and Third-Party Audit Gap","severity":"high","sources":[{"credibility":2,"name":"Protos: Supra Patched Oracle on 11 Other Chains Before $9M Hedera Exploit","type":"news_article","url":"https://protos.com/supra-patched-oracle-on-11-other-chains-before-9m-hedera-exploit/"},{"credibility":2,"name":"CryptoDaily: Bonzo Lend's $9M Oracle Exploit: Why Verifier Assumptions Are DeFi's Weak Link","type":"news_article","url":"https://cryptodaily.co.uk/2026/07/bonzo-lend-9m-oracle-verifier"},{"credibility":2,"name":"CryptoRank: Bonzo Exploit Drains $9M From Hedera's Largest Lending Protocol, Underscoring Cross-Chain Oracle Risk","type":"news_article","url":"https://cryptorank.io/news/feed/d9859-bonzo-exploit-drains-9m-from-hederas-largest-lending-protocol-underscoring-cross-chain-oracle-risk"},{"credibility":1,"name":"CoinTelegraph: Oracle Exploit Drains $9M From Bonzo Lend on Hedera","type":"news_article","url":"https://cointelegraph.com/news/bonzo-lend-9m-oracle-exploit-hedera"}]}],"sources_used":[{"credibility":1,"name":"Bonzo Lend Incident Report: Oracle Provider Exploit (Official)","type":"official","url":"https://bonzo.finance/blog/bonzo-lend-incident-report-oracle-provider-exploit"},{"credibility":1,"name":"CoinDesk: Lending Protocol Bonzo Loses 77% of Value Locked as $9 Million Oracle Exploit Rattles Hedera","type":"news_article","url":"https://www.coindesk.com/web3/2026/07/11/lending-protocol-bonzo-loses-77-of-value-locked-as-usd9-million-oracle-exploit-rattles-hedera"},{"credibility":1,"name":"CoinTelegraph: Oracle Exploit Drains $9M From Bonzo Lend on Hedera","type":"news_article","url":"https://cointelegraph.com/news/bonzo-lend-9m-oracle-exploit-hedera"},{"credibility":1,"name":"The Block: Hedera Lending Protocol Bonzo Lend Hit for $9 Million After Supra Verifier Accepts Manipulated Price Update","type":"news_article","url":"https://www.theblock.co/post/407960/hedera-lending-protocol-bonzo-lend-hit-for-9-million-after-supra-verifier-accepts-manipulated-price-update"},{"credibility":2,"name":"Bonzo Finance — Rekt News","type":"research","url":"https://rekt.news/bonzo-finance-rekt"},{"credibility":2,"name":"CryptoSlate: How a Zeroed Oracle Signature Unlocked $9M from Hedera DeFi Lender Bonzo Lend","type":"news_article","url":"https://cryptoslate.com/how-a-zeroed-oracle-signature-unlocked-9m-from-hedera-defi-lender-bonzo-lend/"},{"credibility":2,"name":"Protos: Supra Patched Oracle on 11 Other Chains Before $9M Hedera Exploit","type":"news_article","url":"https://protos.com/supra-patched-oracle-on-11-other-chains-before-9m-hedera-exploit/"},{"credibility":2,"name":"CryptoTimes: Hedera's Biggest DeFi Lender Bonzo Lend Hacked for $9M, $5.25M Bridged to Ethereum","type":"news_article","url":"https://www.cryptotimes.io/2026/07/11/hederas-biggest-defi-lender-bonzo-lend-hacked-for-9m-5-25m-bridged-to-ethereum/"},{"credibility":2,"name":"CryptoTimes: Bonzo to Restore Pre-Exploit Positions with Hedera Backing","type":"news_article","url":"https://www.cryptotimes.io/2026/07/17/bonzo-to-restore-pre-exploit-positions-with-hedera-backing/"},{"credibility":2,"name":"Crypto Briefing: Bonzo Lend Paused After $9 Million Oracle Exploit","type":"news_article","url":"https://cryptobriefing.com/bonzo-lend-9m-oracle-exploit-hedera/"},{"credibility":2,"name":"BeInCrypto: Hedera-Based Bonzo Lend Loses $9 Million in Oracle Exploit","type":"news_article","url":"https://beincrypto.com/hedera-exploit-5-million-ethereum-bridge/"},{"credibility":2,"name":"Blockonomi: Bonzo Lend Loses $9.05M in Hedera Oracle Exploit Linked to Supra Flaw","type":"news_article","url":"https://blockonomi.com/bonzo-lend-loses-9-05m-in-hedera-oracle-exploit-linked-to-supra-flaw"},{"credibility":2,"name":"CryptoDaily: Bonzo Lend's $9M Oracle Exploit: Why Verifier Assumptions Are DeFi's Weak Link","type":"news_article","url":"https://cryptodaily.co.uk/2026/07/bonzo-lend-9m-oracle-verifier"},{"credibility":2,"name":"CryptoRank: Bonzo Exploit Drains $9M From Hedera's Largest Lending Protocol, Underscoring Cross-Chain Oracle Risk","type":"news_article","url":"https://cryptorank.io/news/feed/d9859-bonzo-exploit-drains-9m-from-hederas-largest-lending-protocol-underscoring-cross-chain-oracle-risk"},{"credibility":2,"name":"Yahoo Finance / NFT Plazas: Hedera-Based Bonzo Lend Loses $9 Million in Oracle Exploit","type":"news_article","url":"https://finance.yahoo.com/markets/crypto/articles/hedera-network-reportedly-hit-exploit-092407541.html"},{"credibility":2,"name":"Crypto.news: Bonzo Lend Loses $9M After Oracle Flaw Inflates SAUCE Price","type":"news_article","url":"https://crypto.news/bonzo-lend-loses-9m-after-oracle-flaw-inflates-sauce-price/"},{"credibility":2,"name":"KuCoin: Bonzo Lend Reports $9M Loss After Oracle Exploit on Hedera","type":"news_article","url":"https://www.kucoin.com/news/flash/bonzo-lend-reports-9m-loss-after-oracle-exploit-on-hedera"},{"credibility":2,"name":"Hedera Case Study: Bonzo Finance","type":"official","url":"https://hedera.com/case-study/bonzo/"},{"credibility":2,"name":"Bonzo Finance Team Documentation","type":"official","url":"https://docs.bonzo.finance/bonzo-finance-litepaper/team"},{"credibility":2,"name":"Halborn Audit Reports — Bonzo Finance","type":"research","url":"https://www.halborn.com/audits/bonzo-finance"}],"summary":"Bonzo Lend is a decentralized lending and borrowing protocol on the Hedera network, adapted from the Aave v2 codebase and formerly the largest DeFi lending protocol on Hedera by total value locked. On July 11, 2026, the protocol suffered a $9.05 million loss when an attacker exploited a critical signature verification flaw in its third-party Supra oracle provider, inflating the SAUCE token price by approximately twelve orders of magnitude and borrowing assets far in excess of deposited collateral. Protocol operations remain paused pending a Halborn-audited recovery contract deployment backed by the Hedera Foundation.","timeline":[{"date":"2024-02-01","event":"Bonzo Finance wins first place in the Hedera bounty category at ETHDenver 2024 BuidlWeek ('Data-Driven DeFi: Revolutionize Finance with Oracle Feeds'), having adapted Aave v2 to Hedera's EVM and integrated Supra oracles.","source":"Bonzo Finance Blog / Devfolio","source_url":"https://bonzo.finance/blog/bonzo-finance-pioneering-lending-and-borrowing-for-hedera-defi"},{"date":"2026-06-29","event":"Supra deploys a patched oracle verifier to Base, beginning a multi-chain update rollout that would cover at least eleven blockchains by July 3, 2026. Hedera is not included in this patch wave.","source":"Protos","source_url":"https://protos.com/supra-patched-oracle-on-11-other-chains-before-9m-hedera-exploit/"},{"date":"2026-07-03","event":"Supra completes oracle verifier patches on Polygon and other chains. The Hedera deployment of the same flawed verifier remains unpatched.","source":"Protos","source_url":"https://protos.com/supra-patched-oracle-on-11-other-chains-before-9m-hedera-exploit/"},{"date":"2026-07-11","event":"At approximately 00:39 UTC, Wallet A (Hedera 0.0.10633526) deposits 250 SAUCE tokens worth approximately $3 into Bonzo Lend as collateral.","source":"Bonzo Finance Incident Report","source_url":"https://bonzo.finance/blog/bonzo-lend-incident-report-oracle-provider-exploit"},{"date":"2026-07-11","event":"At 00:51:39 UTC, Wallet A submits a manipulated SAUCE/HBAR price update to Supra's pull oracle contract with a zeroed BLS signature (signature field [0,0]) and a zero committee public key. Supra's verifier accepts the update, inflating SAUCE's price by approximately twelve orders of magnitude.","source":"Bonzo Finance Incident Report / CryptoSlate","source_url":"https://cryptoslate.com/how-a-zeroed-oracle-signature-unlocked-9m-from-hedera-defi-lender-bonzo-lend/"},{"date":"2026-07-11","event":"At 00:51:47 UTC, Wallet A borrows 6.63 million USDC against the inflated collateral. At 00:51:57 UTC, Wallet A borrows 34.52 million WHBAR. Total principal extracted: approximately $9.05 million.","source":"Bonzo Finance Incident Report","source_url":"https://bonzo.finance/blog/bonzo-lend-incident-report-oracle-provider-exploit"},{"date":"2026-07-11","event":"Stolen funds are bridged to Ethereum via LayerZero and routed through Stargate to Arbitrum and Base. Approximately $5.25 million is converted to ETH and WBTC and subsequently deposited into Tornado Cash. The attacker's Ethereum receiving wallet had been pre-seeded with 1 ETH from Tornado Cash approximately ten hours before the exploit.","source":"CryptoTimes / Rekt News","source_url":"https://www.cryptotimes.io/2026/07/11/hederas-biggest-defi-lender-bonzo-lend-hacked-for-9m-5-25m-bridged-to-ethereum/"},{"date":"2026-07-11","event":"Between 01:11 and 01:36 UTC, a second account (Wallet B, Hedera 0.0.683607) borrows approximately $1.0 million in assets under the same inflated price conditions. At 01:36 UTC, a legitimate oracle update restores the correct SAUCE price. At 01:41 UTC, Bonzo Lend is paused.","source":"Bonzo Finance Incident Report","source_url":"https://bonzo.finance/blog/bonzo-lend-incident-report-oracle-provider-exploit"},{"date":"2026-07-11","event":"Hedera's network-wide TVL drops approximately 40% to $25.7 million within 24 hours. Bonzo Lend's TVL falls 77% following the incident.","source":"CoinDesk","source_url":"https://www.coindesk.com/web3/2026/07/11/lending-protocol-bonzo-loses-77-of-value-locked-as-usd9-million-oracle-exploit-rattles-hedera"},{"date":"2026-07-13","event":"Supra CEO Joshua Tobkin publicly offers the attacker a 72-hour window to return stolen funds, proposing the attacker retain $100,000, receive no prosecution, and be guaranteed employment at Supra. Tobkin warns of a permanently growing bounty for anyone who eventually turns the attacker in.","source":"CoinSpectator / Rekt News","source_url":"https://rekt.news/bonzo-finance-rekt"},{"date":"2026-07-17","event":"Bonzo Finance Foundation announces a recovery program backed by the Hedera Foundation to restore all affected user positions to their pre-exploit values. New redemption smart contracts are announced as under development, pending a Halborn security audit.","source":"CryptoTimes","source_url":"https://www.cryptotimes.io/2026/07/17/bonzo-to-restore-pre-exploit-positions-with-hedera-backing/"}]},"v":1}Verify offline (run on your own machine)python -m src.verify_decision 5e7eb9f9-0c42-4e89-a57b-3e4d408668ec
How verification works. The “Row integrity” check above is computed in your browser — your machine recomputes the SHA-256 of the canonical bytes and compares against the stored hash. No avoid.net server can fake that check. The “full verify” link goes one level deeper: your browser fetches the on-chain transaction from a Solana RPC node and confirms the same hash is in the memo. If you don’t want to trust either avoid.net or the public RPC, run the CLI verifier on your own machine —
python -m src.verify_decision <event_id>.