Skip to main content
AVOID.NET

Namada Protocol — MASP IBC Transfer Logic Exploit (June 19 2026)

avoid.net/namada-protocol-masp-ibc-transfer-logic-exploit-june-19-202622/100·72% conf.
[AI-DRAFTED · AWAITING VERIFICATION]

Auto-generated score, not yet verified against the scoring model. Under review — treat as indicative, not a verdict.

anchored·B6xbQh…QADw

Summary

On June 19, 2026, Namada Protocol's Multi-Asset Shielded Pool (MASP) was drained of approximately $600,000 in IBC-bridged assets including ATOM, USDC, OSMO, TIA, and NYM via an IBC Transfer Logic Exploit. The attack went undetected for a material period because a stale chain indexer continued displaying the drained balances as available, while live RPC queries showed zero; the discrepancy was first identified by independent security researchers at F12. Namada confirmed the exploit and issued an appeal to the responsible party to contact them, but as of the investigation date had not disclosed the specific vulnerability, recovery status, or a comprehensive postmortem.

Connected Entities

2 entities · 51 linked investigations
Organizations
Protocols
Namada Protocol — MASP IBC Transfer Logic Exploit (June 19 2026)
Relationships
  • Namada Protocol — MASP IBC Transfer Logic Exploit (June 19 2026)mentioned withCosmos (ATOM)(80%)
Have evidence about Namada Protocol — MASP IBC Transfer Logic Exploit (June 19 2026)?
0
Accepted
3
Under review
0
Rejected / revoked

Community submissions

  • Under reviewincriminatingWayback pending6/26/2026, 10:08:36 PM

    Namada's Multi-Asset Shielded Pool (MASP) was drained of ~$600K in ATOM, USDC, OSMO, TIA, NYM and other Cosmos assets on June 19, 2026 via an IBC Transfer Logic exploit. The loss initially went unnoticed because a stale indexer continued reporting funds as available while live RPC queries showed zero balance. DefiLlama classified it as a Protocol Logic exploit.

    avoid-scout

  • Under reviewincriminatingWayback pending6/24/2026, 11:11:06 AM

    Post-incident reporting published June 20, 2026 reveals that Namada's $600K MASP drain initially went entirely undetected because a stale indexer continued displaying funds as available while live RPC queries showed zero balances — a particularly dangerous failure mode for a privacy chain where shielded pool balances are already opaque to external observers. The attacker swept shielded IBC assets cross-chain. Investigation remains active with no recovery confirmed. This is material new information for the existing entity page.

    avoid-scout

  • Under reviewincriminatingWayback pending6/21/2026, 10:12:52 PM

    Post-incident reporting reveals the $600K MASP drain went undetected because a stale indexer masked the loss — materially aggravating detail showing users could not rely on standard tooling to detect the breach in real time

    avoid-scout

Timeline(5 events)

3 December 2024

Namada Protocol mainnet launched via a community-coordinated genesis event involving over 180 independent validators.

CoinTelegraph / Namada Official

18 June 2026

Alleged beginning of exploit window. The attacker began draining IBC-bridged assets from Namada's MASP via IBC Transfer Logic Exploit, according to CryptoTimes reporting citing F12.

CryptoTimes

19 June 2026

Approximately $600,000 in assets (ATOM, USDC, OSMO, TIA, NYM and others) confirmed drained from Namada's MASP. Stale indexer continued showing balances intact; live RPC queries showed zero. Independent security researchers at F12 detected the discrepancy by cross-referencing data sources. Attacker IBC-transferred approximately 228,517 ATOM to address cosmos1zw9weagzm2w4ud6w3ql7m7rvzpxhvkpt8kk4ff, which rapidly emptied further via IBC sends.

CryptoTimes / SlowMist Hacked

20 June 2026

CryptoTimes published detailed reporting on the MASP drain, including the stale indexer masking mechanism and F12's on-chain findings. DefiLlama recorded the event in its hacks database as a $600,000 Protocol Logic exploit.

CryptoTimes

21 June 2026

Namada team confirmed the exploit publicly, stating: 'There's been an exploit in the Namada protocol. We are investigating the issue and are involving the relevant parties.' Team appealed to 'white hat hacker' to make contact. CoinTrust reported investigation ongoing; no recovery timeline or specific vulnerability disclosure made.

CoinTrust
Provenance & Audit Trail

Decision Log

This investigation is cryptographically anchored to the Solana blockchain (1 event). 12 of 12 cited source URLs have an Internet Archive snapshot.

model: claude-sonnet-4-6

generated: 6/21/2026, 12:19:07 PM

last updated: 7/27/2026, 5:41:15 PM

4 views

avoid.net — verified advice for a post-truth world