TLDR Venus Protocol recovers $13.5M lost in a phishing attack via governance actions. Phishing attack compromised a whale wallet, draining $13.5M worth of assets. Venus halted the protocol and used a governance vote to liquidate the attacker’s positions. XVS token dropped 10% during the event but regained confidence after recovery. Venus Protocol has successfully recovered [...] The post Venus Protocol Restores $13.5M Stolen in Phishing Attack Using Governance appeared first on CoinCentral.TLDR Venus Protocol recovers $13.5M lost in a phishing attack via governance actions. Phishing attack compromised a whale wallet, draining $13.5M worth of assets. Venus halted the protocol and used a governance vote to liquidate the attacker’s positions. XVS token dropped 10% during the event but regained confidence after recovery. Venus Protocol has successfully recovered [...] The post Venus Protocol Restores $13.5M Stolen in Phishing Attack Using Governance appeared first on CoinCentral.

Venus Protocol Restores $13.5M Stolen in Phishing Attack Using Governance

2025/09/03 23:31

TLDR

  • Venus Protocol recovers $13.5M lost in a phishing attack via governance actions.
  • Phishing attack compromised a whale wallet, draining $13.5M worth of assets.
  • Venus halted the protocol and used a governance vote to liquidate the attacker’s positions.
  • XVS token dropped 10% during the event but regained confidence after recovery.

Venus Protocol has successfully recovered $13.5 million lost in a phishing attack. The swift intervention by the community helped restore the stolen funds, raising questions about decentralization in DeFi governance.

Phishing Attack Drains $13.5 Million from Venus Protocol

On September 2, Venus Protocol, one of the largest decentralized finance (DeFi) lending platforms on the BNB Chain, reported a significant phishing attack. The attack led to a loss of around $13.5 million after a high-value user, or “whale wallet,” approved a malicious transaction.

The initial estimates of the damage reached $27 million, but these were revised after considering the user’s outstanding debt. Stolen assets included wrapped Bitcoin (BTCB), vUSDT, vUSDC, vXRP, and vETH. However, Venus Protocol emphasized that the attack was caused by user-level compromise, not a breach of its smart contracts.

Phishing, a common attack vector in the crypto space, exploits social engineering tactics, tricking users into approving malicious transactions via fake websites or pop-ups. This attack shows the ongoing risks DeFi platforms face, especially as they rely on user behavior rather than just protocol security.

Swift Action and Governance Intervention

Venus Protocol acted quickly to minimize the damage. Upon detecting the breach, the platform paused all activity on the protocol to prevent the attacker from transferring or mixing the stolen funds. This pause allowed for the activation of emergency governance measures, where the community voted to liquidate the attacker’s positions and freeze the stolen assets.

The decision to freeze and liquidate the funds before they could be moved or laundered proved successful. By September 3, security firm PeckShield confirmed that the funds had been fully restored. The assets were returned to the protocol’s reserves, and operations resumed after additional security checks were completed.

Venus announced that it would release a detailed post-mortem report to explain the steps taken during the recovery. Despite the successful recovery, the incident raised concerns about the centralization of governance in DeFi protocols.

Market Reaction and Community Impact

The news of the attack initially caused a sharp drop in Venus’s governance token, XVS, which fell nearly 10% as trading volumes spiked. Investors were concerned about the security and stability of the platform in light of the breach.

However, after the recovery was confirmed, XVS regained stability, reflecting restored confidence in Venus Protocol’s ability to respond effectively to security challenges.

The incident has sparked a broader conversation in the DeFi community about the balance between decentralization and the need for quick action in crisis management. Venus’s ability to intervene swiftly through governance measures has shown the benefits of a responsive system. However, it also raises questions about how much control should be centralized within the platform’s governance to prevent further threats.

The post Venus Protocol Restores $13.5M Stolen in Phishing Attack Using Governance appeared first on CoinCentral.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.
Share Insights

You May Also Like

UK FCA Plans to Waive Some Rules for Crypto Companies: FT

UK FCA Plans to Waive Some Rules for Crypto Companies: FT

The post UK FCA Plans to Waive Some Rules for Crypto Companies: FT appeared on BitcoinEthereumNews.com. The U.K.’s Financial Conduct Authority (FCA) has plans to waive some of its rules for cryptocurrency companies, according to a Financial Times (FT) report on Wednesday. However, in another areas the FCA intends to tighten the rules where they pertain to industry-specific risks, such as cyber attacks. The financial watchdog wishes to adapt its existing rules for financial service companies to the unique nature of cryptoassets, the FT reported, citing a consultation paper published Wednesday. “You have to recognize that some of these things are very different,” David Geale, the FCA’s executive director for payments and digital finance, said in an interview, according to the report, adding that a “lift and drop” of existing traditional finance rules would not be effective with crypto. One such area that may be handled differently is the stipulation that a firm “must conduct its business with integrity” and “pay due regard to the interest of its customers and treat them fairly.” Crypto companies would be given less strict requirements than banks or investment platforms on rules concerning senior managers, systems and controls, as cryptocurrency firms “do not typically pose the same level of systemic risk,” the FCA said. Firms would also not have to offer customers a cooling off period due to the voltatile nature of crypto prices, nor would technology be classed as an outsourcing arrangement requiring extra risk management. This is because blockchain technology is often permissionless, meaning anyone can participate without the input of an intermediary. Other areas of crypto regulation remain undecided. The FCA has plans to fully integrate cryptocurrency into its regulatory framework from 2026. Source: https://www.coindesk.com/policy/2025/09/17/uk-fca-plans-to-waive-some-rules-for-crypto-companies-ft
Share
BitcoinEthereumNews2025/09/18 04:15