On January 20, 2026, the Makina DeFi protocol — an execution engine for on-chain yield and asset management — suffered a ~$4 million exploit targeting its DialecticOn January 20, 2026, the Makina DeFi protocol — an execution engine for on-chain yield and asset management — suffered a ~$4 million exploit targeting its Dialectic

Makina’s $4M Hack due to Oracle Manipulation

2026/01/24 19:49
3 min read

On January 20, 2026, the Makina DeFi protocol — an execution engine for on-chain yield and asset management — suffered a ~$4 million exploit targeting its Dialectic USD (DUSD)/USDC Curve stableswap pool. The attack stemmed from oracle manipulation via external Curve Finance integrations, where unvalidated pool data was used to calculate assets under management (AUM) and sharePrice.

By leveraging flash loans, the attacker artificially inflated AUM values, manipulated sharePrice calculations, and extracted profit in a single transaction. While the exploit impacted only the DUSD/USDC pool, it highlighted a broader and recurring DeFi risk: over-reliance on external liquidity data without adequate safeguards.

How the Exploit Worked?

The attacker executed a carefully orchestrated multi-step attack using large flash loans sourced from Morpho and Aave V2. These borrowed funds were temporarily injected into multiple Curve pools to distort liquidity balances and pricing assumptions.

First, the attacker added liquidity to Makina’s DUSD/USDC pool and swapped USDC for DUSD, positioning themselves to benefit from price manipulation. They then added substantial liquidity to Curve’s DAI/USDC/USDT and MIM-related pools, receiving LP tokens that were later partially withdrawn to skew pool balances.

These manipulated balances were critical. Makina’s Caliber contract relied on external Curve functions — such as calc_withdraw_one_coin() and pool balance readings—to compute positional AUM. With liquidity temporarily inflated, these calculations produced artificially high values.

Once the attacker called accountForPosition(), the inflated external data propagated through Makina’s accounting system. The protocol’s total AUM jumped significantly, pushing the sharePrice from ~1.01 to ~1.33 within the same transaction.

With the sharePrice distorted, the attacker arbitraged the DUSD/USDC pool, withdrew liquidity, and repeated the cycle until the pool’s USDC reserves were largely drained. After unwinding the flash loans, the attacker converted the stolen funds to ETH and transferred ~1,299 ETH to external addresses.

Notably, part of the transaction was front-run by an MEV bot, which captured a portion of the profit — further illustrating how composability amplifies loss surfaces during exploits.

Root Cause: Unchecked External Data

At its core, the vulnerability lay in Makina’s trust assumptions. External pool data was treated as reliable input for critical accounting logic, without sufficient sanity checks, rate limits, or flash-loan resistance. The use of upgradeable contracts and the absence of time-weighted or delayed AUM calculations compounded the issue.

This exploit reinforces a key DeFi lesson: external data should inform systems — not directly dictate their financial state.

Notably, many of the largest DeFi exploits in 2025 followed similar patterns, where untrusted external data and integration assumptions were repeatedly abused at scale. These recurring failure modes are analyzed in depth in our Web3 2025 Hack Report, which examines how such vulnerabilities continue to dominate real-world attacks.

Want the Full Technical Breakdown?

Aftermath and Response

Following the attack, Makina paused protocol operations, advised LPs on withdrawal options, and coordinated with multiple security firms for investigation and recovery. A 10% whitehat bounty was offered to the exploiter, though no funds had been returned at the time of writing.


Makina’s $4M Hack due to Oracle Manipulation was originally published in Coinmonks on Medium, where people are continuing the conversation by highlighting and responding to this story.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

CME Group to Launch Solana and XRP Futures Options

CME Group to Launch Solana and XRP Futures Options

The post CME Group to Launch Solana and XRP Futures Options appeared on BitcoinEthereumNews.com. An announcement was made by CME Group, the largest derivatives exchanger worldwide, revealed that it would introduce options for Solana and XRP futures. It is the latest addition to CME crypto derivatives as institutions and retail investors increase their demand for Solana and XRP. CME Expands Crypto Offerings With Solana and XRP Options Launch According to a press release, the launch is scheduled for October 13, 2025, pending regulatory approval. The new products will allow traders to access options on Solana, Micro Solana, XRP, and Micro XRP futures. Expiries will be offered on business days on a monthly, and quarterly basis to provide more flexibility to market players. CME Group said the contracts are designed to meet demand from institutions, hedge funds, and active retail traders. According to Giovanni Vicioso, the launch reflects high liquidity in Solana and XRP futures. Vicioso is the Global Head of Cryptocurrency Products for the CME Group. He noted that the new contracts will provide additional tools for risk management and exposure strategies. Recently, CME XRP futures registered record open interest amid ETF approval optimism, reinforcing confidence in contract demand. Cumberland, one of the leading liquidity providers, welcomed the development and said it highlights the shift beyond Bitcoin and Ethereum. FalconX, another trading firm, added that rising digital asset treasuries are increasing the need for hedging tools on alternative tokens like Solana and XRP. High Record Trading Volumes Demand Solana and XRP Futures Solana futures and XRP continue to gain popularity since their launch earlier this year. According to CME official records, many have bought and sold more than 540,000 Solana futures contracts since March. A value that amounts to over $22 billion dollars. Solana contracts hit a record 9,000 contracts in August, worth $437 million. Open interest also set a record at 12,500 contracts.…
Share
BitcoinEthereumNews2025/09/18 01:39
Trump swears he'll donate winnings in $10 billion lawsuit against his own IRS

Trump swears he'll donate winnings in $10 billion lawsuit against his own IRS

President Donald Trump told NBC News' Tom Llamas in an interview released on Wednesday that he has no interest in actually keeping any money he wins from his lawsuit
Share
Rawstory2026/02/05 10:43
US President Donald Trump says Warsh would’ve lost Fed if he pledged rate hike

US President Donald Trump says Warsh would’ve lost Fed if he pledged rate hike

The post US President Donald Trump says Warsh would’ve lost Fed if he pledged rate hike appeared on BitcoinEthereumNews.com. US President Donald Trump said that
Share
BitcoinEthereumNews2026/02/05 10:23