Pickle Finance Devs Patch Code Following $19.7 Million Hack

Shutterstock by Nalaphotos

Pickle Finance Devs Patch Code Following $19.7 Million Hack

DeFi yield aggregator Pickle Finance was hacked for 19.7 million DAI. The unaudited protocol had gained much popularity among DeFi investors.

Nivesh Rustgi

Powered by Gloria

Updated 1:24 p.m. ET

Popular DeFi yield aggregator Pickle Finance was hacked Saturday for 19.7 million DAI. The unaudited DeFi protocol had gained much popularity among DeFi investors for its innovative earning strategies. 

Pickle Finance Shaken by Exploit   

The DeFi protocol Pickle Finance earns from arbitrage trading stablecoins between various platforms. The design is similar to yEarn’s vaults, which requires liquidity providers (LPs) to deposit their stablecoins in so-called “PickleJars.”  

The hackers attacked the pDAI PickleJar linked to Compound in what has been described as a “complicated attack” by Pickle developers. 

Reportedly, it took the developing team three hours to identify the source of the attack. The disputed part of the code was revoked on Nov. 22, removing the critical piece of future exploits. 

After the hack, the PICKLE token price dropped 62.3%, from $23 to lows of $8.7. It bounced back to $12.5 after implementing a fix but continues to trade below September and October lows of $15.  

PICKLE price chart
PICKLE price chart. Source: Coingecko

The total value locked (TVL) in the protocol at press time is $26.3 million

They have resumed deposits to other jars in the latest update but have implored users to “refrain from depositing in the DAI Jar for now.“ 

The detailed postmortem revealed further vulnerabilities, which the team expects to fix “in the coming days and weeks.”

Pickle Finance Devs Patch Code Following $19.7 Million Hack

Pickle Finance Devs Patch Code Following $19.7 Million Hack

DeFi yield aggregator Pickle Finance was hacked for 19.7 million DAI. The unaudited protocol had gained much popularity among DeFi investors.

by Nivesh Rustgi | Powered by Gloria

Shutterstock by Nalaphotos

Popular DeFi yield aggregator Pickle Finance was hacked Saturday for 19.7 million DAI. The unaudited DeFi protocol had gained much popularity among DeFi investors for its innovative earning strategies. 

Pickle Finance Shaken by Exploit   

The DeFi protocol Pickle Finance earns from arbitrage trading stablecoins between various platforms. The design is similar to yEarn’s vaults, which requires liquidity providers (LPs) to deposit their stablecoins in so-called “PickleJars.”  

The hackers attacked the pDAI PickleJar linked to Compound in what has been described as a “complicated attack” by Pickle developers. 

Reportedly, it took the developing team three hours to identify the source of the attack. The disputed part of the code was revoked on Nov. 22, removing the critical piece of future exploits. 

After the hack, the PICKLE token price dropped 62.3%, from $23 to lows of $8.7. It bounced back to $12.5 after implementing a fix but continues to trade below September and October lows of $15.  

PICKLE price chart
PICKLE price chart. Source: Coingecko

The total value locked (TVL) in the protocol at press time is $26.3 million

They have resumed deposits to other jars in the latest update but have implored users to “refrain from depositing in the DAI Jar for now.“ 

The detailed postmortem revealed further vulnerabilities, which the team expects to fix “in the coming days and weeks.”