Cryip
  • Home
  • News
  • Research & Analysis
  • Reviews & Comparisons
  • Learn Crypto
  • Features
  • Events
No Result
View All Result
Cryip
  • Home
  • News
  • Research & Analysis
  • Reviews & Comparisons
  • Learn Crypto
  • Features
  • Events
No Result
View All Result
Cryip
No Result
View All Result
Home News Security & Hacks

Blend Protocol Exploit: $10.8M Stolen from Stellar’s YieldBlox Pool via Oracle Manipulation

$10.8M Stolen from Stellar’s Blend Protocol: Oracle Exploit Explained

Saravana Kumar Mahendran by Saravana Kumar Mahendran
February 24, 2026
in Security & Hacks
0 0
Blend Protocol Exploit
Share on FacebookShare on Twitter

The Stellar-based lending platform Blend Protocol reported a significant exploit over the weekend of February 22, 2026, resulting in a loss of approximately $10.2 million to $10.8 million. The attack specifically targeted the community-managed YieldBlox DAO Pool, while other liquidity pools and the core Blend protocol remain unaffected.

🚨DeFi project Blend (Stellar blockchain) was exploited for $10.5M+ yesterday. Root cause – price manipulation of a virtually zero liqudity asset.

Attacker inflated USTRY price 100x, price oracle reported collateral as 100x more valuable, so attacker borrowed >$10M and ran away. pic.twitter.com/O3si4PUusQ

— pashov (@pashov) February 23, 2026

Source: https://x.com/pashov/status/2025938184903721015?s=20

Technical Breakdown of the Exploit

The incident was not a result of a direct smart contract vulnerability within the Blend protocol itself. Instead, it was an “Oracle Manipulation” attack leveraging the low liquidity of a specific asset on the Stellar Decentralized Exchange (SDEX).

The attacker identified USTRY a yield-bearing Treasury bond issued by Etherfuse as an asset with extremely thin liquidity. By executing a series of trades, the attacker artificially inflated the price of USTRY from approximately $1.05 to over $100, representing a 100x increase.

Blend utilizes the Reflector oracle system to fetch price data from SDEX. Because the protocol relied on the “latest price” without robust safeguards such as time-weighted average prices (TWAP) or multi-source verification the oracle reported the manipulated $100+ price as the legitimate value. Using a small amount of USTRY as collateral, the attacker was able to borrow approximately 1 million USDC and 61 million XLM against the falsely inflated valuation.

Network Response and Asset Recovery

Following the detection of the anomaly, Stellar’s Tier 1 validators acted swiftly to mitigate the damage. A significant portion of the stolen funds was successfully frozen, including approximately 48 million XLM (valued between $7.2M and $7.5M).

The YieldBlox Security Council, coordinated by Script3, has officially reached out to the attacker via an on-chain message. The council has offered a 10% white-hat bounty on the condition that 90% of the funds are returned. The statement indicated that no legal action would be pursued if the funds were returned within the specified window.

Impact and Remediation

The financial impact is currently confined to the YieldBlox DAO Pool. According to official statements from the Blend Capital and Reflector teams, the core Blend protocol and its independent markets remain secure.

While this attack focused on oracle manipulation, it joins a list of recent security challenges facing cross-chain and lending ecosystems, similar to the vulnerabilities detailed in our IoTeX bridge hack full on-chain analysis report.

The teams are now working on implementing advanced oracle protections, including liquidity thresholds and multi-source price aggregation to prevent similar manipulation of illiquid assets.This incident underscores the need for more robust oracle designs in DeFi, particularly on networks like Stellar with thin liquidity markets.

Disclaimer: Cryip is an independent media and research outlet providing news, data, and analysis on the cryptocurrency industry. Content is for informational and research purposes only and does not constitute financial, legal, tax, or investment advice. Cryptocurrency markets are volatile and past performance is not indicative of future results. References to specific assets, platforms, or incidents are for journalistic purposes only and do not imply endorsement, and readers assume full responsibility for their decisions.
Tags: Crypto Hacks

Related Posts

StablR Stablecoin Exploit
Post Mortems

StablR Stablecoin Exploit: Full Technical Analysis of the $13.5M Multisig Attack

by Saravana Kumar Mahendran
May 25, 2026

Malta-based regulated stablecoin issuer StablR was hit by a serious exploit on May 24, 2026. An attacker compromised one private...

Read moreDetails

StablR Euro Exploit Mints 8.35M USDR & 4.5M EURR as EURR and USDR Lose Their Pegs

May 25, 2026
Suspected Exploit Drains Polymarket UMA CTF Adapter of Over $660,000 in POL Tokens on Polygon

Suspected Exploit Drains Polymarket UMA CTF Adapter of Over $660,000 in POL Tokens on Polygon

May 22, 2026
MAP Protocol

MAP Protocol’s MAPO Token Crashes Nearly 96% After Major Butter Bridge Exploit

May 21, 2026
Kraken and Coinbase User Loses $6.7M After Apparent Physical Attack

Kraken and Coinbase User Loses $6.7M Following Suspected Targeted Attack

May 20, 2026 - Updated on May 21, 2026
Bankr AI Crypto Wallet Hack

Bankr AI Crypto Wallet Hack: 14 Base Network Wallets Breached in Security Incident

May 20, 2026
Echo Protocol on Monad Exploited

Echo Protocol on Monad Exploited: Hacker Mints $76.7M Fake eBTC, Steals Over $822K

May 19, 2026
Next Post
Step Finance, SolanaFloor and Remora Markets Announce Immediate Shutdown After January Hack

Step Finance, SolanaFloor and Remora Markets Announce Immediate Shutdown After January Hack

Recommended

  • All
  • News
Tether Plans Georgian Lari Stablecoin Launch Under Georgia’s New Crypto Framework

Tether Plans Georgian Lari Stablecoin Launch Under Georgia’s New Crypto Framework

May 25, 2026
Coinbase CEO Brian Armstrong Says Blockchain Can Modernize Global Finance Through Tokenization and Stablecoins

Coinbase CEO Brian Armstrong Says Blockchain Can Modernize Global Finance Through Tokenization and Stablecoins

May 25, 2026
Michael Saylor’s Strategy Pauses Bitcoin Purchases After Saylor’s BitVAC Remark

Michael Saylor’s Strategy Pauses Bitcoin Purchases After Saylor’s BitVAC Remark

May 25, 2026

StablR Euro Exploit Mints 8.35M USDR & 4.5M EURR as EURR and USDR Lose Their Pegs

May 25, 2026
Zcash (ZEC) Holds Strong Above $665 as Traders Eye Fresh Breakout After SEC Catalyst

Zcash (ZEC) Holds Strong Above $665 as Traders Eye Fresh Breakout After SEC Catalyst

May 25, 2026
Monero (XMR) Price Rises as Trading Volume Jumps 74%, Key Resistance at $402 in Focus

Monero (XMR) Price Rises as Trading Volume Jumps 74%, Key Resistance at $402 in Focus

May 25, 2026
WebX 2026 Returns to Tokyo, Bringing Global Leaders Together

WebX 2026 Returns to Tokyo, Bringing Global Leaders Together

May 25, 2026
Tether Plans Georgian Lari Stablecoin Launch Under Georgia’s New Crypto Framework

Tether Plans Georgian Lari Stablecoin Launch Under Georgia’s New Crypto Framework

May 25, 2026

Cryip focuses on crypto research and on-chain analysis, supported by coverage of markets, regulation, security events, and blockchain ecosystems.

Recent Posts

  • Zcash (ZEC) Holds Strong Above $665 as Traders Eye Fresh Breakout After SEC Catalyst
  • Monero (XMR) Price Rises as Trading Volume Jumps 74%, Key Resistance at $402 in Focus
  • WebX 2026 Returns to Tokyo, Bringing Global Leaders Together

Categories

  • AI × Crypto
  • Data & Dashboards
  • Market & Price
  • Market Updates
  • On-Chain Analysis
  • OpSec
  • Policy & Regulation
  • Post Mortems
  • Press Release
  • Reports
  • Scams & Fraud
  • Security & Hacks
  • Stablecoins
  • Tokenomics
  • VC & Funding

Company

  • About Us
  • Contact Us
  • Editorial Standards & Integrity
  • Our Team
  • Privacy Policy
  • Review Methodology
  • Terms and Conditions
  • Trust, Disclosures & Independence

© 2026 Cryip - Research-Driven Crypto Analysis & News by Hashlays.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • News
  • Research & Analysis
  • Reviews & Comparisons
  • Learn Crypto
  • Features
  • Events

© 2026 Cryip - Research-Driven Crypto Analysis & News by Hashlays.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.