Security firm says Ether.fi contract flaw led to theft of 15.45 ETH
September 11, 2026, 9:47 AM
An access-control vulnerability was found in a specific contract tied to Ethereum restaking protocol Ether.fi, and about 15.45 ETH, worth roughly $38,000, was stolen, blockchain security firm SlowMist said. SlowMist said the attacker exploited a flaw in the AtomicQueue contract to create a manipulated request and induce the victim address to be recognized as a solver. AtomicQueue then abused the victim’s existing ERC-20 token approval to drain the funds. ETHFI was trading at $0.6611, up 6.21%, according to CoinMarketCap.
Leave the first comment
You need to log in to leave a comment.
Log In