Beosin Report: Crypto Rug Pulls Surpass DeFi Exploits in May
According to a recent report by blockchain security firm Beosin, losses from “rug pulls” or “exit scams” in the cryptocurrency space exceeded the amount stolen from decentralized finance (DeFi) projects during the month of May.
The report, published on June 1 by Beosin Blockchain Security, revealed that rug pulls and scams resulted in losses of over $45 million across six incidents during the month. Beosin is headquartered in Chengdu, in China’s Sichuan province. The firm uses formal verification methods to secure smart contracts.
In general there were 22 security incidents in the digital assets space over the course of the month. That overall figure accounts for losses totaling $20 million, and represents a vast improvement on the previous month.
Three of the incidents were accounted for by security issues related to hardware wallets such as the Trezor and imKey wallets. Six were rug pulls/crypto scams, two were crypto crime incidents while another implicated a critical vulnerability relative to zero-knowledge proof technology.

DeFi protocol attacks
In contrast, there were 10 attacks on DeFi protocols, amounting to $19.7 million in stolen funds. This figure represents a significant decrease of nearly 80% compared to April, and the losses from these types of exploits had been declining for two consecutive months, as per Beosin’s findings.
The largest rug pull incident in May involved the alleged disappearance of $32 million associated with the crypto project Fintoch on May 24. Meanwhile, the largest attack on a DeFi platform was a $7.5 million breach targeting Jimbos protocol, according to Beosin’s report.
Shifting hacker strategy
Beosin noted a shift in the targeting strategy of hackers and scammers, who are now increasingly focusing their attacks on ordinary users rather than various project parties. To mitigate risks, the report recommended that crypto users enhance their anti-fraud awareness, conduct thorough due diligence before investing in projects, and learn how to improve the security of their digital assets.
The report also issued a warning against using shared or public charging devices for mobile phones. Beosin highlighted the potential risks associated with these devices, as they could be manipulated to inject malicious programs that compromise private keys. This caution aligns with a similar advisory issued by the United States Federal Bureau of Investigation (FBI) in April.
The FBI’s Denver office cautioned against using public USB ports, including those found at airports, due to the potential introduction of malware and monitoring software onto devices. Instead, they suggested carrying a personal charger and USB cord for use with electrical outlets.
As the cryptocurrency landscape continues to evolve, it is crucial for users to remain vigilant and proactive in safeguarding their investments. With the rise of rug pulls and the ongoing threats in the DeFi space, staying informed, exercising caution, and adopting robust security measures are essential for protecting one’s digital assets in this rapidly changing industry.


