← Radar

Incident case file

Sign in to watch

Silo Finance V2 — Isolated Leverage Contract Approval Exploit (Oracle Manipulation)

Incident date April 3, 2026

0 views

ResolvedArbitrumOracle manipulationCluster: SILO-ARB-2026-04

Estimated loss

$392K

Victims identified

more than ten victims identified
Victim group joining is coming soon.

Investigation

80%

Facts and investigation

Attacker: TODO — Etherscan-labelled Silo Finance Exploiter (multiple addresses flagged by Hypernative)

Funds moved to: TODO
Compromised contract: isolated Leverage module (separate from Silo core markets/vaults)

Timeline: On April 3, 2026, an attacker exploited a misconfigured oracle combined with overly broad approvals in Silo Finance V2 newly deployed isolated Leverage contract on Arbitrum. The vulnerability targeted the leverage smart contract improper input validation on swapArgs (user-controlled exchange proxy), allowing manipulation of the oracle during leveraged operations. 14:29 UTC Hypernative flags both attacker addresses, alerts CEXs. 14:47 UTC Silo team announces Leverage contract paused. 15:01 UTC Silo informs Certora. 15:30-17:00 UTC Certora war room confirms root cause; vulnerability strictly limited to leverage-module users; core Silo unaffected. Funds drained were Silo own (testing phase).

Sources and coverage

Victim testimonies

No testimonies yet.

+ Add my testimony → (coming soon)