Security researcher and auditor Patrick Caversaccio issued a public warning on X that the Ethena frontend had been compromised, advising users to stay away from the project’s user interface and not to interact with any Ethena links. Shortly after, Ethena Labs confirmed that its domain registrar account had been breached, leading to a compromise risk for the official website frontend and prompting the team to deactivate the site as a precaution. The project stressed that the on-chain protocol and user funds remained secure, with the impact limited to the web-facing component rather than the core smart contracts. Ethena Labs instructed users to avoid all sites or applications claiming to be the Ethena frontend, disconnect any connected wallets, and refrain from signing transactions related to Ethena until the situation is resolved. The incident fits a broader pattern of DeFi attacks that increasingly target Web2 infrastructure such as domain registrars rather than directly exploiting on-chain code, highlighting persistent risks around DNS and frontend security for crypto protocols.

AI-generated background, compiled from web sources — not editorial content.

More coverage

Explore the topic

More on Ethena

Comments