MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Font ResizerAa
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Reading: Aevo’s legacy Ribbon DOV vaults exploited for $2.7 million following oracle upgrade
Share
Font ResizerAa
MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Search
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Have an existing account? Sign In
Follow US
© Market Alert News. All Rights Reserved.
  • bitcoinBitcoin(BTC)$75,562.00-2.31%
  • ethereumEthereum(ETH)$2,342.33-3.33%
  • tetherTether(USDT)$1.000.00%
  • rippleXRP(XRP)$1.43-3.32%
  • binancecoinBNB(BNB)$626.52-3.01%
  • usd-coinUSDC(USDC)$1.00-0.01%
  • solanaSolana(SOL)$85.61-3.85%
  • tronTRON(TRX)$0.3279270.23%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.041.31%
  • dogecoinDogecoin(DOGE)$0.094510-4.96%
Smart Contracts

Aevo’s legacy Ribbon DOV vaults exploited for $2.7 million following oracle upgrade

Last updated: December 15, 2025 7:10 am
Published: 4 months ago
Share

The attacker distributed stolen funds in primarily ETH and stablecoins across 15 wallet addresses.

Aevo’s legacy Ribbon Finance smart contracts were exploited for approximately $2.7 million on Dec. 12, after an oracle infrastructure upgrade inadvertently enabled price manipulation, according to blockchain security researchers.

The attack targeted Ribbon’s DeFi Options Vaults (DOV), which are structured products that once held over $300 million in total value locked during DeFi’s peak. The vaults remained active on Ethereum despite Ribbon Finance’s 2023 rebrand and transition into derivatives exchange Aevo. The exploit did not affect Aevo’s primary Layer 2 exchange, the team said.

Blockchain analyst Specter first flagged suspicious outflows on X, identifying the exploit contract address and initial theft wallets. The attacker extracted hundreds of ETH and significant USDC holdings before distributing the proceeds to 15 separate addresses, many holding approximately 100 ETH each.

Security researcher Liyi Zhou published a detailed thread on X explaining that the attacker manipulated the Opyn/Ribbon oracle stack by abusing price-feed proxies. The exploit pushed arbitrary expiry prices for wstETH, AAVE, LINK, and WBTC into the shared oracle at a common expiry timestamp.

Anton Cheng of Monarch DeFi noted that exploit was made possible by a Dec. 6 upgrade to the oracle code that “let anyone set prices for new assets.” Cheng confirmed that the underlying Opyn protocol was not compromised, as the vulnerability was specific to Ribbon’s oracle configuration.

Aevo will decommission all Ribbon vaults

In a statement on X, Aevo said all Ribbon vaults have been stopped and will be decommissioned immediately. While the vaults suffered approximately 32% in losses, the team proposed that withdrawals be subject to only a 19% reduction on position value at the time of the hack.

Aevo said it can offer the smaller haircut for two reasons: the DAO will forfeit its own vault positions (roughly $400,000 in various assets) to partially offset the theft, reducing net losses to $2.3 million. Second, the team said accounts with the largest deposits have gone dormant over the past two to four years and likely won’t withdraw at all.

“We’re proposing to prioritize active users by granting them a smaller reduction upfront,” the team wrote. “Given the expected dormancy rate, there’s a strong chance that users who withdraw during the claim window will ultimately be made whole after the final distribution.”

The claim window will run six months from Dec. 12 to June 12. After that date, the DAO will liquidate remaining assets and distribute them to users who previously withdrew, compensating up to the missing 19% or as much as remains available. The team noted the DAO “never promised or offered insurance on deposits.”

Oracle manipulation remains a persistent DeFi attack vector. Earlier this year, Venus Protocol on ZKsync lost $717,000 to a similar exploit, The Block previously reported.

Read more on The Block

This news is powered by The Block The Block

Share this:

  • Share on X (Opens in new window) X
  • Share on Facebook (Opens in new window) Facebook

Like this:

Like Loading...

Related

Blockchain & Crypto Assets
Bitcoin Critic JPMorgan CEO Changes His Mind – Reveals New Views on Cryptocurrency
Argentina Leads Latin America: CNV Resolution 1081 Sets the Stage for Tokenized Finance Revolution – Crypto News Flash
IMF Raises Alarm: Stablecoins May Rock Emerging Economies – Crypto Economy
Ethereum Price Prediction: Can ETH Rebound Amid Aggressive Whale Accumulation Or Will This DeFi Crypto Outshine It? – FinanceFeeds

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print
Previous Article The Blockchain Policy Puzzle
Next Article Hong Kong Sets Long-Term Plan to Integrate Blockchain Technology with Traditional Finance
© Market Alert News. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Prove your humanity


Lost your password?

%d