YFarmX

Tools Crypto Exploit Tracker exploit-0070

Exploit record

Aperture Finance

Loss
$4M
Attack vector
Other
Chain
Multichain
Sector
Routing

What happened

On January 25, 2026, Aperture Finance V3/V4 contracts were exploited for about $3.67M across multiple chains through a similar arbitrary-call / approval-abuse flaw.

The attacker did not need users to do anything in the moment. The damage came from approvals that already existed. Once the vulnerable call path was abused, ERC-20 and even NFT-style approvals could be cashed in. The exploit also overlapped with the wider SwapNet incident, which suggests the attackers were not improvising but moving through a known pattern.

On-chain references

  • Affected Contract 10xD83...8913
  • Affected Contract 20x008...d857
  • Affected Contract 30xe00...05cB

One record from the Crypto Exploit Tracker, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 15 September 2026