Tools Crypto Exploit Tracker exploit-0085
Exploit record
Moonwell wrsETH Oracle Meltdown
- Loss
- $4M
- Attack vector
- Oracle Manipulation
- Chain
- Base
- Sector
- Borrowing
What happened
On November 4, 2025, Moonwell's Base deployment was left with around $3.7M in bad debt after a wrsETH oracle briefly valued one token like a small country.
The attacker used a nonsense oracle print to treat dust-sized wrsETH as enormous collateral. Once that happened, the rest was routine: borrow real assets, cycle through markets fast, leave the protocol holding the embarrassment. Moonwell clamped supply and borrow caps quickly, but fast clamps do not un-create bad debt.
On-chain references
- First exploit txbasescan.org/tx/0x229caeb87e0b6c31afad950150d2ba05a8d7fe823c…
Sources
- Moonwell threadx.com/MoonwellDeFi/status/1985775115876122650
On YFarmX
- Our reportingMoonwell exploit highlights perils of stale oracles
One record from the Crypto Exploit Tracker, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 15 September 2026
