YFarmX

Tools Crypto Exploit Tracker exploit-0124

Exploit record

1inch Fusion v1 Re-entrancy

Loss
$3M
Attack vector
Other
Chain
Ethereum
Sector
DEX Aggregation

What happened

On March 6, 2025, a re-entrancy issue in 1inch Fusion v1's resolver contract let attackers repeatedly reuse approvals and drain roughly $2.6M.

Recursive control flow plus user-supplied values remains a classic way to manufacture losses out of otherwise respectable code. 1inch published an official statement confirming the vulnerability was in the resolver contract, not the core aggregation protocol.

On-chain references

Sources

One record from the Crypto Exploit Tracker, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 15 September 2026