DeFi’s Oracle Vulnerability Uncovered in $2M NGP Theft
- $2M stolen via Tornado Cash after exploiting NGP’s smart contract vulnerability in BNB Chain DeFi protocol. - Attacker manipulated Uniswap V2 pool reserves using flash loans to artificially lower NGP token prices and bypass transaction limits. - Token price dropped 88% post-attack, exposing risks of single-source oracle dependencies in DeFi protocols. - Experts urge multi-source price feeds and audits as 2025 sees rising DeFi exploits, including $2.6M Nemo Protocol breach.
Earlier this week, it was confirmed that hackers exploited a vulnerability in the
The incident began when the attacker used a flash loan to temporarily obtain a large quantity of tokens, then performed a swap that disrupted the
In the aftermath, NGP’s token price plunged by almost 88% in a matter of hours, sparking investor panic and revealing how vulnerable DeFi protocols can be when price data comes from a single source. After the funds were funneled through Tornado Cash, tracing them became virtually impossible, leaving the protocol with minimal prospects for recovery. The DeFi sector is now more vigilant, especially since similar attacks have persisted into 2025, such as the $2.6 million breach of Nemo Protocol on Sui. These events highlight the persistent dangers of flash loans and the critical need for protocols to use multiple pricing sources and undergo frequent security checks.
Experts in the industry point out that the NGP exploit vividly illustrates the hazards of DeFi projects depending on a single-source
The NGP breach is part of an increasing number of major DeFi hacks, underscoring the urgent need for stronger industry security protocols and governance frameworks. As services like Tornado Cash become more widespread and exploits grow more advanced, affected projects often struggle to recover. Moving forward, the DeFi community must focus on security, openness, and user safeguards to foster lasting trust and growth in the industry.

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
New spot margin trading pair — BARD/USDT!
BTC/ETH VIP Earn Ultimate Carnival is officially here!
New spot margin trading pair — FLOCK/USDT!
0GUSDT now launched for pre-market futures trading
Trending news
MoreCrypto prices
More








