A massive heist struck Harvest Finance's operations this week, with attackers siphoning $34 million in digital assets. The protocol is now offering a $1 million bounty to anyone capable of identifying the perpetrator and facilitating the return of stolen capital.
Harvest Finance Ups The Reward Its Stolen Funds
A massive heist struck Harvest Finance's operations this week, with attackers siphoning $34 million in digital assets. The protocol is now offering a $1 million bounty to anyone capable of identifying

Key Points
- A massive heist struck Harvest Finance's operations this week, with attackers siphoning $34 million in digital assets.
- The protocol is now offering a $1 million bounty to anyone capable of identifying
Advertisement
728×90
The mechanics of the exploit exposed severe vulnerabilities in Harvest Finance's systems. Through a flash loan transaction, the attacker drained the protocol's liquidity pools by first manipulating valuations across Harvest Finance's positions on Curve. By artificially destabilizing the prices of stablecoin pairs—specifically Tether and USDC—the perpetrator created pricing gaps, then capitalized on them to extract tokens from the reserves at rates far below market value.
Initial assessments Monday morning suggested losses around $24 million. Engineers who subsequently reviewed the breach revised this figure upward, with Harvest Finance publishing corrected numbers later that same day. Leadership openly acknowledged flawed procedures in their technical infrastructure, stating in a published post: "We made an engineering mistake, we own up to it."
Preventing similar attacks has become a top priority. Management is deliberating defensive measures, with flash loan restrictions emerging as a probable safeguard.
The protocol has not yet detailed how it will compensate affected users. Publicly, the team indicated they're developing a remediation plan, contingent on recovering the stolen funds. Earlier in the week—before acknowledging insufficient conclusive evidence of the hacker's identity—management had posted escalating reward offers: first $100,000, then $400,000, intended to incentivize the attacker to voluntarily return the capital. Their central objective heading into the following week involves retrieving the missing funds while simultaneously strengthening defenses against comparable flash loan exploits.
MiningPool content is intended for information and educational purposes only and does not constitute financial, investment, or legal advice.
Advertisement
728×90
Related Stories

Bitcoin Hits $109,000 All-Time High on Trump Inauguration Day
Bitcoin reached $109,356 on January 20, 2025, marking a new all-time high coinciding with Trump's inauguration.

Amaury Sechet Commits To The Reduced ABC Community
Bitcoin Cash ABC's price rocketed 62% in the past day, climbing from $12.27 to $19.97 as the project released a new client focused on stability fixes. The rebound offered holders a reprieve after the

Bitcoin price soars to $18,480 as bulls look to moon BTC
Bitcoin reached $18,483 in the past 24 hours, extending a significant rally over the previous week. BTC/USD climbed more than 15 percent in the last seven days following a breakthrough past the $16,00

Crypto-Ponzi Scheme Operator Arrested By The FBI
Law enforcement caught a California man attempting one of the more dramatic getaways in recent financial crime history. Matthew Piercey, accused of orchestrating a massive investment scam, tried to es

Grayscale now has $10 billion in crypto assets under management
Grayscale Investments has crossed an unprecedented $10.4 billion in digital asset holdings, marking the first time the institutional crypto fund manager has reached this significant threshold. The mil

YFI price jumps 20% to hit $25,000, days after trading around $7,500
DeFi token yearn.finance (YFI) jumped more than 20% as Bitcoin surged past $18,000, sparking enthusiasm across the crypto market. The token climbed from just above $21,000 to an intraday peak of $24,8
Stay informed
Verifiable crypto journalism, delivered to your inbox.
Weekday mornings. No hype. No financial advice. Just what happened and why it matters.
No spam. Unsubscribe anytime. Read our privacy policy.