MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Penpie exploit drains $27 million and forces deposits and withdrawals offline

An attacker exploited a reentrancy vulnerability in the Penpie DeFi protocol on 3 September 2024 and drained approximately $27 million in crypto assets across Ethereum and Arbitrum. Penpie subsequently shut down deposits and withdrawals while responding to the exploit, leaving its core financial-service functions unavailable.

78

Estimated severity

78 / 100

91

Source reliability

91 / 100

Approximate Date

03/09/2024

Targeted Company

PENPIE

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

Country visual unavailable

No information

Other Affected Countries

No other affected countries reported

Target country

No information

Affected countries

No information

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

$27M

Impact types

Service unavailabilityOperational disruption

Affected sectors

Finance & Insurance

Affected departments

Information Technology

Attack Profile

Attack types

Exploitation of vulnerability

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.