Cetus DEX Hack: $223M Drained Due to Flawed AMM Overflow Check

Cetus DEX Hack Exposes $223M Vulnerability, Sparks Centralization Debate After Sui Network Freezes Funds

  • Dedaub identified a coding flaw as the root cause of the Cetus decentralized exchange hack.
  • Attackers manipulated the exchange’s liquidity parameters, draining around $223 million in tokens on May 22.
  • Validators on the Sui network froze $163 million of stolen assets on the same day.
  • The freezing of funds sparked criticism from decentralization advocates for perceived centralization.
  • Industry voices warn that crypto platforms must improve security and safeguards before regulation steps in.

A security breach hit the Cetus decentralized exchange on May 22, leading to a loss of around $223 million after attackers used a coding exploit to manipulate the platform’s liquidity settings. The hack took advantage of a flaw in Cetus’s automated market maker (AMM) system, which failed to properly check values due to a weak “overflow” test.

- Advertisement -

According to a report by blockchain security firm Dedaub, hackers exploited a vulnerability in the most significant bits (MSB) check within the code. This let them artificially increase their liquidity inputs, allowing them to establish unusually large positions with minimal tokens.

The firm wrote: “This allowed them to add massive liquidity positions with just one unit of token input, subsequently draining pools collectively containing hundreds of millions of dollars worth of tokens.” In response, Cetus and the Sui Foundation worked with validators and ecosystem partners to freeze $163 million of the stolen assets within hours of the hack.

The decision to freeze assets has led to controversy in the crypto community. Some users argued that the actions of Sui network validators — who can block or reverse blockchain transactions — represent “censorship” and centralization, which go against the decentralized principles on which platforms like Cetus are based. One user wrote on social media: “This completely undermines the principles of decentralization and transforms the network into nothing more than a centralized, permissioned database.”

Industry leaders continue to urge crypto projects to improve their security measures proactively. They argue that more robust defenses could prevent similar incidents and avoid stricter interventions from regulators in the future. Additional coverage and discussion of defender responses, including Cetus’ recovery plan, can be found here.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

Stay in the Loop

Get exclusive crypto insights, breaking news, and market analysis delivered straight to your inbox. No fluff, just facts.

- Advertisement -

    1 Email per day. Unsubscribe at any time.

    - Advertisement -

    Latest News

    Citrix Patches Critical NetScaler RCE Flaw Amid Active Attacks

    Citrix addressed three security vulnerabilities in NetScaler ADC and NetScaler Gateway, one of which...

    CME XRP Futures Hit $1B Fastest Ever as Gemini Tops Coinbase App

    CME Group XRP futures reached $1 billion in open interest in just over three...

    Gemini Unveils XRP Mastercard: No New Perks, Just Blue Branding

    Gemini has released an "XRP Edition" of its credit card in partnership with Mastercard.The...

    Google Unveils Gemini 2.5 Flash Image to Rival OpenAI’s ChatGPT

    Google released Gemini 2.5 Flash Image, its latest AI tool for image generation and...

    MixShell Malware Targets U.S. Manufacturers in ZipLine Attack

    Attackers are targeting supply chain-related manufacturing companies using an in-memory Malware called MixShell.The campaign,...

    Must Read

    What Is Bcrypt Password Hashing Function?

    KEY TAKEAWAYSBcrypt is a password hashing function that transforms plain passwords into unique alphanumeric sequences.It is a one-way process, ensuring that passwords cannot be...