Maya Protocol Suffers $1.7M Loss from Complex Exploit

Maya Protocol Suffers $1.7M Loss from Complex Exploit

First seen 20 Aug 2026, 07:53 UTC BeincryptoCryptopolitanblog.thorchain.org 87% similarity 66.0

Article Content

Browse articles
ThreatCluster

Maya Protocol experienced a significant security breach on August 18, 2026, when an attacker exploited six chained bugs to drain approximately $1.7 million from its liquidity pools. The hacker manipulated the protocol's logic by executing a single transaction that bundled 23 instructions, tricking the system into issuing a false subsidy. This led to a misrepresentation of the internal accounting, allowing the attacker to withdraw 48.87 million CACAO tokens, nearly half of the total supply. The native token's value plummeted by 88%, falling from $0.115 to $0.013. Following the attack, Maya's co-founder Aaluxx announced a global halt to the project and requested the return of the stolen funds. The incident highlights vulnerabilities in decentralized finance protocols and the challenges in defending against sophisticated attacks. Recovery efforts are ongoing, with the team investigating the exploit's root causes.

Key Points: • Maya Protocol lost approximately $1.7 million due to a sophisticated exploit involving six bugs. • The attack manipulated protocol logic, allowing the hacker to withdraw nearly half of the total CACAO supply. • The incident caused an 88% drop in the value of CACAO, prompting a global halt of the protocol.

ThreatCluster AI How this analysis works

Timeline

2026-08-18
Maya Protocol exploit occurs
An attacker exploits six chained bugs, draining $1.7 million from liquidity pools and manipulating internal accounting.
Cryptopolitan
2026-08-18
CACAO token value collapses
The value of CACAO drops from $0.115 to $0.013, reflecting an 88% decline due to the exploit.
Beincrypto
2026-08-19
Maya Protocol halts operations
Co-founder Aaluxx announces a global halt of the project and requests the return of stolen funds via Discord.
Beincrypto

Community

Browse all →