Cryptopotato Volo Protocol Suffers $3.5M Exploit on Sui Network Vaults
Article Content
- •Volo Protocol lost $3.5 million due to an exploit affecting three vaults.
- •The protocol has frozen the affected vaults and is working on recovery efforts.
- •Volo is committed to absorbing the losses and not impacting users financially.
Volo Protocol, a liquid staking platform on the Sui network, experienced a security breach resulting in a loss of approximately $3.5 million from three vaults containing Wrapped Bitcoin (WBTC), Matrixdock Gold (XAUm), and USDC. The protocol detected the exploit and immediately froze the affected vaults to mitigate further losses, confirming that the remaining vaults, valued at around $28 million, were secure. Recovery efforts have successfully blocked or frozen roughly $2 million of the stolen funds, including $500,000 shortly after the attack. Volo has committed to absorbing the financial loss and not passing it on to users while working with ecosystem partners for recovery. The incident is part of a troubling trend in DeFi, with multiple significant exploits occurring in April 2026, including a $292 million breach of KelpDAO. A detailed post-mortem of the incident is forthcoming.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Lazarus and Kelp DAO in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
New Ted Backdoor Targets South Korean Media and Automotive Sectors A new Linux toolkit, named the 'ted backdoor', has been discovered targeting South Korean organizations in the media and automotive sectors. This toolkit, attributed to North Korean state actors, integrates into HAProxy load balancers to intercept web traffic and deliver altered content. The toolkit allows attackers…
ClickFix Campaign Exploits Google API for Cryptocurrency Theft A cryptocurrency-stealing campaign has emerged that uses the Google Visualization API to inject malicious JavaScript into victims' browsers. The attackers manipulate users into pasting code from a Google Sheets document, effectively turning them into unwitting participants in the attack. This ClickFix-style social…