Solv Protocol Bitcoin Vault Exploited for $2.7 Million, 10% Bounty Offered
Initial analyses indicate a double‑minting reentrancy flaw repeatedly abused to inflate BRO before conversion to SolvBTC.
Overview
- Attackers drained 38.05 SolvBTC from a Bitcoin Reserve Offering vault, worth roughly $2.7 million.
- Solv says fewer than 10 users were affected and pledges full compensation, with other vaults reported unaffected.
- Security firm Decurity reported the bug was triggered 22 times, inflating 135 BRO into about 567 million BRO before swapping to SolvBTC.
- Researchers described the mechanism as a double‑minting vulnerability consistent with a reentrancy attack, and a full post‑mortem is pending.
- Solv is working with Hypernative Labs, SlowMist and CertiK to patch the issue, and the attacker has not signaled any intent to return funds.