<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Thetanuts - Coinfea</title>
	<atom:link href="https://coinfea.com/tag/thetanuts/feed/" rel="self" type="application/rss+xml" />
	<link>https://coinfea.com</link>
	<description>Crypto and Blockchain News</description>
	<lastBuildDate>Tue, 16 Jun 2026 14:18:40 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://coinfea.com/wp-content/uploads/2022/04/cropped-Cfeawhite-1-32x32.png</url>
	<title>Thetanuts - Coinfea</title>
	<link>https://coinfea.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Thetanuts Finance suffers a $2.1 million exploit</title>
		<link>https://coinfea.com/thetanuts-finance-suffers-a-2-1-million-exploit/</link>
		
		<dc:creator><![CDATA[Owotunse Adebayo]]></dc:creator>
		<pubDate>Tue, 16 Jun 2026 17:17:00 +0000</pubDate>
				<category><![CDATA[Cryptocurrency News]]></category>
		<category><![CDATA[DeFi]]></category>
		<category><![CDATA[ETH]]></category>
		<category><![CDATA[Thetanuts]]></category>
		<guid isPermaLink="false">https://coinfea.com/?p=22271</guid>

					<description><![CDATA[<p>Thetanuts Finance, the DeFi options protocol, has confirmed it suffered an exploit that drained $2.1 million from a legacy vault associated with it. According to Thetanuts, the compromised contract had been deprecated years ago. Blockchain security firm PeckShieldAlert, which flagged the incident before Thetanuts confirmed the exploit, reported that it seemed $2 million in option [&#8230;]</p>
<p>The post <a href="https://coinfea.com/thetanuts-finance-suffers-a-2-1-million-exploit/">Thetanuts Finance suffers a $2.1 million exploit</a> first appeared on <a href="https://coinfea.com">Coinfea</a>.</p>]]></description>
										<content:encoded><![CDATA[<p><strong>Thetanuts Finance, the DeFi options protocol, has confirmed it suffered an exploit that drained $2.1 million from a legacy vault associated with it. According to Thetanuts, the compromised contract had been deprecated years ago.</strong></p>



<p>Blockchain security firm PeckShieldAlert, which flagged the <a href="http://www.cryptopolitan.com/hack-deprecated-thetanuts-vault/" title="incident">incident</a> before Thetanuts confirmed the exploit, reported that it seemed $2 million in option tokens appeared to have been recovered through whitehat efforts. The remaining funds, about $105,000 in USDC, were swapped by the exploiter for approximately 60 ETH, according to PeckShieldAlert’s on-chain analysis. The attacker also holds $34,000 in USDC-denominated option tokens.</p>



<h2 class="wp-block-heading">Thetanuts claimed the vault was deprecated</h2>



<p>A vulnerability in the vault’s redemption logic is the root of the exploit, according to security researcher ExVul, who published a breakdown on X. Thetanuts Finance responded within hours, writing on X, “Our preliminary investigation indicates that this is once again, a deprecated vault that we have migrated from years ago.” The protocol stated, “It has no relation to any of our current contracts or products,” while adding that it would publish a full post-mortem once it gathers more details.</p>



<p>Blockaid’s exploit detection system also picked up the attack independently, issuing a community alert flagging active exploitation of the Thetanuts contract on Ethereum. The security platform also shared the exploiter’s address and the exploited contract’s address as well. The Thetanuts incident adds to a growing list of deprecated protocols that have been attacked recently. The most recent, apart from Thetanuts, is Aztec Connect, a privacy bridge abandoned since 2023.</p>



<p>The protocol lost $2.1 million through a separate verification flaw in its immutable smart contracts, as Cryptopolitan reported. In that case, the team had renounced all admin keys, leaving no one able to patch or pause the code. So far in the month of June, the total value hacked in terms of <a href="https://coinfea.com/wp-content/uploads/2026/02/Grayscale-Launches-Aave-Trust-for-DeFi-Investment-Opportunities.png" title="Grayscale-Launches-Aave-Trust-for-DeFi-Investment-Opportunities">DeFi</a> exploits has crossed $46 million, and it is only midway into the month.</p>



<p>At this pace, it may rival or exceed May, which saw its own fair share of protocol breaches. Thetanuts has tried to assure its users of its current contracts that they are not at risk; however, the latest events have made it clear to users that abandoned code is not safe code, and so are the funds tied to them.</p><p>The post <a href="https://coinfea.com/thetanuts-finance-suffers-a-2-1-million-exploit/">Thetanuts Finance suffers a $2.1 million exploit</a> first appeared on <a href="https://coinfea.com">Coinfea</a>.</p>]]></content:encoded>
					
		
		
			<media:content url="https://coinfea.com/wp-content/uploads/2026/06/IMG_20260616_132343-1024x612.jpg" medium="image" />
	</item>
	</channel>
</rss>
