According to Slow Mist, DeFi protocol Thetanuts Finance suffered an attack today (June 16), resulting in approximately $2.1 million in losses. However, roughly $2 million of the compromised funds appear to have been recovered by white hat hackers.
The vulnerability stemmed from integer division truncation in the mint function. By draining vault reserves near zero, attackers exploited a calculation flaw that returned zero, enabling unlimited free token minting. Thetanuts Finance noted that preliminary investigation indicates the compromised vault was abandoned years ago and holds no relation to current contracts or products.