Coming soon

← Back to the graveyard
EasyFi logo

EasyFi

Hacked

DeFi · $EASY · ✝ 2021

A compromised admin key cost the lending protocol ~$59M.

EasyFi was a Polygon-based DeFi lending protocol that lost roughly $59M in April 2021 after its administrative private key was compromised. The attacker used the stolen key to drain liquidity and make off with a large stash of EASY tokens.

Peak
~$59M stolen
Cause
Hacked
Year of death
2021

☠️ Cause of death

The founder's admin private key was compromised, giving the attacker privileged control to drain protocol funds and reserves.

📓 Lessons left behind

  • Admin keys must live behind multisig, never one device.
  • Privileged upgrade powers are a prime attack surface.
  • Separate signer hygiene from everyday operational machines.

🌱 The idea that survived

Multisig admin control

Reinforced that protocol admin powers belong to a multisig with hardware-isolated signers.

#defi#private-key#polygon