
EasyFi
HackedDeFi · $EASY · ✝ 2021
A compromised admin key cost the lending protocol ~$59M.
EasyFi was a Polygon-based DeFi lending protocol that lost roughly $59M in April 2021 after its administrative private key was compromised. The attacker used the stolen key to drain liquidity and make off with a large stash of EASY tokens.
- Peak
- ~$59M stolen
- Cause
- Hacked
- Year of death
- 2021
☠️ Cause of death
The founder's admin private key was compromised, giving the attacker privileged control to drain protocol funds and reserves.
📓 Lessons left behind
- —Admin keys must live behind multisig, never one device.
- —Privileged upgrade powers are a prime attack surface.
- —Separate signer hygiene from everyday operational machines.
🌱 The idea that survived
Multisig admin control
Reinforced that protocol admin powers belong to a multisig with hardware-isolated signers.
#defi#private-key#polygon