On March 5, 2025, hackers exploited a vulnerability in Fusion v1’s outdated smart contract, draining over $5 million in assets.
The attack highlights the risks of using outdated protocols in DeFi, urging rapid upgrades to prevent future security breaches.
Recently, 1inch, a liquidity aggregator platform, was attacked using a vulnerability in its outdated smart contract. Hackers thus managed to pilfer approximately $5 million worth of cryptocurrencies. This event reminds us of the need for change systems to more recent, safer versions.
Outdated Code in Fusion v1 Exposes 1inch to $5M Exploit
The 1inch team found suspicious activities on March 5, 2025, that resulted in the Fusion v1 smart contract being exploited outdatedly. Using the weaknesses in the legacy code, hackers drained approximately 2.4 million USDC and 1,276 WETH—worth more than $5 million.
Fusion v1 itself is not supported by 1inch anymore. Although some resolvers are still utilizing the outdated, insecure version, F