Lending protocol Edel Finance has released its post-mortem and recovery plan following a security exploit earlier today. The attack resulted in approximately $403,000 in bad debt for the protocol, but the team has committed to fully absorbing the loss, ensuring that no user funds are at risk. Currently, all V1 contracts remain paused, with the team targeting a 48-hour window to restore full operations, including withdrawal functionality.
Attack Mechanism and Team Response
According to monitoring by security firm CertiK, the attacker exploited a vulnerability in Edel Finance's wGOOGLx collateral pricing mechanism, which relied on the balance of its underlying GOOGLx tokens. By manipulating the wGOOGLx price, the attacker was able to borrow and drain approximately $204,000 from the protocol. Upon detecting the anomaly, Edel's team immediately halted all V1 contracts to prevent further losses. The team has stated that affected depositors will see their balances restored at a 1:1 ratio, with the protocol absorbing the associated bad debt.
Recovery Efforts and Security Implications
Edel's team has traced the attacker's on-chain transactions and is coordinating with exchange partners and ecosystem collaborators to facilitate fund recovery. Simultaneously, the protocol has issued a formal white hat settlement offer, demanding the return of remaining stolen funds within a specified deadline in exchange for a bug bounty. This incident underscores a recurring vulnerability in DeFi lending protocols: when collateral pricing depends on the balance of a related asset within the same system, it becomes susceptible to price manipulation. To mitigate such risks, project teams should incorporate robust oracle mechanisms and multi-source pricing feeds during the smart contract design phase.

