Share this article

$3M in Ether Stolen From SushiSwap’s MISO Launchpad

An auction on the DeFi exchange’s launchpad was attacked on Thursday.

Updated May 11, 2023, 4:02 p.m. Published Sep 17, 2021, 5:45 a.m.
(Dbarak/Wikimedia Commons)
(Dbarak/Wikimedia Commons)

A non-fungible token (NFT) auction on the MISO token launchpad built on the SushiSwap platform appears to have been hacked, with the attacker making off with roughly $3 million in ether, SushiSwap Chief Technology Officer Joseph Delong tweeted Thursday.

  • Delong said that an anonymous contractor using the Github handle “AristoK3″ injected malicious code into Miso’s front end in a supply chain attack. He added the link to an Ethereum address showing ETH 864.8 transferred at approximately 16:00 UTC on Thursday.
  • Etherscan has identified the address as part of an exploit.
  • Supply chain attacks happen when a malicious actor changes a contract address to one they control. That type of attack can occur with open-source software libraries, according to the U.S. National Counterintelligence and Security Center.
  • Only one contract appears to have been exploited, according to Delong, for the JayPegsAutoMart NFT sale.
  • The attacker, who has done work with decentralized finance (DeFi) protocol yearn.finance, replaced the auction’s wallet address with their own, Delong said.
  • Delong said SushiSwap “has reason to believe” the attacker was eratos1122, linking to a Twitter account that identifies as a blockchain and mobile games developer.
  • SushiSwap has asked crypto exchanges FTX and Binance, to hand over the hacker’s know-your-customer information of the individual.
  • CoinDesk hasn’t been able to independently verify the attacker’s identity as of press time.
  • If the funds are not returned by 12:00 UTC, the DeFi exchange will file a complaint with the FBI, Delong said.
STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

More For You

Protocol Research: GoPlus Security

GP Basic Image

What to know:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.

More For You

Stablecoin Adoption Is ‘Exploding' — Here's Why Wall Street Is Going All-In

Stablecoin networks (Unsplash, modified by CoinDesk)

Alchemy co-founder and president Joe Lau said stablecoin adoption is exploding as banks, fintechs and payment platforms push beyond the USDT/USDC exchange era.

What to know:

  • Stablecoin usage is quickly broadening from crypto-native exchanges into payments, payroll and treasury as companies chase 24/7, digital-native settlement, according to Alchemy Co-founder and President Joe Lau.
  • Banks are pushing tokenized deposits as a regulated, bank-native alternative that delivers stablecoin-like benefits for institutional clients.
  • The endgame is a two-track system — stablecoins for open, two-party settlement; deposit tokens for bank ecosystems, until scale forces convergence and competition, Lau said.