
Edel Finance, a programmable market layer for tokenized equities, suffered a roughly $403,000 exploit after an attacker manipulated the wrapped xStocks exchange rate through a flash loan. According to AMBCrypto and The Crypto Times, the wGOOGLx collateral briefly gained in value about 78-fold over its true value, allowing the attacker to borrow far more than the collateral's true value. The exploit did not stem from faulty price oracles - Chainlink feeds correctly reported Alphabet's share price around $357 - but from how GOOGLx converted to and from its wrapped form wGOOGLx. The attacker interfered with this conversion mechanism so that wGOOGLx was valued at about 78 times what it should have been, then used that phantom collateral to borrow real assets from the protocol. Blockaid's exploit detection system flagged the attack in real time and issued a community alert, confirming the attacker deployed freshly created exploit contracts specifically for this attack.
Edel Finance has taken decisive action to address the exploit, with the team absorbing all losses so depositors are made whole and restoring balances one for one. According to The Crypto Times, the team has traced the attacker's transactions and is coordinating with exchanges, and has offered the attacker a white-hat settlement - a deal that lets a hacker return most of the funds in exchange for a fee and no legal pursuit, within a set window. The protocol has paused all version-one contracts, which remain frozen, and warned users not to interact with them. Edel Finance is deploying a version-two system with a redesigned pricing setup meant to block this kind of manipulation, and promised a full technical breakdown to follow. The team stated it has "identified and contained" the exploit, though recovery prospects remain slim given the funds are already in Tornado Cash.
The exploit's aftermath revealed sophisticated money laundering techniques as the attacker moved stolen funds through Tornado Cash, the sanctioned cryptocurrency mixing protocol. According to The Crypto Times, the exploiter's wallet 0x584...11C76 received the drained funds and subsequently moved the stolen assets to Tornado Cash, following a well-established playbook where stolen assets are routed through the mixing service within hours of extraction. This laundering step severely complicates recovery efforts and represents a common pattern in major DeFi exploits throughout 2026, from the Wasabi Protocol's $4.5M admin-key compromise to the $7.5M JaredFromSubway MEV bot drain.
The exploit's aftermath quickly impacted Edel Finance's liquidity position. As reported by AMBCrypto, total value locked (TVL) plunged from approximately $630,000 to roughly $947,000, reflecting a rapid wave of user withdrawals as confidence deteriorated. According to DeFiLlama data, Edel Finance recorded an estimated net outflow of $630,000, the largest on record. While a $100,000 inflow had briefly supported liquidity earlier, it failed to offset the accelerating withdrawals that followed the exploit. The Crypto Times notes that exploits exceeding 10% of a mid-cap protocol's TVL in 2026 have frequently proven to be terminal events for affected projects.
The exploit exposed significant vulnerabilities beyond the immediate financial impact, highlighting price manipulation as the second most common smart-contract vulnerability in the OWASP Smart Contract Top 10 vulnerabilities for 2025. According to The Crypto Times, oracle price manipulation ranks as one of the field's most common attack vectors, alongside cross-chain bridges which produced the year's largest single thefts, including the $292 million drained from Kelp DAO in April. Tokenized equities extend this surface, with products that put stocks like Google onchain among the fastest-growing parts of DeFi, adding another layer between an asset and its price through wrapping and conversion steps that turn a share into collateral. This exploit arrives at a difficult time as Edel Finance was already under scrutiny after Bubblemaps revealed that a cluster of 60 wallets linked to the project had sniped over 30% of the EDEL token supply during what the team had marketed as a "fair launch."