Certik Analysis: Sola Security Incident and Related Attacks

Certik has released an analysis of the security incident impacting Sola on April 12, 2025, highlighting a specific attack that resulted in losses of approximately $28,000. The incident stemmed from an exploited contract (0x623c) due to inadequate access control. This event marks the fourth instance involving this same perpetrator, who has previously targeted Gemcy, OPC, and AIRWA, amassing around $181,000 in profits. On April 23rd, the attacker executed a fifth attack on ACB, totaling $498 BNB transferred through Tornado Cash across these five incidents. As of 2025, Certik records 93 incidents related to code vulnerabilities, with total losses exceeding $52.5 million. Code vulnerabilities remain a significant contributing factor to such losses, ranking second only to phishing incidents.