Cascade CLS vault on Arbitrum exploited for $1.34M USDC, with attacker bridging funds through Solana.
Security & Exploits ·
An attacker drained $1.34M in USDC from the Cascade CLS vault on Arbitrum, then moved the stolen funds across blockchains by bridging through Solana before reaching Ethereum. The exploit targeted user deposits held in the vault, representing a loss of deposited capital rather than protocol reserves.
The mechanics of the attack leveraged cross-chain bridge infrastructure to obscure the flow of stolen assets. By routing funds through Solana as an intermediate step, the attacker fragmented the on-chain transaction trail, making real-time tracking more difficult across multiple networks. Peckshield identified and publicly disclosed the incident, signaling the vulnerability to the wider security community.
The full scope of the breach—whether the vault had additional safeguards that failed, what enabled the initial extraction of funds, and whether the attacker has been identified or the funds recovered—remains unclear. No statement from Cascade regarding remediation, user compensation, or root cause analysis has been provided in available reports.