Echo Protocol's Monad deployment exploited for $76M through compromised admin key enabling unauthorized eBTC minting.
Security & Exploits ·
Echo Protocol's Monad deployment was exploited after attackers minted 1,000 unauthorized eBTC through a compromised admin key, with the minted tokens valued at approximately $76.7 million. The attacker deposited a portion into Curvance as collateral, borrowed WBTC against it, bridged the assets to Ethereum, and moved roughly $821,700 in ETH to Tornado Cash, with Echo Protocol reporting approximately $816,000 ultimately impacted on Monad. Echo has since regained control of its admin keys and burned the remaining 955 eBTC held by the attacker.
The incident reflects a recurring vulnerability in cross-chain protocols where a single compromised credential grants minting privileges across an entire deployment. Echo confirmed the breach originated from the Monad deployment specifically and stated that the Monad network itself continued operating normally with no evidence of compromise affecting its Aptos deployment, where the separate aBTC asset exists. The team noted current Aptos exposure limited to approximately $71,000 with no confirmed fund losses on that chain.
The exploit underscores broader concerns around off-chain infrastructure in DeFi protocols. Security experts have flagged that as protocols increase reliance on off-chain components for key management, they become more vulnerable to social engineering and infrastructure attacks—areas historically treated as secondary risks within the industry.