Injective Pauses Mainnet After $4.9M Binary Options Exploit
Injective halted its network for four hours on September 1 after an attacker used a deprecated oracle to extract roughly $4.9 million from binary-options markets.

The Injective mainnet was paused for roughly four hours on September 1 after an attacker exploited a deprecated but still-registered Frontrunner oracle in binary-options markets.
The attacker created 299 markets that pointed to the cleared oracle, triggering a no-price refund mechanism that delivered roughly double compensation and yielded about $4.9 million.
Stolen USDC was swapped for approximately 1,980 ETH and moved to an Ethereum wallet that has shown no further activity.
Open questions
The protocol covered the resulting funding gap without a governance vote or public explanation.
The official Injective account continued posting marketing content during the suspension.
Exact loss figures, the oracle's registration status, and any white-hat settlement discussions remain unconfirmed.