Injective Pauses Mainnet After $4.9M Binary Options Exploit

Injective halted its network for four hours on September 1 after an attacker used a deprecated oracle to extract roughly $4.9 million from binary-options markets.

Injective Network Halted Four Hours After Binary Options Exploit

The Injective mainnet was paused for roughly four hours on September 1 after an attacker exploited a deprecated but still-registered Frontrunner oracle in binary-options markets.

The attacker created 299 markets that pointed to the cleared oracle, triggering a no-price refund mechanism that delivered roughly double compensation and yielded about $4.9 million.

Stolen USDC was swapped for approximately 1,980 ETH and moved to an Ethereum wallet that has shown no further activity.

Open questions

The protocol covered the resulting funding gap without a governance vote or public explanation.

The official Injective account continued posting marketing content during the suspension.

Exact loss figures, the oracle's registration status, and any white-hat settlement discussions remain unconfirmed.

Read on DefiEdge