{"id":30121,"date":"2026-06-10T18:49:10","date_gmt":"2026-06-10T17:49:10","guid":{"rendered":"https:\/\/investx.fr\/en\/2026\/06\/10\/raydium-exploit-1-34-million-inactive-amm-pools\/"},"modified":"2026-06-10T18:49:13","modified_gmt":"2026-06-10T17:49:13","slug":"raydium-exploit-1-34-million-inactive-amm-pools","status":"publish","type":"post","link":"https:\/\/investx.fr\/en\/crypto-news\/raydium-exploit-1-34-million-inactive-amm-pools\/","title":{"rendered":"Raydium: Massive Exploit Drains $1.34 Million From Inactive AMM Pools"},"content":{"rendered":"\n
A retired AMM program<\/strong> on Raydium<\/strong> has just been hit by a targeted attack. The result: $1.34 million<\/strong> drained from five inactive liquidity pools within hours.<\/p>\n\n\n\n The Solana-based DEX<\/strong> responded swiftly, pledging full compensation through its treasury. But the incident raises a fundamental question: how can a decommissioned contract still be exploitable?<\/p>\n\n\n\n A closer look at a vulnerability that serves as a stark reminder \u2014 in DeFi<\/strong>, legacy programs can remain attack vectors long after they have been retired.<\/p>\n\n\n\n The exploit targeted an older AMM (Automated Market Maker)<\/a> program<\/strong> belonging to Raydium<\/strong>, one that had been officially retired and replaced by newer versions. Five inactive liquidity pools were fully drained, with total losses estimated at $1.34 million<\/strong>. The attack did not affect any active pools or the protocol’s core infrastructure.<\/p>\n\n\n\n This type of attack vector is particularly insidious: security teams typically focus their monitoring on contracts in active production, leaving deprecated programs in a blind spot. Yet as long as a smart contract<\/strong> remains deployed on-chain, it stays technically accessible \u2014 and therefore potentially exploitable if funds are still associated with it.<\/p>\n\n\n\n Raydium<\/strong> has not yet published a detailed technical post-mortem outlining the precise nature of the vulnerability that was exploited. The team confirmed the incident through its official channels and indicated that investigations are ongoing to identify the exact attack vector.<\/p>\n\n\n\n In response to the impact on affected liquidity providers, Raydium<\/strong> announced that its treasury would cover all losses<\/strong> incurred by impacted users. The decision reflects a clear intent to preserve community trust, in a sector where uncompensated exploits can permanently damage a protocol’s reputation.<\/p>\n\n\n\n This model of direct treasury-based compensation has become an increasingly common practice in DeFi<\/a><\/strong> following similar incidents. It bypasses decentralized insurance mechanisms \u2014 which are often slow and complex \u2014 and sends a strong signal to LPs (liquidity providers)<\/strong> about the protocol’s financial resilience. Raydium<\/strong>, which generates substantial revenue through trading fees on Solana<\/a><\/strong>, holds the reserves needed to absorb this kind of shock.<\/p>\n\n\n\n The incident comes at a time when Raydium remains one of the most active DEXs in the Solana ecosystem<\/strong>, consistently posting some of the highest trading volumes across all of DeFi<\/strong>. The team’s swift response should limit the damage to user confidence, even as the question of how to manage obsolete contracts remains very much open.<\/p>\n\n\n\nA Surgical Attack on a Retired AMM Program<\/h2>\n\n\n\n
Raydium Treasury Steps In to Cover Losses<\/h2>\n\n\n\n
A Harsh Reminder of the Risks Posed by Deprecated DeFi Contracts<\/h2>\n\n\n\n