Skip to content

BadgerDAO Frontend Attack

PhishingHighConfirmed$120M
Description

Attacker compromised BadgerDAO's Cloudflare API key and injected malicious scripts into the frontend, tricking users into approving token transfers.

Evidence & References

Affected Protocol

BadgerDAO

Vulnerability Type

frontend injection phishing

Date Occurred

2021-12-02

Date Reported

2026-04-21