NullTrace
TX
MEDIUMSolanaSmart Contract BugATTRIBUTED

Texture Protocol

A targeted vault vulnerability allowed an attacker to steal approximately $2.2M from one Texture lending vault.

Loss

$2.2M

Risk

Isolated vault exploit

Confidence

87%

AI Generated Breakdown

Reporter Agent synthesis with forensic confidence scoring

Attack explanation

The exploit appears isolated to a specific vault code path rather than a protocol-wide architecture failure, but funds were not recovered.

Root cause analysis

Vault-level controls did not stop the vulnerable withdrawal path before user funds left the affected market.

87

confidence score

Isolated vault exploit

Wallet Flow Visualization

Attacker path, bridge transfers, token drains, mixer usage

interactive graph

Technical Breakdown

Attack vector

Targeted smart-contract vault vulnerability

Vulnerability

Vault logic lacked sufficient circuit breakers and withdrawal rate limits

Affected contracts

Texture vaultLending market controllerWithdrawal path

Mitigation suggestions

Add vault-level circuit breakers
Use per-vault withdrawal rate limits
Expand fuzzing and invariant tests around vault accounting

Emergency Bridge

Move funds off Solana

Powered byLI.FI

If your assets are at risk on Solana, bridge them to a safer chain immediately via LI.FI — the cross-chain aggregator covering 60+ chains and all major Solana bridges.

From (at risk)

Solana

Bridge to

Best Route via LI.FI

SolanaEthereum

Mayan Swift • Across • Glacis aggregated

Est. Fee

~$0.50

Open LI.FI Bridge

60+ chains · gasless swaps on Solana · Jito bundles

60+

Chains

$2B+

Volume

20+

Bridges

Exploit Timeline

00:00

Suspicious activity begins

NullTrace Scout Agent detects abnormal account, wallet, or market behavior.

00:19

Exploit pattern classified

Analyst Agent matches the activity against known Web3 attack signatures.

00:41

Funds movement traced

Forensics Agent clusters wallets, bridge routes, exchange hops, and mixer exposure.

01:12

Related posts monitored

Reporter Agent collects researcher warnings and suppresses unverified claims.

03:48

Response tracked

Protocol actions, freezes, recovery updates, and public statements are added to the dossier.

Related Tweets

Demo X/Twitter integration for researcher posts, warnings, and fake-info checks

related tweets demo scan

NullTrace links social posts to the incident by contract mentions, protocol name, researcher credibility, and fake-loss detection tags.

SlowMist Research

@slowmist_team · 2m

Warning

Solana account permission changes need clear wallet simulation. Users should inspect owner reassignment instructions before signing.

NullTrace Intel

@nulltrace_ai · 4m

Confirmation

On-chain behavior and public reports are aligned. Confidence raised after wallet clusters matched the incident pattern.

Maya Chen

@maya_sec · 7m

Researcher

The important signal is not only the drain. Watch the staging wallets and the small test transactions before the main move.

Rumor Watch

@intel_filter · 10m

Fake Info Flag

Unverified recovery claims are circulating. No confirmed full recovery unless the protocol or tracked wallet flows support it.

suppressed by misinformation filter

SlowMist Research

@slowmist_team · 2m

Warning

Solana account permission changes need clear wallet simulation. Users should inspect owner reassignment instructions before signing.

NullTrace Intel

@nulltrace_ai · 4m

Confirmation

On-chain behavior and public reports are aligned. Confidence raised after wallet clusters matched the incident pattern.

Maya Chen

@maya_sec · 7m

Researcher

The important signal is not only the drain. Watch the staging wallets and the small test transactions before the main move.

Rumor Watch

@intel_filter · 10m

Fake Info Flag

Unverified recovery claims are circulating. No confirmed full recovery unless the protocol or tracked wallet flows support it.

suppressed by misinformation filter

AI Voice Briefing

Generated incident narration for security leadership

briefing ready · 00:58 · analyst-grade summary