AftermathFi perpetual contract on Sui exploited; about $1.1M USDC drained

Onchain security firm Blockaid (@blockaid_) reported that AftermathFi's perpetual contract on the Sui Network was exploited on April 29. The attacker, using address 0x1a65...2d41e, siphoned roughly $1.1 million in USDC across 11 transactions over about 36 minutes. Blockaid said the exploit stemmed from a flaw in the contract's fee-calculation logic, allowing synthetic collateral inflation and enabling unauthorized withdrawals from the protocol's treasury.