Revoke.cash logo

Ekubo Hack

Check if your address is affected.

5 May 2026
$1.42M stolen
Ethereum Logo
Arbitrum Logo

Close to $1.42M was stolen from users of Ekubo, a DEX that originated on Starknet and expanded to Ethereum and Arbitrum. A calldata parsing bug in Ekubo's gas-optimized HuffRouter contracts allowed attackers to spend the token approvals of anyone who had approved them. Ekubo's core contracts, liquidity providers and its Starknet deployment were unaffected. Ekubo published a full post-mortem and funded an on-chain recovery fund to compensate victims.

Affected users remain at risk as long as they haven't revoked their approvals, so it is recommended to use the Revoke.cash Exploit Checker below to make sure that you're safe.

Sources:x.comx.comgithub.com

Next time, revoke it automatically

Revoke Ultimate monitors your approvals around the clock and revokes them automatically when an exploit like this one is identified, even while you sleep.

See how Auto-Revoking works
Get Ultimate
Back to Exploits