Post-exploit response score
StakeWise v3's assessment for RD-F-081 — scored yellow on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
No StakeWise smart-contract exploit to score against the primary F081 definition. Scored against the 2025-11-03 Balancer-adjacent incident as the only observable response event. Response quality: (a) DAO multisig mobilized within ~30 minutes; (b) on-chain burn/mint recovery executed; (c) public communications within hours; (d) governance proposal to remove emergency powers submitted. Recovery was 73.5% (~$19M of ~$26M). Yellow rather than green because ~26.5% (~$7M) was unrecovered (attacker swapped to ETH before DAO acted), and the promised full StakeWise post-mortem was not confirmed published as of assessment date. The response demonstrated strong operational capability and transparency.
Sources #
- URLStakeWise recovers $19M in osETH after Balancer hack — crypto.newsRecovery timeline and amount: 5,041 osETH ($19M) + 13,495 osGNO ($1.7M) recovered; ~30 min response; pro-rata reimbursement committedretrieved 2026-05-16
- Balancer hacker loses $20m after StakeWise uses loophole — DL NewsTechnical execution of recovery: DAO burn/mint sequence; 4-step multisig action; revocation of controller rights; proposal to remove power permanentlyretrieved 2026-05-16
Methodology #
Curator-score (1–5) the most recent incident response on: compensation completeness, transparency of disclosure, root-cause analysis depth, and operational recovery speed.
See the full factor methodology and distribution across all protocols →