Share this article

Sui Network Steps in to Compensate Cetus Losses in Full After $223M Exploit

The Sui Foundation has extended a loan to Cetus to fully reimburse affected users, with repayment contingent on an upcoming on-chain community vote.

May 28, 2025, 6:04 a.m.
(Pixabay)
(Pixabay)

What to know:

  • Cetus Protocol, the largest DEX on the Sui blockchain, secured a loan from the Sui Foundation to fully compensate users after a $223 million exploit.
  • The attacker used spoof tokens to exploit price curves, draining real assets from liquidity pools, with $162 million in stolen tokens frozen on-chain.
  • Cetus plans to begin reimbursing users immediately, using the loan and its reserves, while awaiting a community vote on using frozen funds for full recovery.

Cetus Protocol, the largest decentralized exchange (DEX) on the Sui blockchain, has secured a loan from the Sui Foundation to compensate users in full following a $223 million exploit last week.

These funds apply only to cover the bridged assets, and are separate from the frozen funds subject to an onchain community vote.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

“Using our cash and token treasuries, we are now in a position to fully cover the stolen assets currently off-chain if the locked funds are recovered through the upcoming community vote,” Cetus said in an X post.

“This includes a critical loan from the Sui Foundation, making a 100% recovery for all affected users possible.”

The recovery plan hinges partly on the outcome of a pending on-chain governance proposal, which would authorize the use of frozen funds to complete user reimbursements.

“These are extraordinary measures taken to protect the Sui community,” the Sui Foundation said in a statement, adding that a “full recovery is possible” with the community’s support.

The exploit of Cetus last week involved an attacker manipulating spoof tokens, such as BULLA, to exploit flawed price curves and reserve logic, allowing them to drain SUI, USDC, and other real assets from liquidity pools without depositing equivalent value.

At the time, over $162 million in stolen tokens were frozen on-chain, while the remainder were bridged out through multiple paths. The attacker’s wallet (which is still active) was last seen holding over 12.9 million SUI, with additional assets likely swapped or obfuscated across networks.

In response, Cetus paused its smart contracts and initiated an investigation, while its governance token, CETUS, dropped nearly 40% at the time. Trading activity across Sui’s DeFi ecosystem slowed amid liquidity concerns and broader scrutiny of protocol safety.

Now, with the new secured loan from the Sui Foundation, Cetus says it is in a position to begin reimbursing users immediately.

More For You

Protocol Research: GoPlus Security

GP Basic Image

What to know:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.

More For You

Zcash Floats Dynamic Fee Plan to Ensure Users Won’t Be Priced Out

(Christian Dubovan/Unsplash, modified by CoinDesk)

ZEC zoomed 12% amid the fee discussion, beating gains across all major tokens.

What to know:

  • A new proposal by Shielded Labs suggests a dynamic fee market for Zcash to address rising transaction costs and network congestion.
  • The proposed system uses a median fee per action observed over the prior 50 blocks, with a priority lane for high-demand periods.
  • The changes aim to maintain Zcash's privacy features while avoiding complex protocol redesigns.