Prism (Uniswap V4 Hook) (2026) — Crypto Hack
Disputed RelaunchUniswap V4 hook protocol Prism was exploited from early July to July 14, 2026, with an attacker creating 2,500 phantom fee-earning positions routed to the Uniswap V4 PoolManager and Prism token contract (both excluded from internal accounting). No principal was stolen but ~40% of trading fees were diverted. PRISM crashed 91%. The relaunch was disputed.
Summary
Uniswap V4 hook protocol Prism was exploited from early July to July 14, 2026, with an attacker creating 2,500 phantom fee-earning positions routed to the Uniswap V4 PoolManager and Prism token contract (both excluded from internal accounting). No principal was stolen but ~40% of trading fees were diverted. PRISM crashed 91%. The relaunch was disputed.
How It Was Compromised — DeFi via Phantom Position Fee Layer Exploit
Prism, a Uniswap V4 hook protocol, suffered a fee diversion exploit from early July through July 14, 2026. The attacker created 2,500 phantom fee-earning positions that were routed to the Uniswap V4 PoolManager and the Prism token contract, both of which were excluded from the protocol's internal accounting. While no principal was directly stolen, approximately 40% of trading fees were diverted to the attacker. The PRISM token crashed 91% following the disclosure of the exploit. The protocol's attempted relaunch was disputed by the community, raising questions about the security of Uniswap V4 hook implementations and the importance of comprehensive internal accounting.
Fund Flow & Laundering Analysis
Diverted trading fees were collected through phantom positions routed to the Uniswap V4 PoolManager and Prism token contract, exploiting the exclusion of these addresses from internal accounting to obscure the fee diversion.