Moderate risk — elegant design at massive scale, but permissionless market creation and curator trust introduce real attack surface
Risk Breakdown
Top Risks
P2P matching engine adds complexity: if matching fails, fallback to pool rates may surprise users
Morpho Blue's permissionless market creation allows risky collateral/oracle combinations to emerge
Two incidents on record: Bundler3 vulnerability put $2.6M at risk (white hat rescued, 2025), and xUSD bad debt (~$700K) from Balancer hack cascade; Resolv USR stablecoin depeg (March 2026) caused cascading liquidations on Morpho Blue — Morpho contracts unaffected but curator-allocated vault depositors faced exposure
Governance controversy: $256M+ in cumulative protocol fees have been directed to the Morpho Association (French nonprofit) rather than the DAO treasury; fee switch exists but governance has not activated it, and the Aave Chan Initiative departed over concerns about concentrated voting power
Frequently Asked Questions
Is Morpho safe to use?
What are the main risks of using Morpho?
What is Morpho's risk score breakdown?
How does Morpho compare to other Lending protocols?
Has Morpho ever been hacked or exploited?
Get risk alerts before it's too late
Weekly grade changes, downgrade alerts, and new protocol risk findings. Free.