Key Takeaways: Decentralized finance (DeFi) protocol Balancer has published a preliminary report detailing the cause of the exploit on its multi-chain token pools that resulted in hackers siphoning $116 million in liquid staked Ether (ETH) tokens. The automated market maker (AMM) and liquidity platform suffered a massive outflow from its core vault on November 3, ... Read more The post Balancer’s Post-Mortem Report Identifies Rounding Error as Root Cause of $116 Million Exploit appeared first on BiteMyCoin.Key Takeaways: Decentralized finance (DeFi) protocol Balancer has published a preliminary report detailing the cause of the exploit on its multi-chain token pools that resulted in hackers siphoning $116 million in liquid staked Ether (ETH) tokens. The automated market maker (AMM) and liquidity platform suffered a massive outflow from its core vault on November 3, ... Read more The post Balancer’s Post-Mortem Report Identifies Rounding Error as Root Cause of $116 Million Exploit appeared first on BiteMyCoin.

Balancer’s Post-Mortem Report Identifies Rounding Error as Root Cause of $116 Million Exploit

2025/11/07 00:52

Key Takeaways:

  • Balancer has released a preliminary post-mortem report on the $116 million exploit that occurred on its platform earlier this week. The team attributed the hack to a value rounding flaw in its swap logic, which the attacker used to manipulate pool balances and drain funds.
  • The exploit has also affected Balancer’s ecosystem partners and forks, including Berachain, Gnosis, StakeWise, Monetium, and Sonic, who have since taken emergency measures to protect funds. 
  • Approximately $23.05 million of the stolen assets have been recovered or frozen on-chain. Balancer has paused all activity on its v2 Stable Pools and v5 Composable Stable Pools until the bug is fixed.

Decentralized finance (DeFi) protocol Balancer has published a preliminary report detailing the cause of the exploit on its multi-chain token pools that resulted in hackers siphoning $116 million in liquid staked Ether (ETH) tokens.

The automated market maker (AMM) and liquidity platform suffered a massive outflow from its core vault on November 3, which targeted the Balancer v2 Stable Pools and Composable Stable (CSP) v5 Pools across Ethereum, Base, Avalanche, Arbitrum, Optimism, Gnosis, Polygon, Berachain, and Sonic blockchains. 

Initial estimates showed losses of $70 million, which quickly rose to over $128 million within a few hours.

Rounding Error in the BatchSwap Feature of Stable Pools: the Root Cause of $116 Million Balancer v2 Exploit

In the preliminary report, Balancer attributed the hack to a rounding error in the upscale function for “EXACT_OUT” swaps within the v2 vault’s BatchSwaps feature – a function that allowed users to combine multiple swap operations into a single transaction to save on gas fees.

The rounding function intends to round down when token prices are an input, but a bug in the system resulted in non-integer scaling factors to round down during specific calculations, which created small discrepancies. The hacker exploited the bug in conjunction with the BatchSwap feature, including flashloans – short-term loans borrowed and repaid within the same transaction – to manipulate balances and drain funds from the Stable Pools.

This resulted in liquidity falling below Balancer’s minimum threshold.

The report stated that in many instances, the stolen funds were first redirected into the Balancer vault’s internal balances before being withdrawn in subsequent transactions. The bug primarily affected CSP v5 pools with expired pause windows, while automated emergency controls on the v6 mode transitioned it into recovery mode during the hack.

The team said the attack spanned across several Balancer-supported blockchains and forks, including BEX on Berachain, Beets on Sonic, and Gnosis-based platforms. However, the partner ecosystems implemented emergency protocols to contain further fallout.

The hackers involved were highly skilled and had been preparing for months before executing their attack. They used a series of 0.1 ETH deposits on the token mixer platform Tornado Cash to fund the attack and avoid detection.

Balancer’s Security and Strategic Partners and White Hats Have Recovered $23.05 Million in Stolen Assets

Balancer worked with its cybersecurity partner Hypernative and other crypto protocols, including SEAL 911, BitFinding, and StakeWise, to recover or freeze a portion of the stolen funds. The StakeWise DAO managed to recover 5,041 osETH and 13,495 osGNO tokens, valued at approximately $19 million and up to $2 million, respectively.

Meanwhile, validators on Berachain halted the network on November 4 to perform an emergency hard fork to address BEX’s exposure to Balancer v2. Sonic Labs froze addresses linked to the suspect, restricting the movement of funds tied to its Balancer fork. Gnosis temporarily restricted token bridging activity to prevent any cross-chain propagation. Monetium froze 1.3 million EURe tokens in the affected vault.

BitFinding and Base MEV bots managed to recover about $750,000 worth of funds, returning them to the Balancer DAO.

Balancer has paused all affected pools and disabled the creation of new pools on CSP v6 until the security issue is fixed. Furthermore, the team has enabled liquidity pool exits from paused pools to allow safe withdrawal of remaining funds. The protocol implemented a Safe Harbor legal framework (BIP-726) last year, which allowed white hat teams to intervene immediately without any legal repercussions. The report noted that this structure “materially improved” its response speed and coordination.

Balancer has offered a 20% white hat bounty to the perpetrator of the attack and ethical hackers for the safe return of the stolen funds, but so far, no one has come forward to claim the reward. The team has stated that a final verified accounting of the recovered and frozen funds will be published once partners complete on-chain reconciliation.

The post Balancer’s Post-Mortem Report Identifies Rounding Error as Root Cause of $116 Million Exploit appeared first on BiteMyCoin.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

BTC Liquidity Recovers as Trump Talks Bitcoin — Rocket Boost Incoming? ⋆ ZyCrypto

BTC Liquidity Recovers as Trump Talks Bitcoin — Rocket Boost Incoming? ⋆ ZyCrypto

The post BTC Liquidity Recovers as Trump Talks Bitcoin — Rocket Boost Incoming? ⋆ ZyCrypto appeared on BitcoinEthereumNews.com. Advertisement &nbsp &nbsp Bitcoin’s liquidity is finally showing signs of life after weeks of market stress and thin trading conditions. Analysts highlighted on X that BTC is starting to recover (see leading signal, dotted line). If this recovery continues, typically the price confirms approximately 2 weeks later. Adding to the optimism, U.S. President Donald Trump recently spoke on the opening day of the America Business Forum in Miami, Florida. President Donald J. delivered one of his most direct endorsements of cryptocurrency to date. Addressing an audience of business leaders and policymakers. “The War on Crypto Is Over,” Trump Says Trump portrayed his administration’s stance as a sharp reversal from what he described as Washington’s former hostility toward digital assets.“I’ve signed historic executive orders to end the federal government’s war on crypto,”  Trump said ‘’It’s not under siege anymore.” His remarks drew strong applause from attendees in Miami, who viewed the message as a signal of regulatory relief and renewed confidence for the sector. Industry insiders said Trump’s tone marked a notable shift toward policy clarity. One analyst commented that “Trump’s rhetoric frames crypto as an opportunity rather than a threat—something the industry has long sought from U.S. leadership.” Advertisement &nbsp Trump emphasized the size and legitimacy of the crypto industry, pointing out that many leading entrepreneurs now have ties to blockchain and digital finance.  Crypto and the Dollar: A Strategic Balance Trump also drew a connection between digital assets and the U.S. dollar, arguing that crypto could actually strengthen, not weaken, America’s financial position. “It takes a lot of pressure off the dollar,” he said. “It does a lot of good things, but we’re into it.” This comment echoed the administration’s broader message that embracing crypto innovation can coexist with protecting dollar dominance.  His team has consistently framed…
Share
BitcoinEthereumNews2025/11/09 04:04
EUR/CHF slides as Euro struggles post-inflation data

EUR/CHF slides as Euro struggles post-inflation data

The post EUR/CHF slides as Euro struggles post-inflation data appeared on BitcoinEthereumNews.com. EUR/CHF weakens for a second straight session as the euro struggles to recover post-Eurozone inflation data. Eurozone core inflation steady at 2.3%, headline CPI eases to 2.0% in August. SNB maintains a flexible policy outlook ahead of its September 25 decision, with no immediate need for easing. The Euro (EUR) trades under pressure against the Swiss Franc (CHF) on Wednesday, with EUR/CHF extending losses for the second straight session as the common currency struggles to gain traction following Eurozone inflation data. At the time of writing, the cross is trading around 0.9320 during the American session. The latest inflation data from Eurostat showed that Eurozone price growth remained broadly stable in August, reinforcing the European Central Bank’s (ECB) cautious stance on monetary policy. The Core Harmonized Index of Consumer Prices (HICP), which excludes volatile items such as food and energy, rose 2.3% YoY, in line with both forecasts and the previous month’s reading. On a monthly basis, core inflation increased by 0.3%, unchanged from July, highlighting persistent underlying price pressures in the bloc. Meanwhile, headline inflation eased to 2.0% YoY in August, down from 2.1% in July and slightly below expectations. On a monthly basis, prices rose just 0.1%, missing forecasts for a 0.2% increase and decelerating from July’s 0.2% rise. The inflation release follows last week’s ECB policy decision, where the central bank kept all three key interest rates unchanged and signaled that policy is likely at its terminal level. While officials acknowledged progress in bringing inflation down, they reiterated a cautious, data-dependent approach going forward, emphasizing the need to maintain restrictive conditions for an extended period to ensure price stability. On the Swiss side, disinflation appears to be deepening. The Producer and Import Price Index dropped 0.6% in August, marking a sharp 1.8% annual decline. Broader inflation remains…
Share
BitcoinEthereumNews2025/09/18 03:08