The post Balancer exploit drains $129M in DeFi disaster appeared on BitcoinEthereumNews.com. One of the decentralized finance (DeFi) sector’s longest established exchanges, Balancer, has suffered an ongoing smart contract hack, with losses totalling $129 million so far. The exploit, which hit the exchange’s v2 liquidity pools on multiple blockchains, also reportedly affected projects which had “forked” Balancer’s code. Just over two hours after the attack began, Balancer acknowledged the incident, stating it was “aware of a potential exploit impacting Balancer v2 pools.” Read more: EXCLUSIVE: ‘Code is Law’ documentary explores the void between DeFi and law First launched in the run-up to 2020’s DeFi summer, Balancer’s v2 later expanded on the existing “constant product” model of automated market makers (such as Uniswap and Bancor) by introducing multi-asset and weighted liquidity pools. Other large DeFi projects such as Aave and Lido have reassured users their tokens’ pools aren’t affected. Lido and Flashbots’ Hasu remarked that Balancer’s v2 “is one of the most looked at and forked smart contracts since. It’s very scary.” According to a preliminary analysis from Blockchain security auditor Decurity, the “manageUserBalance” function contains a “faulty access check” which allows the hacker to withdraw funds. It notes that, additionally, “the Vault’s internal balance (_internalTokenBalance) was manipulated before the withdrawal.” 1inch’s Anton Bukov suspects exploitation of a rounding error. Balancer previously fell victim to a $2 million hack in August of 2023 due to a “rate manipulation” vulnerability in its Boosted Pools. The following month, it warned users of a front-end compromise. In March of 2023, $11 million of Balancer pool funds were drained during the hack on lending protocol Euler. Read more: $25 million Ethereum MEV exploit puts ‘Code Is Law’ on trial Cross-chain catastrophe  The exploit affected Balancer pools on multiple blockchains, with losses reported on Ethereum, Berachain, Arbitrum, Base, Sonic, Optimism and Polygon. Berachain announced that “validators have coordinated… The post Balancer exploit drains $129M in DeFi disaster appeared on BitcoinEthereumNews.com. One of the decentralized finance (DeFi) sector’s longest established exchanges, Balancer, has suffered an ongoing smart contract hack, with losses totalling $129 million so far. The exploit, which hit the exchange’s v2 liquidity pools on multiple blockchains, also reportedly affected projects which had “forked” Balancer’s code. Just over two hours after the attack began, Balancer acknowledged the incident, stating it was “aware of a potential exploit impacting Balancer v2 pools.” Read more: EXCLUSIVE: ‘Code is Law’ documentary explores the void between DeFi and law First launched in the run-up to 2020’s DeFi summer, Balancer’s v2 later expanded on the existing “constant product” model of automated market makers (such as Uniswap and Bancor) by introducing multi-asset and weighted liquidity pools. Other large DeFi projects such as Aave and Lido have reassured users their tokens’ pools aren’t affected. Lido and Flashbots’ Hasu remarked that Balancer’s v2 “is one of the most looked at and forked smart contracts since. It’s very scary.” According to a preliminary analysis from Blockchain security auditor Decurity, the “manageUserBalance” function contains a “faulty access check” which allows the hacker to withdraw funds. It notes that, additionally, “the Vault’s internal balance (_internalTokenBalance) was manipulated before the withdrawal.” 1inch’s Anton Bukov suspects exploitation of a rounding error. Balancer previously fell victim to a $2 million hack in August of 2023 due to a “rate manipulation” vulnerability in its Boosted Pools. The following month, it warned users of a front-end compromise. In March of 2023, $11 million of Balancer pool funds were drained during the hack on lending protocol Euler. Read more: $25 million Ethereum MEV exploit puts ‘Code Is Law’ on trial Cross-chain catastrophe  The exploit affected Balancer pools on multiple blockchains, with losses reported on Ethereum, Berachain, Arbitrum, Base, Sonic, Optimism and Polygon. Berachain announced that “validators have coordinated…

Balancer exploit drains $129M in DeFi disaster

2025/11/03 20:57
3분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다

One of the decentralized finance (DeFi) sector’s longest established exchanges, Balancer, has suffered an ongoing smart contract hack, with losses totalling $129 million so far.

The exploit, which hit the exchange’s v2 liquidity pools on multiple blockchains, also reportedly affected projects which had “forked” Balancer’s code.

Just over two hours after the attack began, Balancer acknowledged the incident, stating it was “aware of a potential exploit impacting Balancer v2 pools.”

Read more: EXCLUSIVE: ‘Code is Law’ documentary explores the void between DeFi and law

First launched in the run-up to 2020’s DeFi summer, Balancer’s v2 later expanded on the existing “constant product” model of automated market makers (such as Uniswap and Bancor) by introducing multi-asset and weighted liquidity pools.

Other large DeFi projects such as Aave and Lido have reassured users their tokens’ pools aren’t affected.

Lido and Flashbots’ Hasu remarked that Balancer’s v2 “is one of the most looked at and forked smart contracts since. It’s very scary.”

According to a preliminary analysis from Blockchain security auditor Decurity, the “manageUserBalance” function contains a “faulty access check” which allows the hacker to withdraw funds.

It notes that, additionally, “the Vault’s internal balance (_internalTokenBalance) was manipulated before the withdrawal.”

1inch’s Anton Bukov suspects exploitation of a rounding error.

Balancer previously fell victim to a $2 million hack in August of 2023 due to a “rate manipulation” vulnerability in its Boosted Pools.

The following month, it warned users of a front-end compromise. In March of 2023, $11 million of Balancer pool funds were drained during the hack on lending protocol Euler.

Read more: $25 million Ethereum MEV exploit puts ‘Code Is Law’ on trial

Cross-chain catastrophe 

The exploit affected Balancer pools on multiple blockchains, with losses reported on Ethereum, Berachain, Arbitrum, Base, Sonic, Optimism and Polygon.

Berachain announced that “validators have coordinated to purposefully halt the Berachain network as the core team performs an emergency hard fork.”

DeFi data dashboard DeFiLlama lists 27 projects as forks of Balancer’s v2 code, with a combined total value locked (TVL) of $78 million. Beets, a Balancer fork on Sonic, was reportedly hacked for $3.4 million.

As the losses mounted, a Polymarket bet on whether the crypto community would see another hack with over $100 million in losses before the end of the year jumped from approximately 25% likelihood to over 99%. 

The incident is ongoing and this article will be updated to reflect any major developments.

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

The liveblog has ended.

No liveblog updates yet.

Load more

Source: https://protos.com/live-updates-balancer-exploit-drains-129m-in-defi-disaster/

시장 기회
DeFi 로고
DeFi 가격(DEFI)
$0.0003
$0.0003$0.0003
-5.66%
USD
DeFi (DEFI) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

$30,000 in PRL + 15,000 USDT

$30,000 in PRL + 15,000 USDT$30,000 in PRL + 15,000 USDT

Deposit & trade PRL to boost your rewards!