The post Flow breaks down $3.9M exploit in full post-incident report appeared on BitcoinEthereumNews.com. Flow published a post-incident report on January 6, 2026The post Flow breaks down $3.9M exploit in full post-incident report appeared on BitcoinEthereumNews.com. Flow published a post-incident report on January 6, 2026

Flow breaks down $3.9M exploit in full post-incident report

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

Flow published a post-incident report on January 6, 2026, discussing the root cause of its $3.9 million exploit.

An attacker exploited a Cadence runtime type confusion vulnerability to forge tokens. Flow said no existing user balances were accessed or compromised.

Flow identifies type confusion vulnerability as exploit root cause

A type confusion vulnerability was found to be the primary cause by Flow. The vulnerability made it possible for the attacker to evade runtime safety checks by disguising a protected asset as a regular data structure. The attacker coordinated the execution of about 40 malicious smart contracts.

The attack started at block height 137,363,398 on December 26, 2025, at 23:25 PST. Minutes after the first deployment, the production of counterfeit tokens started. The attacker used standard data structures that are replicable to disguise protected assets that ought to be uncopyable. By taking advantage of Cadence’s move-only semantics, this made token counterfeiting possible.

Cadence and a fully EVM-equivalent environment are the two integrated programming environments run by Flow. In this instance, the exploit targeted Cadence.

Network down within six hours of initial malicious transaction

On December 27, at block height 137,390,190, flow validators started a coordinated network pause at 05:23 PST. All escape routes were cut off, and the halt occurred less than six hours after the initial malicious transaction.

Counterfeit FLOW was being moved to centralized exchange deposit accounts by December 26 at 23:42 PST. Due to their size and irregularity, most of the large FLOW transfers that were sent to exchanges were frozen upon receipt. Beginning at 00:06 PST on December 27, a few assets were bridged off-network using Celer, deBridge, and Stargate.

At 01:30 PST, the first detection signals were raised. At this point, exchange deposits were correlated with anomalous cross-VM FLOW movements. As counterfeit FLOW was liquidated beginning at 1:00 PST, centralized exchanges faced significant sell pressure.

Exchanges return 484 million counterfeit FLOW tokens

According to Flow, the attacker deposited 1.094 billion fake FLOW across several centralized exchanges. Exchange partners Gate.io, MEXC, and OKX returned 484,434,923 FLOW, which was destroyed. 98.7% of the remaining supply of counterfeit goods has been isolated onchain and is in the process of being destroyed. Complete resolution is anticipated in 30 days, and coordination with other exchange partners is still in progress.

After the community evaluated several recovery options, including checkpoint restoration, the recovery strategy was chosen. Flow held ecosystem-wide consultations with infrastructure partners, bridge operators, and exchanges.

Flow’s $3.9 million exploit happened within a similar pattern of security incidents affecting crypto protocols in late December 2025 and early January 2026. BtcTurk suffered a $48 million hot wallet breach on January 1, 2026. Hackers compromised the centralized exchange’s hot wallet infrastructure and siphoned funds across Ethereum, Arbitrum, Polygon and other chains.

Binance experienced a market maker account manipulation incident on January 1 involving BROCCOLI token.

Join a premium crypto trading community free for 30 days – normally $100/mo.

Source: https://www.cryptopolitan.com/flow-breaks-down-exploit-incident-report/

Market Opportunity
FLOW Logo
FLOW Price(FLOW)
$0.03605
$0.03605$0.03605
+0.61%
USD
FLOW (FLOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Big U.S. banks cut prime rate to 7.25% after Fed’s interest rate cut

Big U.S. banks cut prime rate to 7.25% after Fed’s interest rate cut

The post Big U.S. banks cut prime rate to 7.25% after Fed’s interest rate cut appeared on BitcoinEthereumNews.com. Big U.S. banks have lowered their prime lending rate to 7.25%, down from 7.50%, after the Federal Reserve announced a 25 basis point rate cut on Wednesday, the first adjustment since December. The change directly affects consumer and business loans across the country. According to Reuters, JPMorgan Chase, Citigroup, Wells Fargo, and Bank of America all implemented the new rate immediately following the Fed’s announcement. The prime rate is what banks charge their most trusted borrowers, usually large companies. But it’s also the base for what everyone else pays; mortgages, small business loans, credit cards, and personal loans. With this cut, borrowing gets slightly cheaper across the board. Inflation still isn’t under control. It’s above the 2% goal, and the impact of President Donald Trump’s tariffs remains uncertain. Fed reacts to rising unemployment concerns Richard Flynn, managing director at Charles Schwab UK, said jobless claims are at their highest in almost four years, despite the Fed originally planning to keep rates unchanged through the summer. “Although the summer began with expectations of holding rates steady, the labor market has shown more signs of weakness than anticipated,” Flynn said. Hiring has slowed because of uncertainty around Trump’s trade policy. Companies are hesitating to add staff, which is why job growth has nearly stalled. As fewer people are hired, spending starts to shrink. And that’s when things start to unravel. That’s what the Fed is trying to get ahead of with this rate cut. The cut also helps banks directly. Lower rates mean more people may qualify for loans again. During the previous rate hikes, lending standards got tighter. Now, with cheaper credit, smaller businesses could get approved again. If well-funded businesses feel confident, they may hire again. That could eventually help the consumer side of the economy bounce back, but that’s…
Share
BitcoinEthereumNews2025/09/18 16:32
MAGA supporters enraged over Cory Booker's call to action in Michigan

MAGA supporters enraged over Cory Booker's call to action in Michigan

Sen. Cory Booker (D-NJ) delivered a passionate speech at the Michigan Democratic Women's Caucus, telling a crowd, "What we need is foot soldiers for our democracy
Share
Rawstory2026/04/22 08:45
Putin Set for State Visit to China This Week

Putin Set for State Visit to China This Week

Putin Set for State Visit to China Amid Rising Global Geopolitical Tensions Vladimir Putin is reportedly expected to make a state visit to China this week, a cl
Share
Hokanews2026/05/16 22:41

No Chart Skills? Still Profit

No Chart Skills? Still ProfitNo Chart Skills? Still Profit

Copy top traders in 3s with auto trading!