Balancer's Annual Security Incident Review: Total Losses Exceed $21 Million Due to Flash Loans, Front-End Hijacking, and Cross-Protocol Vulnerabilities

By: theblockbeats.news|2025/11/03 17:45:58
0
Share
copy

BlockBeats News, November 3rd, the DeFi protocol Balancer is currently under attack, with losses exceeding $1.166 billion across multiple chains, and the attack on Balancer is still ongoing. According to on-chain AI analysis tool CoinBob (@CoinbobAI_bot) summary, Balancer's historical security events are as follows:

· June 2020 Flash Loan Attack: An attacker exploited the compatibility issue between deflationary tokens (STA/STONK) and the Balancer smart contract, draining the liquidity pool by repeatedly calling swapExactAmountIn, ultimately profiting $523,600.

· August 2023 V2 Pool Vulnerability: The Balancer V2 pool was subjected to multiple flash loan attacks due to a code vulnerability, resulting in a total loss of $2.1 million. The team urgently paused the affected pool and advised users to withdraw, but funds that were not withdrawn in time were still exploited.

· September 2023 Frontend Hijacking Attack: A hacker seized control of the Balancer frontend through BGP/DNS hijacking, tricking users into authorizing a malicious contract, resulting in a loss of $238,000. On-chain sleuth ZachXBT traced the fund flow to address 0x645710Af050E26bB96e295bdfB75B4a878088d7E.

· 2023 Euler Incident Fallout: Due to a vulnerability in Euler Finance, the Balancer bbeUSD pool suffered a $11.9 million loss, representing 65% of the pool's TVL. The team took protective measures to restrict liquidity withdrawals.

· 2024 Velocore Attack Affiliation: The Velocore exploit involving a Balancer-style CPMM pool resulted in a $6.8 million loss. Balancer's technical architecture was indirectly implicated due to cross-protocol integration.

You may also like

Morning News | The draft amendment to the People's Bank of China Law aims to clarify the legal status of digital renminbi; South Korea will transfer about 40 unregistered virtual asset service providers to law enforcement agencies

Overview of Important Market Events on June 24

The cryptocurrency industry has entered the "Show Me" era: merely relying on vision is no longer enough

The awareness level of the audience in the cryptocurrency industry—including media, institutions, and retail investors—is steadily increasing, and this trend has become a foregone conclusion.

Interpreting the Ethereum Foundation's new structure: Reaffirming self-sovereignty amid institutional trends

The Ethereum Foundation has announced a new five-layer working framework, clarifying the focus of future development and reaffirming its commitment to decentralized core values amidst the wave of institutionalization.

Former SpaceX engineer reconstructs the financial execution system using first principles

Plan Execution Lab completes angel round financing for Singapore family office, with a valuation of 50 million USD.

Tidal Investment: We still have a positive outlook on the AI industry chain, but the reasons have changed

The intense financing by tech giants has triggered a panic of "AI peak," but the soaring capital expenditures of the five major cloud vendors and the bottlenecks in physical infrastructure indicate that the AI investment cycle is far from over; the second half of this grand performance has just begu...

Standard Chartered Bank sings a 50x rhapsody again, aiming for AAVE to reach 3500 USD

The throne of DeFi lending still exists, but the foundation beneath the throne needs to undergo a reconstruction or reinforcement.

Popular coins

Latest Crypto News

Read more
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:[email protected]
VIP Program:[email protected]