Balancer's Annual Security Incident Review: Total Losses Exceed $21 Million Due to Flash Loans, Front-End Hijacking, and Cross-Protocol Vulnerabilities
BlockBeats News, November 3rd, the DeFi protocol Balancer is currently under attack, with losses exceeding $1.166 billion across multiple chains, and the attack on Balancer is still ongoing. According to on-chain AI analysis tool CoinBob (@CoinbobAI_bot) summary, Balancer's historical security events are as follows:
· June 2020 Flash Loan Attack: An attacker exploited the compatibility issue between deflationary tokens (STA/STONK) and the Balancer smart contract, draining the liquidity pool by repeatedly calling swapExactAmountIn, ultimately profiting $523,600.
· August 2023 V2 Pool Vulnerability: The Balancer V2 pool was subjected to multiple flash loan attacks due to a code vulnerability, resulting in a total loss of $2.1 million. The team urgently paused the affected pool and advised users to withdraw, but funds that were not withdrawn in time were still exploited.
· September 2023 Frontend Hijacking Attack: A hacker seized control of the Balancer frontend through BGP/DNS hijacking, tricking users into authorizing a malicious contract, resulting in a loss of $238,000. On-chain sleuth ZachXBT traced the fund flow to address 0x645710Af050E26bB96e295bdfB75B4a878088d7E.
· 2023 Euler Incident Fallout: Due to a vulnerability in Euler Finance, the Balancer bbeUSD pool suffered a $11.9 million loss, representing 65% of the pool's TVL. The team took protective measures to restrict liquidity withdrawals.
· 2024 Velocore Attack Affiliation: The Velocore exploit involving a Balancer-style CPMM pool resulted in a $6.8 million loss. Balancer's technical architecture was indirectly implicated due to cross-protocol integration.
You may also like

The craziest Ethereum L2: L2 built by AI agents spontaneously organizing

Pantera Capital: How has Crypto as a Service affected us?

Pantera Capital: What changes have we made when crypto is treated as a service?

Wall Street Shorts ETH: Vitalik is aware and has front-run, while Tom Lee remains oblivious

Social Capital CEO: How Equity Tokenization is Reshaping Capital Markets from US Stocks to SpaceX?

CoinGecko Report: Surge of 346% vs Dip of 20.8%, The Wild Rise of DEX

a16z: The Real Opportunity of Stablecoins Lies Not in Disruption but in Filling Gaps

Mining Exodus: Someone Holds $12.8 Billion AI Order

March 6 Market Key Intelligence, How Much Did You Miss?

a16z: The True Opportunity of Stablecoins is in Complementing, Not Disrupting
Predict LALIGA Matches, Shoot Daily & Win BTC, USDT and WXT on WEEX
The WEEX × LALIGA campaign brought together football excitement and crypto participation through a dynamic interactive experience. During the event, users predicted matches, completed trading tasks, and took daily shots to compete for rewards including BTC, USDT, WXT, and exclusive prizes.

Ray Dalio Dialogue: Why I'm Betting on Gold and Not Bitcoin

Who Took the Money in the AI Era? A Must-See Investment Checklist for HALO Asset Trading

Wall Street Bears Target Ethereum: Vitalik In the Know Takes Flight, Tom Lee Remains Bullish

Pump.fun Hacker Steals $2 Million, Receives 6-Year Prison Sentence, Opts for 'Self-Detonation'

6% Annual Percentage Yield as Musk Declares War on Traditional Banks

36 years, 4 wars, 1 script: How does capital price the world in conflict?
