律动BlockBeats|Aug 14, 2026 02:05
**[Harmony Releases Investigation Results on ONE Unauthorized Minting Incident: Confirms Initial Minting of 4 Billion Tokens, Vulnerability Fixed and Rollback Prepared]**
BlockBeats News, August 14 — Harmony Protocol released an update on the incident, stating that an unauthorized minting of ONE tokens occurred on August 12. The investigation revealed that attackers exploited a vulnerability in cross-shard receipt validation, allowing processed cross-shard receipts to be executed repeatedly, resulting in the minting of ONE tokens out of thin air in empty blocks. The team is currently verifying two sets of affected data: early analysis indicates an initial minting of 4 billion ONE tokens, while the latest on-chain reconstruction shows approximately 3.01 trillion ONE tokens were issued cumulatively to four attacker wallets through six forged cross-shard transactions. Harmony confirmed the initial minting of 4 billion ONE tokens, generated through two empty block transactions accounting for 1 billion and 3 billion ONE tokens respectively. Subsequently, 2.8 billion ONE tokens were transferred to other attacker addresses.
The team has fixed the vulnerabilities in cross-shard receipt validation and pre-staking committee quorum verification, and deployed Mainnet v2026.1.1 on August 12 at 06:30 UTC. Bridge services have been suspended, and Harmony is currently coordinating with validators, exchanges, and LayerZero to freeze related funds and prepare to roll back the network to block 92,730,034, prior to the attack. Shard 0 has been paused at block 92,753,555, and the official RPC may return a 502 error as a result. [Original Link]
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink