律动BlockBeats|11月 05, 2025 16:22
[Balancer Releases Incident Report on Exploit: Caused by Rounding Error in Batch Swap Logic]
BlockBeats News, November 6 – According to official sources, Balancer has released a preliminary report on the exploit incident, stating that the composable stable pools of Balancer V2 were attacked on November 4 across multiple chains (including Ethereum, Base, Avalanche, Polygon, Arbitrum, etc.). The vulnerability stemmed from a rounding error in the batchSwap logic for EXACT_OUT transactions, which attackers exploited to manipulate pool balances and extract assets. This incident only affected the composable stable pools of Balancer V2, while Balancer V3 and other pool types were not impacted.
The Balancer team, in collaboration with security partners and white-hat teams, acted swiftly to contain the attack and recover some of the assets through measures such as Hypernative's automated pausing, asset freezing, and white-hat interventions under the SEAL framework. Among the recovered assets, StakeWise successfully retrieved approximately 73.5% of the stolen osETH, while teams like BitFinding and the Base MEV bot also assisted in recovering some funds.
Currently, Balancer is working with security partners such as SEAL and zeroShadow to conduct cross-chain tracking and asset recovery. The final verified losses and recovery data will be disclosed in a comprehensive technical post-mortem report. The official team reminds users to only obtain confirmed information through Balancer's official channels, and operations on V3 and non-stable pools remain secure.
Share To
HotFlash
APP
X
Telegram
CopyLink