Balancer's Annual Security Incident Review: Total Losses Exceed $21 Million Due to Flash Loans, Front-End Hijacking, and Cross-Protocol Vulnerabilities
BlockBeats News, November 3rd, the DeFi protocol Balancer is currently under attack, with losses exceeding $1.166 billion across multiple chains, and the attack on Balancer is still ongoing. According to on-chain AI analysis tool CoinBob (@CoinbobAI_bot) summary, Balancer's historical security events are as follows:
· June 2020 Flash Loan Attack: An attacker exploited the compatibility issue between deflationary tokens (STA/STONK) and the Balancer smart contract, draining the liquidity pool by repeatedly calling swapExactAmountIn, ultimately profiting $523,600.
· August 2023 V2 Pool Vulnerability: The Balancer V2 pool was subjected to multiple flash loan attacks due to a code vulnerability, resulting in a total loss of $2.1 million. The team urgently paused the affected pool and advised users to withdraw, but funds that were not withdrawn in time were still exploited.
· September 2023 Frontend Hijacking Attack: A hacker seized control of the Balancer frontend through BGP/DNS hijacking, tricking users into authorizing a malicious contract, resulting in a loss of $238,000. On-chain sleuth ZachXBT traced the fund flow to address 0x645710Af050E26bB96e295bdfB75B4a878088d7E.
· 2023 Euler Incident Fallout: Due to a vulnerability in Euler Finance, the Balancer bbeUSD pool suffered a $11.9 million loss, representing 65% of the pool's TVL. The team took protective measures to restrict liquidity withdrawals.
· 2024 Velocore Attack Affiliation: The Velocore exploit involving a Balancer-style CPMM pool resulted in a $6.8 million loss. Balancer's technical architecture was indirectly implicated due to cross-protocol integration.
You may also like

China's AI Compute Power Counterstrike

Global Assets Plunge: Hormuz, Chips, and a South Korean Holiday

Bloomberg has reported twice, Hyperliquid once again in Wall Street's radar

Trump Backs Crypto Bill, SEC Halts Leveraged ETF, What Is the English-Speaking Crypto Community Talking About?

OpenClaw Floods Into Polymarket, Some Making Tens of Thousands Per Month

Understanding Trump's "Warfare Playbook": Ten Signals Investors Must Know

Iranian Missile Heading Toward UAE, Claude Also Within Range

Successive Core Team "Heroes" Depart, Has Aave's DAO Dream Crumbled?

Is This the Year of the Robot? A Deep Dive into Robotics Projects

When AI Takes Over Money: Bitcoin Becomes the "First Choice," Fiat Is Left Out
AI Trading in Live Markets: 4 Lessons From a WEEX Hackathon Top 10 Finalist
AI trading meets real markets. Explore 4 lessons from a WEEX Hackathon Top 10 finalist on surviving volatility, trusting AI models, and building smarter crypto trading systems.

MegaETH Co-founder: 48 Hours After Leaving Dubai, I Reassessed the Entire Crypto Space

Web3 Winter Mass Exodus: Resignations, Closures, Transformations, and Acquisitions

Key Market Information Discrepancy on March 4th — A Must-Read! | Alpha Morning Report

During the weekend market closure, Hyperliquid more accurately predicted the Gold reopening price than Binance

OpenClaw thrusts crypto project Venice.ai into the spotlight as its token VVV surges over 500% in a single month

Different Rulings in Similar Cases: Why can Uniswap go free while Tornado Cash cannot?
