The post Balancer identifies root cause of $116m hack appeared on BitcoinEthereumNews.com. Balancer has uncovered the technical root cause behind the recent hack that shook its platform. Summary Balancer identified a rounding bug in its “upscale” function as the cause of the exploit that drained assets across multiple networks. Over $116 million was stolen, with losses spanning Ethereum, Arbitrum, Base, and Polygon, though StakeWise recovered $19 million of osETH for affected users. Recovery efforts are ongoing, as the protocol and partners freeze vulnerable pools, trace stolen funds, and prepare a final report on asset reconciliation. DeFi protocol Balancer has identified an internal bug in the rounding logic of the “upscale” function as the root cause of the November 3 exploit that drained over $116 million from its platform. According to a recently published preliminary report, the function, which is used during token swaps, was exploited by attackers across multiple networks, leading to swift losses of WETH, osETH, and wstETH that were pulled in several transactions.​​ Attackers took advantage of how the code handled non-integer scaling factors to manipulate pool balances and drain value. Balancer revealed the breach allowed hackers to move funds quietly within vaults before final withdrawal.  In total, $116.6 million was stolen by the time the dust settled, with losses spanning several assets and networks, including Ethereum, Arbitrum, Base, and Polygon. Among the stolen tokens, the largest amounts included 6,587 WETH, 6,851 osETH, and 4,260 wstETH, as earlier reported and confirmed in the incident report.​ StakeWise, one of the affected protocols, managed to recover nearly $19 million worth of osETH, corresponding to about 73.5% of the total drained for that asset. These funds will be returned to impacted users according to their balances before the hack, though the attacker has also converted some assets into ETH, making them irretrievable.​ Balancer takes recovery actions  Balancer and its security partners are still… The post Balancer identifies root cause of $116m hack appeared on BitcoinEthereumNews.com. Balancer has uncovered the technical root cause behind the recent hack that shook its platform. Summary Balancer identified a rounding bug in its “upscale” function as the cause of the exploit that drained assets across multiple networks. Over $116 million was stolen, with losses spanning Ethereum, Arbitrum, Base, and Polygon, though StakeWise recovered $19 million of osETH for affected users. Recovery efforts are ongoing, as the protocol and partners freeze vulnerable pools, trace stolen funds, and prepare a final report on asset reconciliation. DeFi protocol Balancer has identified an internal bug in the rounding logic of the “upscale” function as the root cause of the November 3 exploit that drained over $116 million from its platform. According to a recently published preliminary report, the function, which is used during token swaps, was exploited by attackers across multiple networks, leading to swift losses of WETH, osETH, and wstETH that were pulled in several transactions.​​ Attackers took advantage of how the code handled non-integer scaling factors to manipulate pool balances and drain value. Balancer revealed the breach allowed hackers to move funds quietly within vaults before final withdrawal.  In total, $116.6 million was stolen by the time the dust settled, with losses spanning several assets and networks, including Ethereum, Arbitrum, Base, and Polygon. Among the stolen tokens, the largest amounts included 6,587 WETH, 6,851 osETH, and 4,260 wstETH, as earlier reported and confirmed in the incident report.​ StakeWise, one of the affected protocols, managed to recover nearly $19 million worth of osETH, corresponding to about 73.5% of the total drained for that asset. These funds will be returned to impacted users according to their balances before the hack, though the attacker has also converted some assets into ETH, making them irretrievable.​ Balancer takes recovery actions  Balancer and its security partners are still…

Balancer identifies root cause of $116m hack

For feedback or concerns regarding this content, please contact us at [email protected]

Balancer has uncovered the technical root cause behind the recent hack that shook its platform.

Summary

  • Balancer identified a rounding bug in its “upscale” function as the cause of the exploit that drained assets across multiple networks.
  • Over $116 million was stolen, with losses spanning Ethereum, Arbitrum, Base, and Polygon, though StakeWise recovered $19 million of osETH for affected users.
  • Recovery efforts are ongoing, as the protocol and partners freeze vulnerable pools, trace stolen funds, and prepare a final report on asset reconciliation.

DeFi protocol Balancer has identified an internal bug in the rounding logic of the “upscale” function as the root cause of the November 3 exploit that drained over $116 million from its platform. According to a recently published preliminary report, the function, which is used during token swaps, was exploited by attackers across multiple networks, leading to swift losses of WETH, osETH, and wstETH that were pulled in several transactions.​​

Attackers took advantage of how the code handled non-integer scaling factors to manipulate pool balances and drain value. Balancer revealed the breach allowed hackers to move funds quietly within vaults before final withdrawal. 

In total, $116.6 million was stolen by the time the dust settled, with losses spanning several assets and networks, including Ethereum, Arbitrum, Base, and Polygon. Among the stolen tokens, the largest amounts included 6,587 WETH, 6,851 osETH, and 4,260 wstETH, as earlier reported and confirmed in the incident report.​

StakeWise, one of the affected protocols, managed to recover nearly $19 million worth of osETH, corresponding to about 73.5% of the total drained for that asset. These funds will be returned to impacted users according to their balances before the hack, though the attacker has also converted some assets into ETH, making them irretrievable.​

Balancer takes recovery actions 

Balancer and its security partners are still auditing the incident and reconciling the lost funds, with mitigation and recovery efforts ongoing. Following the exploit, security teams paused all affected pools, disabled the creation of new pools, and halted rewards for any pools identified as vulnerable, according to the project’s official incident report.

Several teams in the broader DeFi space also took steps to limit losses and contain attacker movements. Protocols like Sonic Labs executed an emergency freeze on accounts linked to the hack, while Berachain validators briefly halted their network to prevent funds from moving. Other partners, like Monerium and Gnosis, introduced controls to freeze or block assets as part of a coordinated stoppage.​

Whitehat teams and supporting bots intercepted transactions to claw back assets, with some managing to return hundreds of thousands of dollars. The efforts came from both automated systems and manual tracing, building a layered approach to asset recovery.​

Balancer noted that once all affected pools and transactions are verified, a final report will be published with confirmed totals and the status of recoveries. Until then, users are advised to avoid impacted contracts and follow updates via official channels, as further reviews and reconciliations are ongoing.​

Source: https://crypto.news/balancer-identifies-root-cause-of-116m-hack/

Market Opportunity
The Root Network Logo
The Root Network Price(ROOT)
$0.00008
$0.00008$0.00008
0.00%
USD
The Root Network (ROOT) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.
Tags:

You May Also Like

PENDLE at $1: Can Bulls Clear the Next Key Barrier?

PENDLE at $1: Can Bulls Clear the Next Key Barrier?

PENDLE’s four-hour chart reflects that the price is forming an ascending triangle, a pattern seen when buyers gradually push the price higher while resistance stays
Share
Thenewscrypto2026/03/16 20:07
Pepe Coin Price Prediction: Ethereum Treasury Companies Suffer Unrealized Losses as Pepeto’s Three Infrastructure Products Cross $7.99 Million Presale

Pepe Coin Price Prediction: Ethereum Treasury Companies Suffer Unrealized Losses as Pepeto’s Three Infrastructure Products Cross $7.99 Million Presale

Ether treasury companies recorded millions in unrealized losses and are trading below net asset values as ETH consolidates near $2,277. Traders believe that cautious
Share
Captainaltcoin2026/03/17 02:45
CME Group to launch Solana and XRP futures options in October

CME Group to launch Solana and XRP futures options in October

The post CME Group to launch Solana and XRP futures options in October appeared on BitcoinEthereumNews.com. CME Group is preparing to launch options on SOL and XRP futures next month, giving traders new ways to manage exposure to the two assets.  The contracts are set to go live on October 13, pending regulatory approval, and will come in both standard and micro sizes with expiries offered daily, monthly and quarterly. The new listings mark a major step for CME, which first brought bitcoin futures to market in 2017 and added ether contracts in 2021. Solana and XRP futures have quickly gained traction since their debut earlier this year. CME says more than 540,000 Solana contracts (worth about $22.3 billion), and 370,000 XRP contracts (worth $16.2 billion), have already been traded. Both products hit record trading activity and open interest in August. Market makers including Cumberland and FalconX plan to support the new contracts, arguing that institutional investors want hedging tools beyond bitcoin and ether. CME’s move also highlights the growing demand for regulated ways to access a broader set of digital assets. The launch, which still needs the green light from regulators, follows the end of XRP’s years-long legal fight with the US Securities and Exchange Commission. A federal court ruling in 2023 found that institutional sales of XRP violated securities laws, but programmatic exchange sales did not. The case officially closed in August 2025 after Ripple agreed to pay a $125 million fine, removing one of the biggest uncertainties hanging over the token. This is a developing story. This article was generated with the assistance of AI and reviewed by editor Jeffrey Albus before publication. Get the news in your inbox. Explore Blockworks newsletters: Source: https://blockworks.co/news/cme-group-solana-xrp-futures
Share
BitcoinEthereumNews2025/09/17 23:55