Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
DeFi Protocol Balancer Starts Recovering Funds Stolen in 8 Million Heist

DeFi Protocol Balancer Starts Recovering Funds Stolen in $128 Million Heist

Posted on November 6, 2025November 6, 2025 By CWS

Hackers on Monday drained greater than $120 million in cryptocurrency from the decentralized finance (DeFi) protocol Balancer by exploiting a rounding perform and performing batch swaps.

The assault occurred at 7:48 AM UTC (2:48 AM ET) and impacted Balancer V2 composable steady swimming pools, a few of which have been stay on the blockchain for years, that means they may not be paused.

“Any swimming pools that may very well be paused have been paused and are actually in restoration mode. All different Balancer swimming pools are unaffected,” Balancer mentioned on Monday.

In a Wednesday preliminary incident report, the DeFi protocol revealed that swimming pools throughout Ethereum, Base, Avalanche, Gnosis, Berachain, Polygon, Sonic, Arbitrum, and Optimism have been affected, each on Balancer V2 and its forks on different blockchains.

The attackers, Balancer says, exploited the protocol’s help for batch swap, which permits customers to mix a number of operations right into a single transaction. Batch swap helps ‘deferred settlements’, enabling customers to ‘flashloan’ tokens when performing swaps.

“Particularly for composable steady swimming pools, the LP receipt-tokens (BPT) are handled as common tokens, which permits bypassing the minimal pool provide restrict, permitting the liquidity ranges within the pool to succeed in extraordinarily low values,” Balancer explains.

The hackers exploited a rounding route within the upscale perform of EXACT_OUT transactions, which rounds down values below sure circumstances.

“Attackers have been in a position to exploit the inaccurate rounding habits together with the batch swap performance to control pool balances and extract worth. In lots of cases, the exploited funds remained inside the Vault as inner balances earlier than being withdrawn in subsequent transactions,” Balancer explains.Commercial. Scroll to proceed studying.

Primarily, the attackers manipulated BPT value calculations, after which carried out the batch swap to revenue from a deflated value, a researcher explains.

The DeFi protocol remains to be investigating the assault and has not offered a closing impression determine. Preliminary estimates prompt that roughly $128 million have been drained, however speedy response from the group lowered the full losses by greater than $20 million.

“Balancer continues to work with companions, researchers, exchanges, and whitehat groups to recuperate funds. A complete autopsy with validated totals, transaction references, and restoration/distribution flows will likely be printed as soon as accomplice verification and reconciliation are full,” the DeFi protocol mentioned.

The assault primarily affected Composable Secure v5 swimming pools that have been out of the pause window, and Balancer recommends that customers chorus from interacting with them, noting that its precedence is mitigation and restoration of funds.

Associated: US Sanctions North Korean Bankers Accused of Laundering Stolen Cryptocurrency

Associated: US Fees Cambodian Govt in Huge Crypto Rip-off and Seizes Extra Than $14 Billion in Bitcoin

Associated: North Korean Hackers Have Stolen $2 Billion in Cryptocurrency in 2025

Associated: Predatory Sparrow Burns $90 Million on Iranian Crypto Change in Cyber Shadow Struggle

Security Week News Tags:Balancer, DeFi, Funds, Heist, Million, Protocol, Recovering, Starts, Stolen

Post navigation

Previous Post: Building Cyber Resilience in Financial Services
Next Post: Checkpoint Details on How Attackers Drained $128M from Balancer Pools Within 30 Minutes

Related Posts

Firefox 145 and Chrome 142 Patch High-Severity Flaws in Latest Releases Firefox 145 and Chrome 142 Patch High-Severity Flaws in Latest Releases Security Week News
Coinbase Rejects M Ransom After Rogue Contractors Bribed to Leak Customer Data Coinbase Rejects $20M Ransom After Rogue Contractors Bribed to Leak Customer Data Security Week News
BreachForums Owner Sent to Prison in Resentencing  BreachForums Owner Sent to Prison in Resentencing  Security Week News
Truffle Security Raises  Million for Secret Scanning Engine Truffle Security Raises $25 Million for Secret Scanning Engine Security Week News
OpenAI’s New Tool and Cybersecurity Updates OpenAI’s New Tool and Cybersecurity Updates Security Week News
LastPass Users Targeted With Backup-Themed Phishing Emails LastPass Users Targeted With Backup-Themed Phishing Emails Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • F-Droid 2.0 Debuts with Major Redesign for App Discovery
  • China and US to Create AI Safety Channel Amid Ongoing Talks
  • Lunex Stealer Exploits AMD Driver for Credential Theft
  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • F-Droid 2.0 Debuts with Major Redesign for App Discovery
  • China and US to Create AI Safety Channel Amid Ongoing Talks
  • Lunex Stealer Exploits AMD Driver for Credential Theft
  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark