Lookonchain APP

App Store

Balancer's Historical Security Incident Review: Total Losses Exceed $21 Million Due to Flash Loan, Front-End Hijacking, and Cross-Protocol Vulnerability Attacks

2025.11.03 17:16:36

On November 3rd, the DeFi protocol Balancer is currently under attack. Losses have exceeded $1.166 billion across multiple chains, and the attack on Balancer is still ongoing. According to the on-chain AI analysis tool (https://t.me/CoinbobAI_bot) (@CoinbobAI_bot), the summary of Balancer's security incidents over the years is as follows: · In June 2020, there was a Flash Loan Attack. The attacker took advantage of the compatibility issue between the deflationary token (STA/STONK) and the Balancer smart contract. By repeatedly calling swapExactAmountIn, the liquidity pool was drained, and a profit of $523,600 was ultimately made. · In August 2023, the Balancer V2 pool suffered multiple flash loan attacks due to a code vulnerability. A total loss of $2.1 million occurred. The team urgently paused the affected pool and advised users to withdraw their funds. However, some funds that were not withdrawn in time were still exploited. · In September 2023, there was a Frontend Hijacking Attack. A hacker hijacked the control of the Balancer frontend through BGP/DNS hijacking and tricked users into authorizing a malicious contract, resulting in a loss of $238,000. On-chain detective ZachXBT traced the flow of funds to address 0x645710Af050E26bB96e295bdfB75B4a878088d7E. · In 2023, due to a vulnerability in Euler Finance, the Balancer bbeUSD pool lost $11.9 million, accounting for 65% of the pool's TVL. The team took protective measures to restrict liquidity withdrawals. · In 2024, there was an association with the Velocore Attack. The Velocore exploit involving a Balancer-style CPMM pool resulted in a loss of $6.8 million. Balancer's technical architecture was indirectly implicated due to cross-protocol integration.
Relevant content

After SBF's Cellmate Receives Pardon, Intense Advocacy Follows; Market Predicts Slim Chance of Release This Year

On December 2, former U.S. President Donald Trump pardoned Juan Orlando Hernández (JOH)—the ex-president of Honduras who was serving a sentence in New York for cocaine smuggling—per monitoring from PolyBeats (Dec. 5 update). Three hours ago, FTX founder Sam Bankman-Fried (SBF)—arrested in 2022 and once JOH’s cellmate—posted on X that he spent substantial time helping JOH prepare for trial: reviewing evidence and drafting legal documents. SBF described JOH as “the most innocent prisoner I’ve ever seen, including myself.” Speculation swirls that SBF’s high-profile post may aim to highlight his behind-the-scenes role in JOH’s release, signal support for Trump’s pardon policy, and lay groundwork for his own potential pardon or commutation. Reports note SBF’s family has openly lobbied Trump and arranged meetings with his allies since early 2025. Yet on prediction market Polymarket, the probability of “Will Trump pardon SBF in 2025?” remains largely unchanged at an extremely low ~2%

1 seconds ago

Insider: Bank of Japan Leaning Towards Hiking Rates at December Meeting

Dec. 5 — Sources report the Bank of Japan (BOJ) is leaning toward hiking interest rates at its December meeting, while keeping the door open to further policy tightening. The USD/JPY exchange rate fell ~30 basis points in short-term trading, last trading at 154.96. (Kryptonite)

1 seconds ago

Moonshot has launched MINER

On December 5, per monitoring data, Moonshot launched its MEME coin MINER on the Solana blockchain, with a reported market capitalization of $3.19 million.

1 seconds ago

Matrixport withdrew 3,805 BTC from Binance, approximately $352.5 million

On December 5th, data from LookOnChain indicates Matrixport withdrew 3,805 Bitcoins from Binance over the past 24 hours, with the crypto valued at roughly $352.5 million.

1 seconds ago

HumidiFi: to Launch New Token and Restart Public Sale, Airdrop to All Wetlist Users and JUP Stakers

[December 5] – HumidiFi, a Solana-based on-chain dark pool DEX, officially announced plans on Tuesday to launch a new token and restart its public sale next Monday. The move addresses a critical issue from its initial sale: centralized bot sniping blocked community users from participating. During the initial launch, large bot networks sent transactions simultaneously via batch wallets, scooping up all tokens instantly. This barred Wetlist members (HumidiFi users/community participants) and JUP stakers from joining the sale. To protect community interests, HumidiFi will airdrop the new token proportionally to eligible Wetlist members and JUP stakers. Addresses linked to sniping in the initial sale will be excluded from the airdrop. The new public sale round will use a newly audited DTF smart contract to prevent similar issues from repeating.

1 seconds ago

Solana Co-Founder: Cryptocurrency Market Cap Will Continue to Rise, Ultimately Leading to Blockchain Market Share Battle

December 5 — Solana co-founder Anatoly Yakovenko took to social media to share his perspectives, stating: “The current high valuations reflect the risks and opportunities across the entire crypto industry. I believe the total crypto market cap will keep rising, and eventually, capital will have to be reallocated based on revenue. This transition will be a long, hard-fought battle for market share—only the blockchains that compete fiercely and emerge victorious will survive.”

1 seconds ago