Ocean’s Eleven, DeFi Edition

Attackers stole $116 million from the investors who were using Balancer.

Crypto investors got robbed recently thanks to months of planning and loads of technical expertise. Attackers stole $116 million from the investors who were using Balancer, a popular decentralized finance (DeFi) protocol built on the Ethereum blockchain

Balancer released a preliminary report on the attack on Wednesday, which details how hackers exploited vulnerabilities in the Balancer system to rob the investors. 

Here is the multi-tier approach used by the hackers: 

Join our newsletter
  • Bundled swaps: They grouped a bunch of trades into one big package (called BatchSwaps) to hide what they were doing.
  • Flash loans: They borrowed tons of money super fast (without putting up their own cash first), used it to mess things up, then paid it back in seconds.
  • Price trick: The hackers changed a math rule that normally rounds prices down to be fair, so they got more coins than they should, thousands of times more.

Basically, the hackers took the investment of Balancer’s users bit by bit. “A lot of the stolen money stayed hidden inside the system at first, then got pulled out later in sneaky follow-up moves,” said Balancer. 

Trying To Get The Money Back

The hackers chopped the stolen crypto into $200 bits, threw them into Tornado Cash (a crypto mixer) to mix with other people’s money, and later pulled out clean cash, leaving no trail behind.

Balancer teamed up with security experts and froze about $21 million of the loot right away. That includes:

  • 5,041 chunks of “staked ETH” (a locked-up version of Ethereum).
  • 13,495 “osGNO” tokens (another type of locked crypto reward).

They even offered a reward to get the loot back: “Give back the money, and we’ll pay you 20% as a thank-you”. But Balancer got no reply from the thieves.

Balancer has now paused all vulnerable features in its system and the team is patching the holes. It’s a wake-up call that once again proves that DeFi is facing more hacks and scams every day.

Disclaimer: Coin Medium is not responsible for any losses or damages resulting from reliance on any content, products, or services mentioned in our articles or content belonging to the Coin Medium brand, including but not limited to its social media, newsletters, or posts related to Coin Medium team members.

The Prose Engineer
I am a journalist with over 17 years of experience, and I love crafting insightful content on topics ranging from cryptocurrency and sustainable development to renewable energy, commodity markets, and shipping issues. I bring both strategic thinking and a deep commitment to impactful storytelling. Outside the newsroom, I’m a proud mom of two, an avid traveler, and a passionate foodie who loves trying new cuisines. I thrive on making new friends and engaging in lively conversations. Whether I’m writing a feature or sharing stories over a meal, I bring curiosity, warmth, and clarity to everything I do.

Related Articles

Stay ahead of the curve with expert crypto insights, guides, and market trends — join to our newsletter.