Flow halts after a $3.9m exploit, ditches a full rollback plan and opts for targeted token burns to preserve user activity and restore trust. Flow blockchain’s Flow halts after a $3.9m exploit, ditches a full rollback plan and opts for targeted token burns to preserve user activity and restore trust. Flow blockchain’s

Flow faces rollback backlash after $3.9m exploit hits execution layer

2025/12/29 18:35
3 min read

Flow halts after a $3.9m exploit, ditches a full rollback plan and opts for targeted token burns to preserve user activity and restore trust.

Summary
  • An attacker exploited Flow’s execution layer for about $3.9m via cross-chain bridges before validators halted the network and sought freezes from issuers and exchanges.​
  • A proposed rollback to a pre-attack checkpoint drew criticism from bridge operators and lawyers, who warned of doubled balances, unbacked assets and trust damage.​
  • Flow’s revised plan scraps a global rollback, targets fraudulent mints, phases the restart and restricts flagged accounts while preserving legitimate user activity.

Flow blockchain’s proposal to reverse transactions following a $3.9 million exploit triggered opposition from ecosystem partners, prompting the network’s foundation to revise its remediation approach.

Flow crypto moves along with cross-chain bridges

An attacker exploited a vulnerability in Flow’s (FLOW) execution layer on Dec. 27, extracting approximately $3.9 million in assets through multiple cross-chain bridges before validators halted the chain, according to Flow Foundation. The foundation and forensic partner FindLabs stated that existing user balances were not accessed and that the exploit was contained, with freeze requests sent to major exchanges and stablecoin issuers.

The attacker’s Ethereum wallet was identified, and investigators reported tracking laundering attempts through Thorchain and Chainflip.

Flow core developers proposed a rollback to a checkpoint prior to the exploit, which would erase all transactions submitted during a several-hour window and require users and infrastructure providers to resubmit activity. The Foundation stated the rollback would neutralize unauthorized minting and restore the ledger.

Alex Smirnov, founder of cross-chain bridge deBridge, said he learned of the rollback decision after its public announcement. Smirnov warned that reverting the chain could create doubled balances for users who bridged assets out during the rollback window, while leaving others who bridged in facing losses with no clear reimbursement plan. He called on Flow validators to halt transaction validation until the Foundation clarified resolution of these cases and how custodians such as LayerZero, the primary USDC custodian on Flow, would handle affected transfers.

Flowscan data showed the network stalled at a fixed block height for an extended period. The FLOW token declined following the exploit and rollback announcement, and some centralized exchanges temporarily suspended transactions, according to market data.

DefiLlama data showed Flow’s total value locked dropped after the incident before partially rebounding within 24 hours.

Gabriel Shapiro, general counsel at Delphi Labs, stated the approach risked pushing losses onto bridges and issuers by creating unbacked assets. Smirnov argued that financial damage from a rollback could exceed the original exploit. Chain rollbacks remain rare in cryptocurrency networks due to concerns about reversing confirmed transactions and questions regarding decentralization.

On Dec. 29, Flow Foundation announced a revised remediation plan developed in consultation with bridge operators, exchanges, and validators. The updated approach abandoned a global rollback and instead focused on isolating and destroying fraudulently minted tokens while preserving legitimate user activity. Dapper Labs, which launched Flow, said it reviewed and supported the revised plan and that no Dapper Labs user balances or assets were impacted.

Under the new plan, the network would restart in phases, temporarily restricting accounts identified through forensic analysis as recipients of illicit tokens. Validators approved a software upgrade enabling the targeted remediation, and the network returned online in a read-only testing mode ahead of a phased restoration. The Foundation stated the majority of accounts would remain unaffected, with ongoing updates promised as normal operations gradually resume.

Market Opportunity
FLOW Logo
FLOW Price(FLOW)
$0.04527
$0.04527$0.04527
+4.14%
USD
FLOW (FLOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Pi Network Tech Upgrade Unlocks Mainnet Migration for 2.5 Million Users and Introduces Palm Print Security

Pi Network Tech Upgrade Unlocks Mainnet Migration for 2.5 Million Users and Introduces Palm Print Security

Pi Network has announced a major technological breakthrough that marks a new chapter in its evolution. According to information shared by Twitter user @strong3
Share
Hokanews2026/02/07 12:28
PayPal P2P, Google AI Payments, Miner Pivot — Crypto Biz

PayPal P2P, Google AI Payments, Miner Pivot — Crypto Biz

The post PayPal P2P, Google AI Payments, Miner Pivot — Crypto Biz appeared on BitcoinEthereumNews.com. Crypto’s center of gravity is shifting from speculation to services. PayPal is opening the door to peer-to-peer (P2P) cryptocurrency transfers, building on its growing presence in digital assets. Its stablecoin, PYUSD, has already surpassed $1 billion in market capitalization. Google is piloting a payment protocol designed for AI agents, with built-in support for stablecoins — highlighting the role dollar-pegged crypto could play in the emerging web economy. Meanwhile, Bitcoin miners face tighter margins from rising costs, higher difficulty levels and growing competition. Yet several companies are thriving by pivoting into data-center and AI infrastructure, sending their share prices sharply higher in recent weeks. This week’s Crypto Biz covers PayPal’s P2P rollout, the shifting economics of Bitcoin mining, Google’s open-source AI payment initiative and Bitwise’s bid for a new exchange-traded fund (ETF) focused on stablecoins and tokenization. PayPal rolls out P2P crypto transfers with new “links” feature PayPal is expanding its peer-to-peer offerings with a new feature that allows US users to send and receive cryptocurrencies directly within PayPal and Venmo, without relying on external exchanges. The service, called PayPal links, generates one-time links in the app that can be shared via text, email or chat. The feature will extend to Venmo, enabling direct transfers of cryptocurrencies and PayPal’s stablecoin, PYUSD, between users. For US customers, PayPal said that personal friends-and-family crypto transfers will not trigger 1099-K tax reporting, though other types of crypto transactions may still be taxable The rollout is part of PayPal World, the company’s interoperability framework aimed at connecting wallets and payment systems across its ecosystem. PayPal’s stablecoin, PYUSD, has experienced significant growth since launch, reaching a market cap of roughly $1.3 billion. Source: CoinMarketCap Bitcoin miners outperform BTC Shares of several major Bitcoin mining companies have surged over the past month, even as Bitcoin’s (BTC) price…
Share
BitcoinEthereumNews2025/09/20 22:22
Federal Reserve Cuts Rates: What Does This Mean for Crypto?

Federal Reserve Cuts Rates: What Does This Mean for Crypto?

TLDR: The Federal Reserve lowered rates by 25 bps, starting its first easing cycle of 2025. Lower rates tend to weaken the dollar, often driving capital into risk assets like crypto. Analysts say cheaper liquidity can fuel Bitcoin and altcoin demand as yields fall. Investors are watching price reactions closely as markets price in more [...] The post Federal Reserve Cuts Rates: What Does This Mean for Crypto? appeared first on Blockonomi.
Share
Blockonomi2025/09/18 14:10