This morning, there was an on-chain development worth noting — the Balancer attacker has taken new action again. He used permit() authorization to transfer approximately 19.5 million stS from the address previously frozen by Sonic (0xf19…fae2), worth about 3 million dollars. The assets have now been converted into WBTC and ETH. The new address is 0x0e9c…44D5.



There is a key technical detail here: this freeze only takes effect at the native chain layer, so it can only lock the native tokens themselves and has no effect on other ERC20 tokens. As a derivative token, stS exploited this loophole — the attacker used the authorization mechanism to bypass the freeze restrictions. It seems that for on-chain security, simply freezing addresses is not enough.
S1,27%
WBTC-2,45%
ETH-3,5%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 6
  • Repost
  • Share
Comment
Add a comment
Add a comment
GateUser-40edb63bvip
· 2025-11-13 17:35
I really feel that the attacker has figured it out.
View OriginalReply0
CryptoFortuneTellervip
· 2025-11-12 08:30
Who wouldn't take advantage of this loophole?
View OriginalReply0
NFTDreamervip
· 2025-11-11 05:23
Once again, everything is a mess.
View OriginalReply0
PumpDetectorvip
· 2025-11-11 05:22
smart money moves in silence... seen this play before smh
Reply0
SleepyArbCatvip
· 2025-11-11 05:21
Frozen and twisted like this, it's so frustrating.
View OriginalReply0
BearMarketSunriservip
· 2025-11-11 05:04
A cunning rabbit has three burrows; this attack is extremely swift.
View OriginalReply0
  • Pin