Blog

Nov 13, 2025

Balancer V2 Exploit Explained: Inside the Smart Contract Rounding Error That Cost $120M

Balancer V2’s Composable Stable Pools, modeled after Curve’s StableSwap, use math-driven invariants to minimize slippage in like-valued token swaps. However, a persistent rounding-down behavior in the _upscale function—introduced in 2021—created a precision loss that attackers exploited in low-liquidity states, draining over $120 million. The incident underscores the need for continuous, holistic security partnerships and evolving audit frameworks in the DeFi ecosystem, rather than isolated, one-off reviews.

Source: HackerNoon →


Share

BTCBTC
$68,512.00
5.85%
ETHETH
$2,023.80
7.98%
USDTUSDT
$1.000
0.07%
BNBBNB
$639.56
3.3%
XRPXRP
$1.42
9.39%
USDCUSDC
$1.000
0.01%
SOLSOL
$85.06
7.03%
TRXTRX
$0.274
1.9%
DOGEDOGE
$0.0960
5.8%
FIGR_HELOCFIGR_HELOC
$1.03
0.25%
WBTWBT
$52.19
6.03%
BCHBCH
$522.03
11.48%
ADAADA
$0.269
7.15%
USDSUSDS
$1.000
0.01%
HYPEHYPE
$32.98
0.27%
LEOLEO
$7.80
16.95%
CCCC
$0.173
6.4%
USDEUSDE
$0.999
0.13%
LINKLINK
$8.70
8.17%
XMRXMR
$324.65
6.62%