Blog

Nov 13, 2025

Balancer V2 Exploit Explained: Inside the Smart Contract Rounding Error That Cost $120M

Balancer V2’s Composable Stable Pools, modeled after Curve’s StableSwap, use math-driven invariants to minimize slippage in like-valued token swaps. However, a persistent rounding-down behavior in the _upscale function—introduced in 2021—created a precision loss that attackers exploited in low-liquidity states, draining over $120 million. The incident underscores the need for continuous, holistic security partnerships and evolving audit frameworks in the DeFi ecosystem, rather than isolated, one-off reviews.

Source: HackerNoon →


Share

BTCBTC
$67,895.00
4.49%
ETHETH
$2,019.40
6.3%
USDTUSDT
$1.000
0.08%
BNBBNB
$637.57
2.32%
XRPXRP
$1.42
9.47%
USDCUSDC
$1.000
0%
SOLSOL
$84.96
7.41%
TRXTRX
$0.274
2.01%
DOGEDOGE
$0.0955
5.18%
FIGR_HELOCFIGR_HELOC
$1.03
0.25%
WBTWBT
$51.60
4.63%
BCHBCH
$516.74
11.84%
ADAADA
$0.268
6%
USDSUSDS
$1.000
0.01%
HYPEHYPE
$32.73
2.61%
LEOLEO
$7.93
18.68%
CCCC
$0.173
6.61%
USDEUSDE
$0.999
0.16%
LINKLINK
$8.67
7.06%
XMRXMR
$321.16
4.47%