The post Flow Details December Exploit that Led to $3.9M in Counterfeit Token Losses appeared on BitcoinEthereumNews.com. The Flow Foundation on Tuesday publishedThe post Flow Details December Exploit that Led to $3.9M in Counterfeit Token Losses appeared on BitcoinEthereumNews.com. The Flow Foundation on Tuesday published

Flow Details December Exploit that Led to $3.9M in Counterfeit Token Losses

3 min read

The Flow Foundation on Tuesday published a technical post mortem detailing a protocol-level exploit that occurred on Dec. 27, when an attacker was able to counterfeit tokens on the network, resulting in about $3.9 million in confirmed losses before the exploit was contained.

According to the report, the attacker exploited a flaw in Flow’s Cadence runtime that allowed certain assets to be duplicated rather than minted, bypassing supply controls without accessing or draining existing user balances. Validators coordinated a network halt within six hours of the first malicious transaction, while exchange partners froze most counterfeit assets before they could be sold.

Flow said the temporary halt placed the network into a read-only mode to sever exit paths and prevent further duplication while the issue was investigated. Operations resumed two days later under an “isolated recovery” plan that preserved legitimate transaction history and authorized the recovery and permanent destruction of counterfeit assets through a governance-approved process.

Source: Flow Blockchain

The Flow Foundation, which supports the Flow network, said no existing user balances were compromised, as the exploit duplicated assets rather than removing funds from accounts. A limited number of accounts that interacted with counterfeit tokens were temporarily restricted as a precaution, while more than 99% of accounts retained full access during and after the recovery.

While the attacker generated a large volume of counterfeit tokens onchain, Flow said the vast majority were contained or frozen before liquidation.

The Foundation said it has since patched the underlying vulnerability, added stricter runtime checks and expanded regression testing to prevent similar exploits. It also is working with forensic partners and law enforcement and plans to strengthen monitoring and bug-bounty programs as part of broader security hardening.

Related: NFTs shifted to utility and culture as price faded in 2025

Flow’s post-NFT downturn

Dapper Labs, the creators of the non-fungible token project CryptoKitties, announced the development of Flow in September 2019 as a new layer-1 blockchain designed to address scalability challenges facing consumer applications such as games and digital collectibles. 

Early success with NBA Top Shot, an NFT platform for trading officially licensed NBA video highlights, helped bring mainstream attention to the Flow blockchain in 2020 and 2021. Against this backdrop, the network’s FLOW token surged past $40 in 2021, according to data from CoinGecko.

Flow’s momentum carried into 2022, where the project raised about $725 million from investors, including Andreessen Horowitz (a16z) and Union Square Ventures, to support ecosystem development.

As activity across the NFT market cooled in the years that followed, the FLOW token also lost momentum and has since fallen outside the top 300 cryptocurrencies by market capitalization.

The decline accelerated following the Dec. 27 hack, when FLOW plunged by around 40% over five hours.

The token later slid to a low of $0.075 on Friday before beginning to recover. It was trading near $0.10 at the time of writing, up about 16% over the past 24 hours, according to Cointelegraph data.

Source: CoinGecko

Magazine: Big questions: Would Bitcoin survive a 10-year power outage?

Source: https://cointelegraph.com/news/flow-details-december-exploit-3-9m-counterfeit-token-losses?utm_source=rss_feed&utm_medium=feed&utm_campaign=rss_partner_inbound

Market Opportunity
FLOW Logo
FLOW Price(FLOW)
$0.03972
$0.03972$0.03972
-12.22%
USD
FLOW (FLOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Cashing In On University Patents Means Giving Up On Our Innovation Future

Cashing In On University Patents Means Giving Up On Our Innovation Future

The post Cashing In On University Patents Means Giving Up On Our Innovation Future appeared on BitcoinEthereumNews.com. “It’s a raid on American innovation that would deliver pennies to the Treasury while kneecapping the very engine of our economic and medical progress,” writes Pipes. Getty Images Washington is addicted to taxing success. Now, Commerce Secretary Howard Lutnick is floating a plan to skim half the patent earnings from inventions developed at universities with federal funding. It’s being sold as a way to shore up programs like Social Security. In reality, it’s a raid on American innovation that would deliver pennies to the Treasury while kneecapping the very engine of our economic and medical progress. Yes, taxpayer dollars support early-stage research. But the real payoff comes later—in the jobs created, cures discovered, and industries launched when universities and private industry turn those discoveries into real products. By comparison, the sums at stake in patent licensing are trivial. Universities collectively earn only about $3.6 billion annually in patent income—less than the federal government spends on Social Security in a single day. Even confiscating half would barely register against a $6 trillion federal budget. And yet the damage from such a policy would be anything but trivial. The true return on taxpayer investment isn’t in licensing checks sent to Washington, but in the downstream economic activity that federally supported research unleashes. Thanks to the bipartisan Bayh-Dole Act of 1980, universities and private industry have powerful incentives to translate early-stage discoveries into real-world products. Before Bayh-Dole, the government hoarded patents from federally funded research, and fewer than 5% were ever licensed. Once universities could own and license their own inventions, innovation exploded. The result has been one of the best returns on investment in government history. Since 1996, university research has added nearly $2 trillion to U.S. industrial output, supported 6.5 million jobs, and launched more than 19,000 startups. Those companies pay…
Share
BitcoinEthereumNews2025/09/18 03:26
XRP Ledger Unlocks Permissioned Domains With 91% Validator Backing

XRP Ledger Unlocks Permissioned Domains With 91% Validator Backing

XRP Ledger activated XLS-80 after 91% validator approval, enabling permissioned domains for credential-gated use on the public XRPL. The XRP Ledger has activated
Share
LiveBitcoinNews2026/02/06 13:00
TrendX Taps Trusta AI to Develop Safer and Smarter Web3 Network

TrendX Taps Trusta AI to Develop Safer and Smarter Web3 Network

The purpose of collaboration is to advance the Web3 landscape by combining the decentralized infrastructure of TrendX with AI-led capabilities of Trusta AI.
Share
Blockchainreporter2025/09/18 01:07