The Flow Foundation has confirmed a real and material security incident on the Flow network. On December 27, 2025, an attacker exploited a vulnerability in FlowThe Flow Foundation has confirmed a real and material security incident on the Flow network. On December 27, 2025, an attacker exploited a vulnerability in Flow

Flow Confirms Execution Layer Exploit

2025/12/29 02:04
5 min read

The Flow Foundation has confirmed a real and material security incident on the Flow network.

On December 27, 2025, an attacker exploited a vulnerability in Flow’s execution layer, successfully moving approximately $3.9 million in assets off-network before validators executed a coordinated network halt. The confirmation was published directly by the Flow Foundation in an official update on X.

Critically, the exploit did not access user wallets or balances. The Foundation stated clearly that all user deposits remain intact, and no customer funds were compromised. The attack targeted execution mechanics rather than custody or account-level access.

Once suspicious activity was detected, validators acted in coordination to halt the network, preventing further movement of funds and isolating the exploit. The incident is now classified as contained, with remediation underway.

How The Attacker Moved Funds

Following containment, the Foundation’s security team mapped the attacker’s exit path in detail.

As of the latest confirmed data, approximately $3.9 million in assets successfully exited the Flow network. The attacker routed funds primarily through a series of cross-chain bridges, including Celer, deBridge, Relay, and Stargate. These bridges served as the initial off-ramps before assets were further dispersed.

The attacker wallet has been identified and flagged, and real-time monitoring is ongoing. According to the Foundation, the stolen funds are currently being laundered through THORChain and Chainflip, two cross-chain liquidity protocols frequently used to obscure transaction trails.

In response, freeze requests have been submitted to major stablecoin issuers and centralized platforms, including Circle, Tether, and multiple large exchanges. Forensic analysis remains active as investigators continue tracing fund movements and coordinating with external partners.

Despite the seriousness of the breach, the Foundation emphasized that the confirmed amount exited is manageable and does not threaten network solvency or user funds.

Containment And Network Halt

Containment measures were decisive.

Validators executed a coordinated network halt, effectively cutting all exit paths and preventing any additional unauthorized activity. According to the Foundation, containment is now complete, and no further exploit activity is possible under the current network state.

The network remains in a read-only mode, ensuring data integrity while remediation is finalized. This approach prioritizes safety over speed, a decision the Foundation has repeatedly reinforced throughout its updates.

Remediation is actively in progress, with engineering teams focused on eliminating the root cause of the exploit and validating a secure restart path.

Restart Timeline And Validation Process

The Flow Foundation has laid out a clear restart plan, though with firm guardrails.

A protocol-level fix has already been developed and is currently entering final validation. The initial target for restarting the network is within 4 to 6 hours, contingent on successful testnet validation.

The Foundation has committed to a transparent update cadence:

  •  Next status update: Within 2 hours
  •  Target restart window: 4–6 hours (pending validation)
  •  Full technical post-mortem: Within 72 hours

Importantly, the network will not restart until the fix has been fully validated. There will be no partial reactivation or rushed ingestion.

Updates will continue every two hours until the restart process is complete.

Market Reaction And FLOW Price Impact

While user funds remain safe, markets reacted swiftly.

Yesterday, the price of FLOW dropped sharply, falling from $0.17 to a low of $0.079, marking a 24-hour decline of 42.61%. At the time of writing, FLOW has recovered modestly and is trading around $0.12, though volatility remains elevated.

The price action reflects a familiar pattern. Even when user funds are unaffected, confirmed network exploits introduce uncertainty. Liquidity thins. Risk premiums widen. And short-term sellers move first.

This reaction was amplified by the temporary network halt and the uncertainty surrounding restart timing, even as the Foundation reiterated that user balances were never at risk.

Extended Coordination With Ecosystem Partners

In a follow-up update, the Flow Foundation announced an extended coordination and synchronization phase, citing the need to align with the broader ecosystem before restarting normal operations.

Flow is deeply integrated with cross-chain bridges, exchanges, indexers, and infrastructure providers. Restarting the network without ensuring full downstream alignment could lead to state mismatches, data inconsistencies, or service disruptions.

To avoid these risks, the Foundation is actively deploying resources to help ecosystem stakeholders reset systems to a specific pre-exploit state. Two precise reference points have been provided:

  •  Flow Cadence Height: 137,363,395
  •  Flow EVM Height: 51,358,233

All critical partners must align to these checkpoints before ingestion resumes.

As of the latest update:

  •  Validators: Ready (Mainnet 28 deployed)
  •  Ingestion: Paused
  •  Network State: Read-only

Validators are prepared to resume block production, but ingestion remains paused until synchronization is complete. The Foundation warned that resuming ingestion too early could cause downstream issues for users and applications.

As a result, the network will remain in read-only mode until all critical infrastructure providers confirm alignment.

The next official update is scheduled for 7:00 a.m. PT on December 28.

A Controlled Incident, Not A Solvency Event

While the exploit is serious, its scope matters.

This was not a user balance breach. It was not a custody failure. And it was not a threat to network solvency. The attack was limited, detected, contained, and disclosed transparently.

The coming days will be important. The technical post-mortem will provide clarity on execution-layer risks and the safeguards being implemented to prevent recurrence.

For now, the priority is stability. Safe restart. And restoring full functionality without introducing new risk.

The incident is confirmed. The response is active. And the network remains under control.

Disclosure: This is not trading or investment advice. Always do your research before buying any cryptocurrency or investing in any services.

Follow us on Twitter @nulltxnews to stay updated with the latest Crypto, NFT, AI, Cybersecurity, Distributed Computing, and Metaverse news!

Market Opportunity
FLOW Logo
FLOW Price(FLOW)
$0.04651
$0.04651$0.04651
+3.72%
USD
FLOW (FLOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

ToolGen Enters ‘Harvest Season’ for Global IP Monetization; Appoints Litigation & Negotiation Expert Dave Koo as CLO

ToolGen Enters ‘Harvest Season’ for Global IP Monetization; Appoints Litigation & Negotiation Expert Dave Koo as CLO

Driving tangible monetization from a dramatically expanded patent portfolio EVP Yoori Kim establishes a strong foundation for revenue generation by securing core
Share
AI Journal2026/02/12 09:30
UK and US Seal $42 Billion Tech Pact Driving AI and Energy Future

UK and US Seal $42 Billion Tech Pact Driving AI and Energy Future

The post UK and US Seal $42 Billion Tech Pact Driving AI and Energy Future appeared on BitcoinEthereumNews.com. Key Highlights Microsoft and Google pledge billions as part of UK US tech partnership Nvidia to deploy 120,000 GPUs with British firm Nscale in Project Stargate Deal positions UK as an innovation hub rivaling global tech powers UK and US Seal $42 Billion Tech Pact Driving AI and Energy Future The UK and the US have signed a “Technological Prosperity Agreement” that paves the way for joint projects in artificial intelligence, quantum computing, and nuclear energy, according to Reuters. Donald Trump and King Charles review the guard of honour at Windsor Castle, 17 September 2025. Image: Kirsty Wigglesworth/Reuters The agreement was unveiled ahead of U.S. President Donald Trump’s second state visit to the UK, marking a historic moment in transatlantic technology cooperation. Billions Flow Into the UK Tech Sector As part of the deal, major American corporations pledged to invest $42 billion in the UK. Microsoft leads with a $30 billion investment to expand cloud and AI infrastructure, including the construction of a new supercomputer in Loughton. Nvidia will deploy 120,000 GPUs, including up to 60,000 Grace Blackwell Ultra chips—in partnership with the British company Nscale as part of Project Stargate. Google is contributing $6.8 billion to build a data center in Waltham Cross and expand DeepMind research. Other companies are joining as well. CoreWeave announced a $3.4 billion investment in data centers, while Salesforce, Scale AI, BlackRock, Oracle, and AWS confirmed additional investments ranging from hundreds of millions to several billion dollars. UK Positions Itself as a Global Innovation Hub British Prime Minister Keir Starmer said the deal could impact millions of lives across the Atlantic. He stressed that the UK aims to position itself as an investment hub with lighter regulations than the European Union. Nvidia spokesman David Hogan noted the significance of the agreement, saying it would…
Share
BitcoinEthereumNews2025/09/18 02:22
First family moves on from Wall Street as Eric Trump backs crypto

First family moves on from Wall Street as Eric Trump backs crypto

Eric Trump says crypto could actually save the U.S. dollar. Not kill it. Not weaken it. On Tuesday, just hours after ringing the Nasdaq opening bell for American Bitcoin’s public debut, a company where he’s got over $500 million stashed, Eric told the Financial Times that crypto is “arguably” the reason the dollar might stay alive. “Mining bitcoin here, and being financially independent and running a kind of financial revolution out of the United States of America…I think it arguably saves the US dollar,” he said. The timing wasn’t random. Eric’s comments came while the dollar was getting dragged. This year, it’s been tanking… fast. The cause? President Donald Trump’s trade war and his endless public jabs at the Federal Reserve, which just slashed interest rates again. The Fed cut rates yesterday, for the first time this year, right after Donald’s latest round of pressure. It’s not helping. Investors are losing confidence in what’s supposed to be the safest currency on Earth. Eric says crypto is fun, family is done with Wall Street Eric isn’t just pushing crypto from the sidelines. His family has gone full throttle into the space. We’re talking a Truth Social Bitcoin ETF, a Bitcoin treasury tied to Trump Media, and two meme coins; $MELANIA and $TRUMP. Eric defended both coins, saying they were meant to be “fun,” and explained why people are buying in: “They want to bet on a coin, or they want to bet on a player. They want to bet on a celebrity, or they want to bet on a famous brand. Or they just love somebody to death, and they want to buy, you know, a kind of small piece of them, via digital currency.” And Eric doesn’t give Wall Street any credit. At all. He made it clear that everything they’ve built was done without the help of big-name banks. “It’s almost like the ultimate revenge against the big banks and modern finance,” he said. That jab came after the Trump Organization filed a lawsuit against Capital One, accusing the bank of closing their accounts in 2021 for political reasons — something the bank denies. But Eric wasn’t done. “You realise you just don’t need them. And frankly, you don’t miss them.” He added that he wasn’t just referring to Capital One, but “all” of Wall Street’s major lenders and their “top people.” Stablecoins, trillions, and the White House betting on crypto Stablecoins have traditional banks spooked. They think cash might flow out of the banking system if coins like Tether or Circle offer better returns. And that fear isn’t fake. It’s growing, especially after Congress passed the first major crypto law in July. Now the White House wants stablecoin issuers to buy up a fat slice of the Treasury’s debt. Why? Because these crypto firms make money on the interest from the bonds they hold. Last year, Eric co-founded World Liberty Financial Inc. (WLFI), a crypto company that runs a stablecoin called USD1, pegged to the U.S. dollar. That project has serious family backing. Donald held 15.75 billion WLFI tokens at the end of 2024, based on official filings. At Wednesday’s trading price, that holding was worth over $3 billion. When asked about the family’s financial gain from crypto, Eric downplayed it. “If my father cared about monetising his life, the last thing he would have done is run for president, where all we’ve done is un-monetise our life.” Your crypto news deserves attention - KEY Difference Wire puts you on 250+ top sites
Share
Coinstats2025/09/18 20:41