Flow Security Incident Review: Type Confusion Vulnerability in Cadence Identified as Key Factor
BlockBeats News, January 7th, Folw released an attack event retrospective report, stating that the attacker exploited a Flow Network vulnerability to mint fake tokens, stealing approximately $3.9 million through a bridging attack. This attack did not access or leak any existing user balances. The attack duplicated assets but did not touch legitimately held assets, with the majority of the fake assets either stored on-chain before liquidation or frozen by exchange partners. Network validators have approved a decentralized governance action authorizing the permanent destruction of all fake assets. The network resumed operation on December 29th, is currently running smoothly, and all transaction history has been preserved.
The attacker sequentially deployed over 40 malicious smart contracts, leveraging a three-stage attack chain: 1) bypassing attachment import verification; 2) circumventing defense checks of built-in types; 3) exploiting a contract initializer semantic vulnerability. The root cause was a type confusion vulnerability in the Cadence runtime (v1.8.8), which has now been patched (v1.8.9 and higher versions). This vulnerability allowed the attacker to disguise protected assets (which should not be duplicable) as standard data structures (which are duplicable), bypassing runtime security checks and enabling token minting.
In addition to moving assets out of Flow, the attacker also attempted to deposit fake FLOW on several centralized exchanges, but due to the abnormal transaction volume and internal anti-money laundering protocols, multiple exchanges froze the deposit upon receipt. Approximately 50% of the fake FLOW deposits have been returned and destroyed by cooperating exchanges (such as OKX, Gate, MEXC), while the foundation continues to actively coordinate with other exchange platforms.
You may also like

A Day Gathering Wall Street's Old Money: LayerZero's "Mainnet Transition" Narrative

Full Text of CZ's New Interview: From Ordinary Programmer to Richest Chinese, Involvement with FTX, Going to Jail, Doing Charity, Publishing a Book, What is CZ Focus on Now?

Mr. Beast is officially entering the world of finance, the Gen Z's new banker

SBF Appeals from Prison, Files 35-Page Motion Accusing Trial of "Collusion"

Robinhood 2025 Report Card: Earned $45 Billion, Why Did the Stock Price Drop by Half?

$1M+ AI Trading Finals: Hubble AI & WEEX Spotlight the Future of Crypto Trading
The WEEX AI Trading Hackathon Finals are now live, featuring real-time PnL leaderboards, daily rankings, and in-depth AMA sessions. Explore how top AI trading strategies perform under real market volatility and follow the competition as it unfolds.

WEEX Alpha Awakens Final Round Has Officially Begun
Day 1 of the WEEX AI Trading Hackathon Final Round is now live! Watch top algorithmic trading strategies compete with real capital. Follow the action from Feb 3–16, 2026, with $880K+ in prizes. Tune in live now. #AITrading #TradingHackathon

WLFI Team Meeting, Ally Meeting, Seaside Villa Cryptocurrency Business Kickoff

OpenClaw Hackathon, What are some projects worth checking out

The Bithumb 2000 BTC Mistake: The Fundamental Issue with CEX Ledgers

LayerZero releases L1 chain Zero, CZ appears on the All-In podcast, what's the overseas crypto community talking about today?

Binance Alpha has turned the airdrop into a "blind box" game
AI Wars: WEEX Alpha Awakens - The Global AI Trading Hackathon Redefining Financial Markets
Compete in WEEX's global AI trading hackathon with $880K+ prize pool. Build & test algorithms in live markets. Bentley & crypto prizes await top AI trading strategies. Join now!

Kyle Samani's Exit Scam, Is There More to the Story?

February 10th Market Key Intelligence, How Much Did You Miss?

Tokenomics New Paradigm? When Backpack Starts Enabling VCs to "Deferred Gratification"

BankrCoin Achieves New Milestones as YZi Labs and ETH Investors Make Significant Moves
Key Takeaways BankrCoin (BNKR) hit a new all-time high with significant market activity. YZi Labs executed a major…

Bitcoin Tests $75K Amid Market Predictions
Key Takeaways Bitcoin shows a 47% chance to test the $75,000 mark this February, contrasting with a potential…
A Day Gathering Wall Street's Old Money: LayerZero's "Mainnet Transition" Narrative
Full Text of CZ's New Interview: From Ordinary Programmer to Richest Chinese, Involvement with FTX, Going to Jail, Doing Charity, Publishing a Book, What is CZ Focus on Now?
Mr. Beast is officially entering the world of finance, the Gen Z's new banker
SBF Appeals from Prison, Files 35-Page Motion Accusing Trial of "Collusion"
Robinhood 2025 Report Card: Earned $45 Billion, Why Did the Stock Price Drop by Half?
$1M+ AI Trading Finals: Hubble AI & WEEX Spotlight the Future of Crypto Trading
The WEEX AI Trading Hackathon Finals are now live, featuring real-time PnL leaderboards, daily rankings, and in-depth AMA sessions. Explore how top AI trading strategies perform under real market volatility and follow the competition as it unfolds.