
MultiversX Says Mainnet Was Exploited and Network Has Been Paused

MultiversX Says Mainnet Was Exploited and Network Has Been Paused
WEEX View
- The immediate variable is whether the fix passes shadow fork validation and can be deployed without introducing further state inconsistencies.
- Markets should also watch how quickly validators, exchanges, bridges, and infrastructure providers coordinate around the restart, since deposits, withdrawals, and transaction flow are already affected.
- A second key issue is the recovery plan. MultiversX said it aims to preserve confirmed transaction history and legitimate user states while correcting only invalid changes tied to the incident, a process that could shape confidence in the restart.
Until normal operations resume, operational risk is centered less on trading direction and more on settlement, custody, and cross-platform access to EGLD and ESDT assets.
MultiversX said its mainnet was hacked after attackers exploited atomicity issues at the virtual machine level, causing invalid state changes on-chain, and that the network has been paused while the engineering team tests a fix.
According to the project’s statement, the exploit targeted atomicity issues at the virtual machine layer and led to invalid state changes on the chain. MultiversX said it paused the network to contain the impact and prevent additional damage while its engineering team prepared a remediation.
The team said the proposed fix is being validated in a shadow fork environment. If that testing succeeds, MultiversX plans to coordinate with validators, exchanges, and infrastructure partners before deploying the patch to mainnet. The project did not disclose how long the validation process may take or when the network could resume normal operation.
MultiversX also said it is assessing targeted recovery plans designed to preserve confirmed transaction history and legitimate user states, while addressing only the invalid changes linked to the incident. It did not provide details on affected assets, the scale of the invalid state changes, or whether any funds were stolen.
For users, the project said no immediate action is required beyond waiting for further notices on restoration. It separately advised users not to submit or rebroadcast transactions and to avoid depositing or withdrawing EGLD and ESDT through exchanges or cross-chain bridges until operations are restored.
Why It Matters
A mainnet pause following an acknowledged exploit is one of the more serious types of operational failures for a blockchain network because it disrupts transaction finality, exchange settlement, and bridge activity at the same time. Even without a disclosed loss figure, the combination of a VM-level issue, halted network activity, and a selective recovery process raises immediate questions about infrastructure resilience and restart coordination.
The incident also puts focus on how layer-1 networks handle post-exploit state repair. MultiversX is signaling that it wants to isolate invalid changes while preserving legitimate history, an approach that may matter for user confidence, exchange support, and the broader handling of security incidents across interconnected crypto infrastructure.
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
About WEEX View
WEEX View is a crypto analysis and intelligence hub, covering the latest in Web3, AI, and global markets. Get independent research and in-depth insights to stay ahead of market trends and trading opportunities.
Latest articles
MoreWaterPlum Used Fake Crypto Jobs to Breach 30,000 Devices
A joint law enforcement advisory said North Korean-linked group WaterPlum infected at least 30,000 devices in more than 100 countries and exfiltrated funds or credentials from over 7,000 crypto wallets, with at least $10.71 million traced to DPRK-linked control.
Coinbase Taps Stablecore to Extend Crypto Tools to US Banks
Coinbase has partnered with Stablecore to make crypto trading, custody and stablecoin payment services available through banking technology used by more than 3,000 U.S. banks and credit unions, though adoption will depend on each institution activating the services.
US Treasury Sanctions Iran-Linked Crypto Exchange BitBank
The U.S. Treasury sanctioned Iranian digital asset exchange BitBank, its software developer, and three associates tied to Babak Zanjani, alleging the platform helped move hundreds of millions of dollars in Bitcoin to the IRGC.
NYSE Explores Avalanche for Tokenized Securities Infrastructure
NYSE has been testing Avalanche technology for possible use in tokenized securities infrastructure, according to remarks at Avalanche Summit, as the exchange group weighs technical and economic fit for a broader tokenized stocks and ETFs push.