Harmony Token Flooded with Billions After Math Flaw Exploitation
Harmony's native token, ONE, has been flooded with an estimated 4 billion new tokens after attackers exploited a math flaw in the protocol. This represents approximately 26% of the total supply. The attack allowed attackers to mint tokens 'out of thin air,' and an estimated 2.8 billion have already reached exchanges.
Harmony released an emergency validator patch, v2026.1.1, which closes two receipt flaws that could allow a receipt to be accepted without required approvals. However, the size and location of the excess supply, as well as any potential rollback, remain unresolved.
The project has asked exchanges to block and freeze traceable funds associated with four implicated wallet addresses but has not disclosed how much has been frozen or the venues involved.