News
Liquid Network Pauses Operations Following $320 Million “White-Hat” Exploit

Liquid Network Pauses Operations Following $320 Million “White-Hat” Exploit

On Monday, the Liquid Network, a prominent Bitcoin sidechain developed by Blockstream, suspended its operations globally after self-described “white-hat” hackers drained $320 million in Liquid Bitcoin (LBTC). The proactive pause aims to secure remaining assets while Blockstream attempts to establish contact with the exploiters to negotiate the return of the funds.

Understanding the Liquid Network

Launched as a layer-2 solution, the Liquid Network enables faster, more confidential Bitcoin transactions and issues digital assets. It operates via a federation of cryptocurrency businesses that secure the network, making a security breach of this scale unprecedented for the protocol’s history. Following the exploit, major cryptocurrency exchanges immediately suspended all LBTC deposits and withdrawals to prevent further market contagion.

The $320 Million Exploit

Blockchain security firms flagged the massive outflow of funds early Monday morning, identifying a vulnerability in the network’s multi-signature smart contracts. Blockstream confirmed the network freeze shortly after, characterizing the incident as a “white-hat” intervention, though details regarding the hackers’ identities and motives remain scarce. According to on-chain data, the withdrawn $320 million represents a significant portion of the sidechain’s total value locked, raising immediate liquidity concerns.

Industry Implications and Next Steps

This incident intensifies scrutiny on the security of Bitcoin layer-2 scaling solutions, which have seen rapid adoption over the past year as transaction fees on the mainnet rise. Market analysts are watching whether the exploiters will return the funds in exchange for a standard bug bounty, or if this event will trigger stricter regulatory oversight for decentralized bridges. Developers are currently auditing the protocol’s codebase, with a network restart contingent on successfully patching the critical vulnerability.