We use cookies to personalise content and ads, to provide social media features and to analyse our traffic. We also share information about your use of our site with our social media, advertising and analytics partners who may combine it with other information that you’ve provided to them or that they’ve collected from your use of their services.
Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.
_cfuvidThis cookie is a part of the services provided by Cloudflare - Including load-balancing, deliverance of website content and serving DNS connection for website operators.
Maximum Storage Duration: SessionType: HTTP Cookie
__cf_bm [x7]This cookie is used to distinguish between humans and bots. This is beneficial for the website, in order to make valid reports on the use of their website.
CookieConsentStores the user's cookie consent state for the current domain
Maximum Storage Duration: 1 yearType: HTTP Cookie
Preference cookies enable a website to remember information that changes the way the website behaves or looks, like your preferred language or the region that you are in.
We do not use cookies of this type.
Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.
We do not use cookies of this type.
Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.
We do not use cookies of this type.
Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
List of domains your consent applies to: [#BULK_CONSENT_DOMAINS#]
Cookie declaration last updated on 8/12/26 by Cookiebot
[#IABV2_TITLE#]
[#IABV2_BODY_INTRO#]
[#IABV2_BODY_LEGITIMATE_INTEREST_INTRO#]
[#IABV2_BODY_PREFERENCE_INTRO#]
[#IABV2_BODY_PURPOSES_INTRO#]
[#IABV2_BODY_PURPOSES#]
[#IABV2_BODY_FEATURES_INTRO#]
[#IABV2_BODY_FEATURES#]
[#IABV2_BODY_PARTNERS_INTRO#]
[#IABV2_BODY_PARTNERS#]
About
Cookies are small text files that can be used by websites to make a user's experience more efficient.
The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies we need your permission.
This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.
You can at any time change or withdraw your consent from the Cookie Declaration on our website.
Learn more about who we are, how you can contact us and how we process personal data in our Privacy Policy.
Please state your consent ID and date when you contact us regarding your consent.
Install NewsLayer
Get the app experience — one tap from your home screen, instant loads and breaking-news alerts.
Harmony plans to roll its blockchain back to August 11 after an attacker created more than three trillion ONE tokens without authorization.
The rollback would erase the forged coins, but it will come at a cost, because transactions that are legitimate and that were completed after the chosen recovery point would also disappear.
This means exchanges, bridges, and users will have to retrace these transactions that happened during that period.
Harmony chooses rollback despite the disruption
The team wants to return its two affected shards to their state at 23:25:37 UTC on August 11, which is seconds before the first confirmed unauthorized mints.
Harmony reviewed 141,628 blocks from the affected period on Shard 0 alone, and they contained 109,126 regular transactions and another 315 staking transactions. All of these would be erased under the plan, but the team looked at less disruptive alternatives, including destroying selected balances and blocking wallets.
But the unauthorized coins that were produced had already spread into exchanges, bridges, liquidity pools, and wallets containing other users’ funds. If the team tries to remove only the attacker’s coins, it could affect innocent users or leave some forged ones behind.
Harmony also said it cannot automatically recreate legitimate transactions. It said once the network returns to its former state, transactions might not produce the same results, as balances and other things might have changed.
Attack created more ONE than first reported
Harmony’s investigation found that the attacker manipulated records of previously completed transfers between parts of the network, and this allowed old transactions to appear unused and be processed again.
The result of this was that new ONE coins were created without removing an equivalent amount elsewhere.
Harmony said about six forged transactions created about 3.01 trillion ONE across four wallets, which was higher than the four billion ONE that was reported earlier, which Harmony said represented only the first wave it identified.
One wallet later attempted 534 transfers in just 106 seconds, and 477 succeeded in the transfers, moving about 2.385 trillion ONE.
Harmony has not been able to recover the assets, but it has traced most of the movement to wallets or services.
ONE price remains under pressure
ONE traded near $0.00072 on August 18, roughly 42% below its pre-incident level around $0.00125, with it briefly approaching $0.00060 during the heaviest selling.
Source: TradingView
ONE was already trending lower before the attack. However, the latest fall accelerated as details of the unauthorized mint emerged and Harmony moved towards a rollback. Trading also increased when the price dropped, showing that the sell-off attracted more market activity.
Final Summary
Harmony plans to erase approximately 3.01 trillion forged ONE by returning the network to its state before the attack.
The rollback would also remove legitimate transactions completed after the recovery point, creating additional work for users and services.