A layer-1 blockchain froze for 4 hours to stop a $4.9 million hack, then claimed it was just an upgrade
Injective, a layer-1 blockchain network, produced no new block for nearly four hours during an emergency response to an exploit that researchers traced into core modules. On Sept.1, the foundation said the blockchain was...
Archive context
Older archive item. Useful for background and entity history, but not a fresh market-moving signal.
Injective, a layer-1 blockchain network, produced no new block for nearly four hours during an emergency response to an exploit that researchers traced into core modules.
On Sept.1, the foundation said the blockchain was “upgraded, not halted” and that its consensus, native INJ, and staked assets were never compromised. It described the attack as affecting a small number of ecosystem applications using binary-options markets.
On-chain researcher Earthling Paddy challenged both characterizations, while crediting Injective for containing the exploit and keeping staked funds safe.
The ledger shows block 181027005 at 16:09:59 UTC on Aug. 31 before block production stopped for roughly four hours. Paddy said one earlier block alone took about 37 minutes, while infrastructure provider QuickNode also reported a stalled block height during the incident.
Injective said the accelerated upgrade took longer than expected as validators and ecosystem infrastructure moved to the emergency release. Some validators were temporarily jailed after missing the required upgrade window, while exchanges including Coinbase and Coins.ph temporarily restricted transfers.
Data from CryptoSlate shows INJ trading around $4.80 as of press time, down roughly 3% over the previous 24 hours.
Researcher disputes where the vulnerability satPaddy also questioned Injective’s description of the exploit as isolated to ecosystem applications.
He said the attack used messages from Injective’s native exchange and insurance modules, while the emergency v1.20.3-safeharbor.1 release patched the chain’s core code by adding an insurance-fund denomination check and disabling binary-options settlement on mainnet.
That would place the vulnerable logic inside a protocol module used by applications rather than solely within application code.
Related Reading MANTRA Chain is back online, but silent code changes spark developer concernsInjective has not yet published a full technical postmortem. Its statement said the relevant attack vector had been contained and patched and that the foundation was adding stronger invariants, real-time monitoring, and other safeguards.
Researchers estimate about $4.9 million was bridged to Ethereum during the exploit. Paddy said roughly that amount remained in the attacker-linked wallet and had not moved.
The final loss allocation remains unclear. Injective has not disclosed how much was ultimately drained, which party absorbed any shortfall, or whether an ecosystem pool that now appears replenished was restored by the foundation, developers, or another participant.
Instead, the blockchain has maintained that its users weren't affected. In an X post, Injective CEO Eric Chen said:
“Injective users aren’t affected and we’ve been helping the team on recovery. Always sad to see exploits happening in the ecosystem but we’re glad that the incident was contained before further harm was done.”
Nonetheless, the incident therefore leaves two separate findings intact. Injective’s consensus and staked INJ were not compromised, while its emergency response still coincided with a multi-hour interruption in block production and required a core-code patch.
The post A layer-1 blockchain froze for 4 hours to stop a $4.9 million hack, then claimed it was just an upgrade appeared first on CryptoSlate.
Why this matters
Ethereum is showing up inside the Security Incidents theme, so this story is worth tracking for follow-through rather than treating it as a one-off headline.
Original source
Read on CryptoSlateRelated market context
Coinbase targets stock futures but CFTC standstill blocks launch
Coinbase Derivatives has filed a proposed framework for perpetual futures tied to individual US stocks and exchange-traded funds,...
Solana flips Ethereum in fees, while ETH holds the burn lead
Solana generated more user fees than Ethereum in data provider DefiLlama's Sept. 22 dashboard snapshot, while Ethereum burned more...
Coinbase Tracks $1.1M Crypto Trail as Microsoft Takes Down 175 EvilTokens Domains
Key Takeaways: Between October 2025 and June 2026, approximately $1.1 million was traced from several Tron addresses belonging to...
Why Cloudflare Needs More Blockchain Throughput Than All of Crypto Combined
Non-human traffic now dominates the majority of all web traffic for the first time ever, according to Cloudflare’s analysis, and t...
Rogue iPhone app escapes iOS sandbox to hijack $580,000 in USDT
Fomopeek, a malicious iPhone app distributed through Apple’s App Store, has been linked to nearly $580,000 in stolen USDT. Blockch...
Coinbase pushes beyond crypto with retail access to $2.2 billion Oura IPO
Coinbase has expanded its push beyond crypto by giving eligible US customers access to IPO shares at the offer price before public...