The Liquid Network released a security incident report stating that on September 6, a vulnerability in its underlying open-source software, Elements, was exploited, allowing an attacker to mint approximately 4,000 LBTC without BTC reserve backing (valued at around $320 million), which were then converted to BTC and withdrawn via SideSwap.
The incident caused Liquid's reserves to drop from approximately 4,205 BTC to 197 BTC. The report indicated that the vulnerability stemmed from a cache validation issue in Elements, not a private key compromise; other assets, such as USDT, were unaffected.
Blockstream deployed a patch to the cross-chain nodes on September 7; the vulnerability has been fixed, but the network remains paused. The attacker claims to be a white-hat security researcher.
Currently, 3,400 BTC (approximately $272 million) have been returned to the pegged wallet, while approximately 598.5 BTC (around $47.88 million) remain unrecovered, and Blockstream is currently negotiating with the parties involved.
Blockstream expects to release an emergency version of Elements (v23.3.4) within 48 hours and proceed with network recovery.
Previously, on September 7, it announced that the attacker withdrew approximately 4,000 bitcoins from the Liquid Federation wallet.

