Harmony said attackers exploited a cross-shard receipt verification flaw that let already processed receipts be executed again, minting ONE in empty blocks. Its latest chain reconstruction shows about 3.01 trillion ONE were issued through six forged cross-shard transactions to four attacker wallets, while the project also confirmed an initial 4 billion ONE was created in two empty blocks, split between 1 billion and 3 billion, with 2.8 billion later moved to other attacker addresses. Harmony said it has fixed the cross-shard receipt verification and pre-staking committee quorum vulnerabilities, deployed Mainnet v2026.1.1, suspended bridging and is working with validators, exchanges and LayerZero to freeze related funds while preparing a rollback to block 92,730,034; Shard 0 is paused at 92,753,555 and the official RPC may return 502 errors. The update revises a fast-moving incident that had previously been described with estimates ranging from 4 billion to more than 30 trillion ONE.