PANews reported on June 1st that, according to The Block, the Sui Foundation released an incident analysis report on the three recent mainnet outages, attributing the three outages that occurred last Thursday and Friday to two separate vulnerabilities introduced in the v1.72 version upgrade. The first outage lasted approximately six and a half hours, while the second and third occurred on Friday morning and afternoon, respectively. The first two outages stemmed from a flaw in the transaction fee deduction method exposed by the "address balance" feature introduced in v1.72. When a transaction was canceled due to insufficient funds, the network would still deduct those funds, resulting in a negative balance that caused the validator node reconciliation process to crash.
The foundation acknowledged that the temporary fix pushed out urgently on Thursday carried a known risk of disruption, which the team accepted to quickly restore on-chain services, resulting in another network outage on Friday morning. The third outage was triggered by another undisclosed random state vulnerability, occurring when validator nodes restarted to install the patch. Sui stated that user funds were never at risk, both vulnerabilities have been fixed, and a mechanism has been established to forcibly terminate stalled epochs. The foundation also stated that AI agents with access to its production systems significantly accelerated the diagnostic process.




