Ethereum Core Developer Insights: Why Ethereum Rollback is No Longer Feasible Today?
Original Article Title: "Tim Beiko Explains: Why Ethereum Cannot Roll Back After Bybit Incident?"
Original Article Author: Tim Beiko
Original Article Translation: GaryMa, Blockchain Wu Shuo
Ethereum core developer Tim Beiko published a lengthy article on February 22, 2025, explaining why Ethereum is unable to "roll back" to reverse a hacker attack, such as the recent Bybit hack. He provided background on Bitcoin and TheDAO historical events and discussed why a rollback is not feasible in today's Ethereum ecosystem. The following is a compilation and translation of the original article and corresponding comment replies by Wu Shuo:
Following the recent hack of Bybit yesterday, some individuals once again questioned why Ethereum cannot "roll back" the blockchain to reverse a hacker attack.
While experienced individuals in the ecosystem almost unanimously believe this is unfeasible, it is worth explaining why this seemingly reasonable proposal is technically infeasible, especially to those less knowledgeable. If you are one of them, here is a simple explanation of why this is impossible.
First, Let's Understand the Background of Rollbacks:
The concept of blockchain "rollback" originated from an early event in the Bitcoin blockchain. In 2010, just under two years after the launch of Bitcoin, a vulnerability in the client software led to the generation of 184 billion (yes, billion) bitcoins in block 74638.
To fix this issue, Satoshi released a software patch for the Bitcoin client that invalidated these transactions. This effectively "rolled back" the chain that continued to mine during this time to block 74637. In less than a day, the new chain accumulated enough proof of work to become the main chain, and all rolled-back user transactions were included in the new chain. It is important to note that at that time, Bitcoin's mining difficulty was 100 billion times lower than it is now, and the BTC/USD price was approximately $0.07.
In short, this scenario was unique because there was a clear protocol bug that led to the problematic transactions, which were easily identifiable due to their immense quantity. Additionally, Bitcoin's adoption at the time was limited, making it easy to distribute a new client version and swiftly mine the new chain segment.
Ethereum and TheDAO:
Early in Ethereum's history, there was a seemingly similar crisis that often confuses people about the practicality of a rollback. In 2016, a popular Ethereum application called TheDAO controlled around 15% of all ETH at the time. Unfortunately, a hacker discovered a vulnerability in the app's code that allowed them to steal all of these funds. This was fundamentally different from Bitcoin's case, as the Ethereum protocol itself was functioning normally, and it was the application built on top of Ethereum that had the issue.
Fortunately, TheDAO's developers implemented a security measure, which required a one-month freeze period before any withdrawals from the application could be completed. This provided a unique opportunity to address the vulnerability: the application's code could be changed to prevent the funds from ending up with the hacker.
Since the application itself could not do this, Ethereum protocol developers had to make changes directly in the blockchain's history. This was referred to as an "extraordinary state change" because the application's "state" was altered through manual updates to the database, rather than through valid Ethereum transactions.
Comparatively rough to the Bitcoin vulnerability mentioned above, it was akin to setting the balance of an address receiving 184 billion BTC to 0, instead of re-mining to exclude those transactions.
This upgrade sparked controversy, leading to an actual split in the Ethereum community. Some miners refused to run the software patch and continued mining on the chain where the hack occurred, which is now known as Ethereum Classic. The chain we now refer to as Ethereum is the one that implemented this software upgrade.
Similarly, this situation was unique. The hacked funds in TheDAO were actually frozen for a month, giving the community time to coordinate the software upgrade. The frozen funds had another major advantage: the hack did not "spread." If the hacker could move funds freely, "freezing" the funds would have been an endless cat-and-mouse game because the protocol is open-source, and any potential changes that could freeze the funds would have to be disclosed to the hacker, giving them enough time to move the funds elsewhere.
This leads us to the Bybit incident.
Why We Can't Roll Back Ethereum
Earlier this week, Bybit exchange was hacked for 401,346 ETH (approximately $1.4 billion). The theft was perpetrated by the custodian of the funds signing deceptive transactions through a compromised multi-signature interface.
The root cause of this hack goes a level higher than TheDAO and the Bitcoin overflow bug. Neither the Ethereum protocol nor the underlying multi-signature application used by Bybit had issues. Instead, a compromised interface made transactions appear to do one thing while actually doing another.
From the Ethereum protocol's perspective, there was nothing to distinguish this transaction from other legitimate transactions on the network. There was no breach of protocol rules to isolate the hacked funds, as could be done to patch the issue in the Bitcoin vulnerability.
Furthermore, the funds were immediately available for the hacker to use. In contrast to TheDAO situation, where the community had a month to deploy interventions, here the hacker immediately began moving funds on-chain.
Even if we could solve the aforementioned cat-and-mouse game, the Ethereum ecosystem today is vastly different from 2016. DeFi and cross-chain bridges to other networks mean any stolen funds can easily be laundered within the application network. For example, stolen funds could be exchanged on a decentralized exchange, the resulting tokens used as collateral in DeFi protocols, borrowed assets then bridged to a completely different chain.
This high level of interconnectivity means any non-standard state change, even if socially acceptable, would lead to almost impossible-to-manage cascading effects. A full "rollback," even with only recent portions of the chain's history invalidated, would be worse. Any settled transactions, many of which have off-chain impacts (such as exchange sales, RWA redemptions, etc.), would be reverted but their off-chain portions cannot.
Therefore, the conclusion is, while Bitcoin was able to "rollback" its blockchain fifteen years ago, today, Ethereum's highly interconnected nature and settlement of both on-chain and off-chain economic transactions make this unfeasible in the present day.
Technically, a non-standard state change could still occur on Ethereum in cases where funds are frozen and sequestered. The last time such a change was proposed was in 2018, addressing a vulnerability in the Parity multi-signature wallet where around 500,000 ETH were frozen (see EIP-999), but due to the controversy sparked by TheDAO incident, the community strongly opposed it.
Comment: At this stage, is it still potentially possible to carry out a social hard fork? Zero out the Lazarus funds (as they are easily traceable) and carry out a non-standard state change to send the funds back to the Bybit address?
Reply: Technically not possible. If we were to announce a hard fork, what if they move the funds to another address one block before it goes into effect? If the hacker moves the funds before the fork, the fork would be useless. Additionally, the attacker could cause a network-wide freeze through malicious interactions (such as sending small amounts of funds to all addresses), akin to a denial-of-service (DoS) attack.
Comment: If TheDAO hack were to happen now (funds frozen for a month, potential community coordination), do you think Ethereum governance would once again accept a non-standard state change? Or has the protocol culture completely shifted towards strict immutability, even in extreme scenarios?
Reply: It's hard to say! TheDAO had control of around 15% of all ETH (30 times the current Bybit hack amount), but the outcome was more controversial than anticipated. I believe this is one of the primary reasons the Parity hack (around 500,000 ETH, funds frozen and hence recoverable) was never fixed via a hard fork. To provide some perspective, TheDAO held approximately the equivalent of all WETH today plus all L2 collateralized value (not just ETH on L2, but all L2 tokens) in staked ETH. That is a scale of intervention the ecosystem was far from mature enough for at the time.
Comment: The same logic can also be applied to more centralized chains, such as Solana, right? So, for hackers, both Solana and Ethereum are decentralized enough?
Reply: Exactly. Solana may be faster in implementing a hard fork than Ethereum, but you would still have many secondary effects and the risk of attackers moving funds before the hard fork takes effect.
Comment: If wETH were to be attacked, would you rollback?
Reply: I do not have the choice, but I think this is possibly the smallest scale at which this topic could be raised? My point is more that comments about DAOs often make it seem like "just an application" rather than a situation where WETH and all funds on Layer 2 are frozen in a way that is easy to recover from. (i.e., the key point is the scale of funds and ease of recovery)
You may also like

Japan’s Three Megabanks Plan Joint Stablecoin Issuance in Fiscal 2026
MUFG, SMBC, and Mizuho reportedly plan to jointly issue fiat-pegged stablecoins in fiscal 2026, signaling Japan’s growing push into bank-led digital payment infrastructure.

Humanity Discloses H Token Dual-Chain Attack Details, With Losses on Ethereum and BSC Exceeding $36 Million
Humanity said the H token attack across Ethereum and BSC caused more than $36 million in losses after leaked ProxyAdmin keys enabled malicious contract upgrades and token minting.

White House Discusses CLARITY Act With Law Enforcement Ahead of Senate Vote
The White House discussed the CLARITY Act with law enforcement ahead of a Senate vote, focusing on illicit finance risks and developer protections.

$75 billion in foreign capital has fled, and South Korean retail investors have absorbed it all using leverage

Bitcoin Trading Guide 2026: Strategies for Experienced Traders

What Is XAUT and PAXG? Why Tokenized Gold Is Booming in 2026

Cryptocurrency CEXs are flocking to sell US stocks, and traditional brokerages are facing an "uninvited guest."

Will the SpaceX IPO Hurt Bitcoin? Here's What Traders Are Watching

Foreign selling in the South Korean stock market accelerates, with cumulative net sales reportedly reaching $75 billion this year
On June 9, The Kobeissi Letter, citing Goldman Sachs data, reported that global investors are selling South Korean stocks at an unusually rapid pace. In the latest trading session, foreign investors sold about $801 million worth of Kospi constituent stocks again; total foreign outflows last week reached about $10 billion, and the market has been in net foreign selling on nearly every trading day over the past month. According to the data cited in the report, foreign investors have sold about $75 billion worth of South Korean stocks so far this year. Meanwhile, South Korean retail and institutional investors together recorded roughly $69 billion in net buying over the same period, suggesting that the market’s main buying support has come from domestic capital rather than returning overseas funds. The information currently disclosed still mainly comes from The Kobeissi Letter’s retelling and Goldman Sachs data summaries, while public details on the statistical period and the specific definition of “selling” remain relatively limited.

Fortune Warns of Strategy’s Financing Structure Risks as Bitcoin Premium Narrows
Fortune warned that Strategy’s Bitcoin treasury model faces growing financing risks as MSTR’s net asset premium narrows and preferred stock dividend pressure increases.

Ferrari Challenge Le Mans: Carl Moon to Dominate in WEEX Livery

Sahara AI Responds to SAHARA’s Sharp Drop: No Contract or Product Security Issues Found, Internal Investigation Underway
Sahara AI responded to SAHARA’s 60% price drop, saying no token contract or product security issues have been found and an internal investigation is underway.

WEEX Deposit/Withdrawal Dynamic Island: Your Asset Status, Always in Sight

Scaling Crypto Derivatives: The Digital Asset Infrastructure Behind High-Volume Trading
In the fast-moving digital asset ecosystem, derivatives platforms face an extreme architectural test. High-leverage futures markets demand more than just standard security—they require absolute operational precision, zero-latency matching engines, and ironclad structural scalability, all while navigating intense market volatility.
As global platforms scale to meet these demands, the industry is shifting away from rigid, monolithic setups toward a more agile, "decoupled" infrastructure philosophy.
The Blueprint for High-Volume Copy TradingFor elite global exchanges like WEEX (founded in 2018), this architectural choice becomes critical when scaling high-volume retail features like social copy trading. When thousands of users automatically mirror the real-time strategies of elite traders simultaneously, it triggers sudden, monumental spikes in concurrent transactional volume.
To prevent execution latency or settlement bottlenecks during these peak volatility events, a platform's primary engine must remain entirely dedicated to risk management, copy-trade synchronization, and order matching.
The Architectural Rule: New-generation platforms must separate front-end user execution engines from heavy backend infrastructural overhead to eliminate operational friction.
By separating these layers, platforms can maintain complete sovereignty over their trading environments and user experiences while strategically aligning with institutional-grade infrastructure ecosystems. This strategic framework allows modern exchanges to leverage advanced Digital Asset Custody infrastructure such as Cobo’s behind the scenes, ensuring that backend wallet management scales elastically alongside trading spikes.
Capitalizing on Market Momentum and 400× LeverageIn a derivatives arena where platforms offer up to 400× leverage on perpetual contracts, capital efficiency and market agility are core business metrics. To capture market momentum, an exchange needs the ability to rapidly expand its asset offerings, supporting everything from legacy crypto assets to sudden, trending altcoins across a massive library of trading pairs.
Adopting a flexible, scalable Wallet-as-a-Service (WaaS) solution such as Cobo’s could completely rewrite the development timeline for high-growth exchanges. Instead of spending months of engineering capital building out custom backend wallet architectures for every new blockchain network, platforms can deploy localized infrastructure in days.
This agility allows platforms to instantly scale their listings to over a thousand trading pairs without compromising security or delaying time-to-market. It mirrors the exact operational advantages seen during high-velocity market events, similar to how advanced wallet infrastructure empowers platforms during sudden asset surges; allowing exchanges to pass that speed and liquidity directly to their global user base.
A Mature Foundation for GrowthThe synergy between trusted infrastructure ecosystems and global trading platforms represents the natural evolution of a maturing crypto market. As WEEX continues to scale its global spot and derivatives offerings for over 6 million users, adopting robust backend paradigms proves that platforms no longer have to compromise between cutting-edge trading velocity and uncompromised structural security.

Morning Report | BitMine increased its holdings by 126,971 ETH last week; trader Eugene announced his exit from the crypto market

Wang Chuan: How can one not feel anxious after the neighbor Old Wang made thirty times profit by investing in storage stocks? (Seven) - A quarter-century cycle

Get Paid to Onboard? Try WEEX’s New Homepage with Rewards for Registration, Deposit & Trade

WEEX Custom Layout: Build Your Perfect Trading Workspace in Seconds
Japan’s Three Megabanks Plan Joint Stablecoin Issuance in Fiscal 2026
MUFG, SMBC, and Mizuho reportedly plan to jointly issue fiat-pegged stablecoins in fiscal 2026, signaling Japan’s growing push into bank-led digital payment infrastructure.
Humanity Discloses H Token Dual-Chain Attack Details, With Losses on Ethereum and BSC Exceeding $36 Million
Humanity said the H token attack across Ethereum and BSC caused more than $36 million in losses after leaked ProxyAdmin keys enabled malicious contract upgrades and token minting.
White House Discusses CLARITY Act With Law Enforcement Ahead of Senate Vote
The White House discussed the CLARITY Act with law enforcement ahead of a Senate vote, focusing on illicit finance risks and developer protections.


