BounceBit, a Bitcoin restaking platform, announced August 21 that it will shut down its Evmos-based L1 blockchain and migrate users to BNB Chain following a 286.5 million BB token exploit discovered August 19-20.

The exploit, valued at approximately $3 million, exploited an authorization flaw in the chain's code. BounceBit said it will recover user funds using a pre-attack snapshot and reissue tokens on BNB Chain, excluding the attacker's stolen tokens from the new supply.

BounceBit launched its L1 in 2024 as a restaking layer for Bitcoin, allowing users to stake BTC through wrapped representations and earn yield. The chain attracted deposits from BTC holders seeking returns in a period when Bitcoin's own protocol offered limited yield mechanisms. BNB Chain, the Binance-operated blockchain, hosts the protocol's existing BounceBit EVM-compatible environment, making it the migration target.

The authorization flaw that enabled the exploit represents a critical failure in the chain's validation logic. Restaking platforms sit at the intersection of custody and smart contract risk; BounceBit's vulnerability touched both layers. The platform had not disclosed prior security audits of the authorization mechanism before launch.

MSB Intel

L1 shutdowns over security flaws remain uncommon. Most defunct chains either fail to gain user traction or collapse under market pressure rather than pursue coordinated wind-downs. BounceBit's decision to halt the chain and preserve user claims via snapshot recovery contrasts with scenarios where token holders absorb losses entirely.

Migration to BNB Chain consolidates BounceBit's operations onto an established infrastructure with larger validator networks and institutional monitoring. The move trades sovereignty for security; BounceBit will no longer operate its own consensus layer. BNB Chain hosts thousands of other protocols and processes higher transaction throughput than BounceBit's L1 achieved before shutdown.

The BB token reissuance excludes attacker holdings, a mechanism feasible only because BounceBit controls the full token supply during migration. This approach differs from scenarios where exploited platforms must honor attacker gains or face legal claims. The stolen amount represents approximately 0.3 percent of the platform's pre-exploit BB supply, leaving the majority of user tokens unaffected by the exploit itself but exposed to migration execution risk.

The document to watch is the snapshot BounceBit publishes to verify which addresses qualify for BNB Chain reissuance and whether the attacker's wallet is correctly flagged and excluded from recovery.