Advertisement

Hacks

OpenZeppelin Pushes Back After Ex-CTO Declares All of DeFi Unsafe
Hacks

OpenZeppelin Pushes Back After Ex-CTO Declares All of DeFi Unsafe

The smart contract security firm distanced itself from Manuel Aráoz's warning that AI coding agents have made DeFi impossible to defend, calling the threat real but manageable.
Hacker Mints 5.4 Trillion Tokens in StakeDAO Exploit, Nets $91K
Hacks

Hacker Mints 5.4 Trillion Tokens in StakeDAO Exploit, Nets $91K

A compromised private key let an attacker forge a cross-chain message on Arbitrum, triggering cascading warnings across Curve Finance and Beefy Finance.
StablR Stablecoins Exploited, EURR and USDR Depeg After Minting Key Compromise
Hacks

StablR Stablecoins Exploited, EURR and USDR Depeg After Minting Key Compromise

Estimates of losses range from $2.8 million to $10 million.
LayerZero's Incident Report Says Kelp Downgraded From 2-of-2 to 1-of-1 DVN Before $292M Exploit
Hacks

LayerZero's Incident Report Says Kelp Downgraded From 2-of-2 to 1-of-1 DVN Before $292M Exploit

Detailed May 18 post-mortem traces a six-week breach to DPRK group TraderTraitor and locks in a new 3-of-3 DVN protocol default. Kelp says LayerZero approved the configuration and has migrated rsETH bridging to Chainlink.
$11.58M Drained in Ongoing Exploit on Verus-Ethereum Bridge
Hacks

$11.58M Drained in Ongoing Exploit on Verus-Ethereum Bridge

An active exploit on the Verus-Ethereum Bridge has resulted in $11.58 million in losses, according to security firm Blockaid.
Kelp DAO Burns Exploiter's rsETH on Arbitrum, Plans Two-Week Withdrawal Reopening: Kelp DAO
Hacks

Kelp DAO Burns Exploiter's rsETH on Arbitrum, Plans Two-Week Withdrawal Reopening: Kelp DAO

Kelp DAO has burned the attacker's rsETH tokens and outlined a recovery plan to refill liquidity through Aave's Recovery Guardian multisig before resuming withdrawals.
Wasabi Loses $5M+ in Latest DeFi Exploit
Hacks

Wasabi Loses $5M+ in Latest DeFi Exploit

Wasabi Protocol is the latest victim in what appears to be a record bad month for DeFi hacks.
Aave Models $124M to $230M in Bad Debt From Kelp Exploit
Hacks

Aave Models $124M to $230M in Bad Debt From Kelp Exploit

In a detailed incident report, Aave service providers quantified the protocol's exposure for the first time and outlined two scenarios depending on how Kelp DAO allocates the loss. LayerZero and Kelp continue to blame each other for the compromised bridge configuration.
LayerZero Post Mortem Shows Lazarus Group Stole $290M From KelpDAO via RPC Node Compromise
Hacks

LayerZero Post Mortem Shows Lazarus Group Stole $290M From KelpDAO via RPC Node Compromise

North Korea's Lazarus Group exploited a single-verifier LayerZero setup to drain $290M in rsETH on April 18 by compromising RPC infrastructure and poisoning the bridge's data feeds.
Class Action Lawsuit Filed Against Circle Over Drift Protocol $280 Million Hack: Gibbs Mura Law Group
Hacks

Class Action Lawsuit Filed Against Circle Over Drift Protocol $280 Million Hack: Gibbs Mura Law Group

Law firm charges Circle Internet Financial with failing to freeze $230 million in stolen USDC after the April 1 Drift Protocol exploit, allegedly linked to North Korean attackers.