LayerZero has shifted responsibility for a $290 million theft from Kelp DAO to the protocol's own security configuration. The attack is attributed to North Korea's Lazarus Group, which utilized a sophisticated infrastructure-level exploit.
- Kelp DAO lost $290 million due to a 1-of-1 verifier configuration
- Attackers compromised RPC nodes and used DDoS to force failover
- Lazarus Group linked to both Kelp and Drift Protocol exploits
- LayerZero confirms no contagion to other applications using multi-verifier setups
- LayerZero will now ban 1-of-1 configurations across its protocol
Sign up free to read the full analysis
Create a free account to unlock full AI-curated market articles, personalized alerts, and more.