Kelp: Theft Caused by Breach of LayerZero's RPC Nodes

On April 21, Kelp DAO officially reported on X regarding the theft incident, stating that the cause of the theft was the breach of two RPC nodes hosted by LayerZero, while a third RPC node suffered a DDoS attack. This was an attack targeting LayerZero’s infrastructure, and Kelp’s own system was not involved in the construction or operation of that infrastructure. The 1/1 DVN configuration is the scheme documented in LayerZero’s documentation and is the default setting for all new OFT deployments. Kelp has been operating on LayerZero’s infrastructure since January 2024 and has maintained open communication with the LayerZero team. During Kelp’s expansion to Layer2, the DVN configuration issue was discussed, and the default configuration was explicitly confirmed to be appropriate at that time. Kelp’s current top priority is to safeguard user interests and prevent risks from spreading within the DeFi ecosystem. The team is collaborating with various parties within the ecosystem to analyze the impact, seek support, and explore all possible mitigation solutions.

ZRO5.14%
DEFI-9.8%
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin