#Gate廣場五月交易分享 【LayerZero Labs Apologizes for Security Incident and Discloses Remediation Measures】



According to LayerZero's official tweet, LayerZero Labs publicly apologized for the security incident and communication shortcomings over the past three weeks. Their internal RPC was attacked by North Korean hacker group Lazarus Group, leading to contamination of DVN data sources, while external RPC providers were simultaneously targeted by DDoS attacks. The incident affected a single application (0.14%) and involved assets accounting for approximately 0.36% of total assets. The protocol itself was not affected, and $9 billion in assets continued to transfer across chains normally after the event. LayerZero Labs acknowledged that allowing a 1/1 single node configuration posed a single point of failure risk and disclosed a historical issue from over three and a half years ago where multi-signature signers misused hardware wallets. Remediation measures include stopping the 1/1 DVN configuration service, migrating to multi-signature setups, developing a second DVN client, launching the OneSig tool, and deploying the Console management platform.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin