Session key leakage = handing over the front door key, what about basic security awareness?

View Original
MeNews
LayerZero Releases KelpDAO Attack Report: North Korean Hackers Alleged Involvement and Security Strategy Adjustments
ME News report: On May 20 (UTC+8), LayerZero Labs released its latest incident report stating that on April 18, 2026, the KelpDAO rsETH cross-chain bridge built on its cross-chain communication protocol was attacked, and approximately 116,500 rsETH (about $292 million) was stolen. Multiple security agencies, including Mandiant and CrowdStrike, as well as independent researchers, attributed the attack to the North Korea-linked hacker group TraderTraitor (UNC4899). The report shows that the attack began on March 6, 2026, when the attackers used social engineering to compromise the LayerZero developer account, obtain session keys, and infiltrate.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned