Lessons in bloodshed at $285M: The Solana Foundation launches a dual security system STRIDE and SIRN1 April 1, 2026, the decentralized derivative protocol Drift Protocol in the Solana ecosystem was subjected to one of the most complex attacks in DeFi history: stolen assets amounted to approximately $285 million. However, this was not a single simple exploitation of a vulnerability in the smart contract. The attackers began preparing the attack in fall 2025: posing as a legitimate quantum trading company, they approached the Drift team, invested over $1 million of their own funds to gain trust, and over the next six months conducted a series of offline meetings and professional discussions. Ultimately, the breach could have been carried out in two ways: one participant copied a malicious code repository exploiting a known vulnerability in VSCode, and another participant downloaded the TestFlight App disguised as a wallet product.

DRIFT-2,25%
View Original
post-image
post-image
post-image
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin