#rsETHAttackUpdate **rsETHAttackUpdate** refers to ongoing discussions and developments following the April 18, 2026 exploit of Kelp DAO's rsETH (restaked ETH) bridge.



An attacker exploited a single-verifier (1-of-1 DVN) LayerZero bridge configuration, spoofing a cross-chain message to mint ~116,500 unbacked rsETH (~$292–293M). These tokens were used as collateral on Aave and other DeFi protocols to borrow hundreds of millions in real assets (mainly ETH/WETH), creating significant bad debt and triggering a liquidity crunch with high utilization and frozen markets.

Kelp paused rsETH contracts across chains for investigation. DeFi protocols (including Aave, EtherFi, Mantle) coordinated responses, with pledges of ~43,500 ETH (~$101M) to help restore reserves. Blame has been exchanged between Kelp (citing LayerZero RPC/DDoS issues) and LayerZero (pointing to Kelp's insecure setup). Some reports link it to North Korea's Lazarus Group.

The incident highlights bridge security risks in DeFi and led to rapid market reactions, including Aave TVL drops and user withdrawals. Recovery efforts continue, with parts of the liquidity shock easing. Hashtag #rsETHAttackUpdate tracks real-time updates on X and crypto platforms.
ETH-0,27%
ZRO-2,29%
AAVE0,9%
MNT1,04%
post-image
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 1
  • Repost
  • Share
Comment
Add a comment
Add a comment
ybaser
· 10h ago
2026 GOGOGO 👊
Reply0
  • Pin