
PANews April 20 news, according to CoinDesk, Kelp DAO attributes the recent approximately 290 million rsETH cross-chain bridge attack to LayerZero's default "1/1” single validation configuration and its own infrastructure being breached. The attackers compromised two servers used by LayerZero to validate cross-chain transactions and initiated a DDoS attack on a backup server, redirecting DVN traffic to the controlled nodes, thereby transferring approximately 116,500 rsETH out from Kelp's LayerZero bridge. Kelp stated that it has been in communication with LayerZero since July 2024, but has not received a clear request to change the DVN configuration, and that LayerZero's documentation and GitHub examples all use 1/1 as the default, with about 40% of connected protocols using the same structure. Kelp emphasizes that the core restaking contract was unaffected and that this attack was limited to the bridging layer.
免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。