
AiCoin|5月 09, 2026 00:17
[LayerZero Labs Apologizes for Security Incident and Discloses Remedial Measures]
According to an official tweet from LayerZero, LayerZero Labs has issued a public apology for the security incident and lack of communication over the past three weeks. Its internal RPC was attacked by the North Korean hacker group Lazarus Group, resulting in the contamination of DVN data sources, while external RPC providers were simultaneously subjected to DDoS attacks. The incident affected a single application (accounting for 0.14%) and involved assets amounting to approximately 0.36% of total assets. The protocol itself was not impacted, and $9 billion in assets continued to flow across chains normally after the incident.
LayerZero Labs acknowledged the risk of single points of failure due to allowing 1/1 single-node configurations and disclosed a historical issue from three and a half years ago involving the misuse of a hardware wallet by a multi-signature signer.
Remedial measures include discontinuing 1/1 DVN configuration services, migrating to multi-signature configurations, developing a second DVN client, launching the OneSig tool, and rolling out the Console management platform.
Timeline