Drift Protocol suffers losses of about $280 million from a new type of attack, and management control is taken over

Gate News, April 2, Drift Protocol issued a statement saying that earlier, a malicious actor used a new type of attack involving durable nonces to gain unauthorized access, quickly taking over administrative control of Drift’s Security Committee. The attack method is highly complex; the attacker spent weeks preparing, using durable-nonce accounts to pre-sign transactions in order to enable delayed execution. Current investigations show that this incident was not caused by a bug in the Drift program or smart contract, and there is no evidence indicating that the mnemonic phrase was stolen. The attacker is suspected to have obtained access through unauthorized or forged transaction approvals, which may involve social engineering tactics. The attack resulted in approximately $280 million in protocol funds being withdrawn. All lending funds, vault deposits, and trading funds were affected. DSOL (the portion not deposited in Drift, including assets staked to Drift validators) and insurance fund assets are not affected; the latter is currently being withdrawn for protection. As a precautionary measure, Drift has frozen all remaining protocol functions and updated the multisig to remove the compromised wallet.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

Justin Sun Skips Trump Memecoin Event Amid Legal Dispute with World Liberty

Gate News message, April 26 — Justin Sun, one of the largest investors in the TRUMP token, notably did not attend a memecoin-themed event hosted by US President Donald Trump at Mar-a-Lago in Florida this year, marking a significant shift from his prominent appearance at a similar event last year. T

GateNews5h ago

Aave, Kelp, LayerZero Propose Releasing $71M in Frozen ETH to Support rsETH Recovery

Gate News message, April 26 — A coalition of major DeFi protocols led by Aave Labs, joined by Kelp DAO, LayerZero, EtherFi, and Compound, filed a Constitutional AIP on Saturday morning asking the Arbitrum DAO to release approximately $71 million in frozen ETH to support DeFi United, a cross-protocol

GateNews10h ago

Litecoin Undergoes Deep Chain Reorganization After MWEB Privacy Layer Zero-Day Exploit

Gate News message, April 26 — Litecoin experienced a deep chain reorganization on Saturday (April 26) after attackers exploited a zero-day vulnerability in its MimbleWimble Extension Block (MWEB) privacy layer, according to the Litecoin Foundation. The reorg spanned blocks 3,095,930 to 3,095,943 and

GateNews12h ago

Aave, Kelp, LayerZero seek Arbitrum release of $71M frozen ETH

Aave Labs, Kelp DAO, LayerZero, EtherFi, and Compound filed a Constitutional AIP on the Arbitrum forum Saturday morning requesting the network's DAO release approximately $71 million in frozen ETH to support rsETH recovery efforts, according to The Block. The proposal seeks release of 30,765.67 ETH

CryptoFrontier04-25 07:07

Gate Daily Report (April 24): US Treasury sanctions Cambodian crypto “pig butchering” scams; Tether mints an additional 1 billion USDT

Bitcoin (BTC) rebound momentum is weakening, with a temporary quote around $78,030 as of April 24. The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) sanctioned a Cambodian politician linked to a crypto “pig butchering” scam center. Tether issued another 1 billion USDT on the Ethereum network; over the past 5 days, it has issued a total of 3 billion USDT on the Ethereum network.

MarketWhisper04-24 01:55

Gate Daily Report (April 23): The U.S. government runs Bitcoin nodes; Tesla’s BTC holdings remain unchanged

Bitcoin (BTC) continues the rebound trend from the beginning of the week, trading at around $78,230 as of April 23. U.S. Pacific Command Commander Samuel Paparo said in a congressional hearing that the U.S. government operates Bitcoin nodes to conduct cybersecurity tests, but does not participate in mining. Tesla’s first-quarter Bitcoin holdings remain unchanged, and its digital-asset impairment loss is $173 million.

MarketWhisper04-23 01:39
Comment
0/400
No comments