LayerZero Attributes $290 Million Kelp Exploit to North Korea's Lazarus Group, Citing Kelp's Security Setup
LayerZero has attributed the $290 million Kelp DAO exploit to Kelp's own security configuration, stating that the protocol's single-verifier setup, despite previous warnings, made it vulnerable to attack. The attackers, believed to be North Korea's Lazarus Group, compromised two RPC nodes that LayerZero's verifier relied on, and then launched a DDoS attack on other nodes to force failover to the …
April 20, 2026, 5:01 a.m.