LayerZero Attributes $290 Million Kelp Exploit to Poor Security Setup and North Korea's Lazarus Group
LayerZero has attributed the $290 million Kelp DAO exploit to Kelp's own security configuration, stating that the protocol's single-verifier setup, despite previous warnings, allowed the attack to occur. The attack, attributed to North Korea's Lazarus Group, involved compromising two remote procedure call (RPC) nodes that LayerZero's verifier relied on, and then conducting a distributed denial-of…
April 20, 2026, 5:01 a.m.