In response to the recent $270 million Drift Protocol exploit, the Solana Foundation has announced a wide-ranging security initiative. The program, unveiled just five days after the attack, is designed to bolster the security of Solana's decentralized finance (DeFi) ecosystem. Central to the initiative is Stride, a rigorous evaluation program led by Asymmetric Research that will assess Solana DeFi protocols against eight key security pillars, with findings to be made publicly available. Additionally, the Solana Incident Response Network (SIRN) has been established, comprising a membership-based group of security firms and researchers focused on providing real-time crisis response.

While these measures address some of the vulnerabilities exposed by the Drift hack, they do not directly address the human element that was exploited in the attack. The perpetrators, a North Korean state-affiliated group, spent six months building relationships with Drift contributors, ultimately compromising their devices through a malicious code repository and a fake TestFlight app.

Under the Stride program, protocols with over $10 million in total value locked (TVL) that pass the evaluation will be eligible for ongoing operational security and active threat monitoring, funded by Solana Foundation grants. Protocols with over $100 million in TVL will also be eligible for formal verification, a mathematical method that checks every possible execution path in a smart contract to guarantee correctness. The SIRN network, which includes founding members such as OtterSec, Neodyme, Squads, and ZeroShadow, will be available to all Solana protocols, with priority given to those with the highest TVL.

Although the Stride program's formal verification would not have prevented the North Korean attack, which exploited the gap between on-chain correctness and off-chain human trust, the SIRN network could have potentially improved the response to the incident. The Solana Foundation has emphasized that these programs do not absolve protocols of their underlying responsibility for security, a point underscored by the fact that individual contributor devices were the entry point for the nation-state attack. Solana already offers several free security tools for builders, including Hypernative for threat detection, Range Security for real-time monitoring, and Neodyme's Riverguard for attack simulation.