Kelp DAO Disputes LayerZero's Claims Regarding $290 Million Exploit

A recent cryptocurrency exploit has sparked a heated debate between Kelp DAO and LayerZero, with each party blaming the other for the massive $290 million loss. The incident occurred when attackers drained 116,500 rsETH, worth approximately $290 million, from Kelp's LayerZero-powered bridge by compromising the servers that LayerZero's verifier relied on. Kelp DAO claims that the compromised verifier was part of LayerZero's own infrastructure, not a third-party verifier, and that the setup was based on LayerZero's default configuration. According to Kelp, the configuration used was not a fringe choice, but rather the default setup recommended by LayerZero. The company points out that 40% of protocols on LayerZero are currently using the same configuration. Security researchers have also questioned LayerZero's claims, stating that the company's documentation and defaults suggest a single-verifier setup. The incident has led to a wider discussion about the security risks associated with cryptocurrency and the need for greater transparency and accountability in the industry. As the situation continues to unfold, both Kelp DAO and LayerZero are working to address the issue and prevent similar incidents in the future.