The process of the KelpDAO attack analyzed by Slow Fog
According to SlowMist founder Yu Xian (@evilcos), the core of the KelpDAO theft incident, which involved approximately $290 million, was a targeted poisoning attack on the downstream RPC infrastructure of LayerZero DVN (Decentralized Validator Network).
The specific attack steps were: first, obtaining the list of RPC nodes used by LayerZero DVN, then breaching two independent clusters and replacing the op-geth binary file; using selective deception techniques to return forged malicious payloads only to DVN while returning real data to other IPs; simultaneously launching DDoS attacks on the unbreached RPC nodes, forcing DVN to failover to the poisoned nodes, completing the forged message verification, and then the malicious binary self-destructing and clearing logs. This ultimately led to LayerZero DVN issuing validations for "transactions that never occurred."
You may also like

Morning News | Michael Saylor stated that this week he bought bonds instead of Bitcoin; StablR was attacked and lost about 2.8 million dollars; the U.S. Congress is pushing the Bitcoin Reserve Act again

SuperEx's Mars exploration dream: Digital currency is the key to unlocking economic exchanges in the interstellar era

Key Takeaways: Full Text of Google Chief Scientist Shanahan's Speech

Agentic Design Patterns: A book that made me rethink "What exactly is an Agent?"

The richest chairman of the Federal Reserve in 112 years has arrived: Kevin Warsh is rewriting the rules

Vitalik talks about the future of the Ethereum Foundation: a smaller, more distinctive, yet more enduring ship

New Types of Information Laundering in Prediction Markets: How Secrets Integrate into Investment Signals

Vitalik emphasized in a post that Ethereum must be "amazing," but the foundation is not the center

DeFi has reached its most dangerous moment: the real vulnerabilities are not in the code

WEEX Bitcoin Pizza Day: Zero Fees, BTC Cashback & 150,000 USDT to Honor Crypto History

a16z: 7 Images to Understand How Tokenization Changes the Nature of Assets

The secret to Hyperliquid's success dismantled from the five-layer financial stack

After Futu Securities was banned, will buying stocks on-chain be the new remedy?
Why Crypto Traders Are Watching Gold and Nasdaq Again in 2026

Why have foreign exchange stablecoins never taken off?

AIDC, computing power leasing, and cloud: The "three-part thesis" of AI transformation in cryptocurrency mining farms

Futu has had all its illegal gains confiscated, reminding cryptocurrency exchanges


