Drift Protocol halts operations after suspected $285m exploit as funds move across wallets

ambcryptoDipublikasikan tanggal 2026-04-01Terakhir diperbarui pada 2026-04-01

Abstrak

Drift Protocol has halted deposits and withdrawals after confirming an active attack, with initial estimated losses around $285 million. Blockchain security firm PeckShield reported the losses span multiple assets, including $71.4M in USDC and $159.3M in JLP, among others. The attacker has begun moving funds across wallets, likely to obscure transaction trails. Unverified reports suggest the exploit may have involved a compromised administrative key, allowing manipulation of protocol parameters, though this remains unconfirmed. The incident reflects a trend of sophisticated DeFi attacks targeting governance and internal controls. An investigation is ongoing with no timeline for restoring operations.

Drift Protocol has halted deposits and withdrawals after confirming it is experiencing an active attack, with early estimates suggesting losses could reach hundreds of millions of dollars.

The protocol disclosed the incident in a public update on 1 April, stating that it is coordinating with security firms, bridges, and exchanges to contain the situation.

“This is not an April Fools joke,” the team said, adding that further updates will follow as the investigation develops.

Source: X

Estimated losses near $285m as breakdown emerges

Blockchain security firm PeckShield estimated the initial losses at around $285m, based on early on-chain analysis.

A breakdown shared by the firm suggests the exploit spans multiple assets, including:

  • $71.4m in USDC
  • $159.3m in JLP
  • Smaller amounts across USDT, WETH, wrapped BTC, and Solana-based assets
Source: X

While the figures remain preliminary, the scale places the incident among the larger DeFi exploits in recent months.

Funds begin moving across wallets

Separate on-chain tracking indicates that the attacker has already begun moving funds across multiple wallets. This is a pattern typically associated with attempts to obscure transaction trails.

Initial flows suggest assets are being split and transferred through different addresses, with some movements potentially involving cross-chain bridges. This behavior is consistent with past exploits where attackers rapidly redistribute funds to reduce traceability and recovery risk.

At the time of writing, there has been no confirmed recovery of funds.

Unverified reports point to potential exploit mechanism

Unconfirmed reports circulating on social media suggest the attacker may have gained access to a privileged administrative key, allowing them to modify protocol parameters.

According to these accounts, the attacker allegedly manipulated collateral settings, inflated the value of a low-liquidity asset, and used it to borrow higher-value tokens before draining liquidity from the system.

However, these claims remain unverified, and Drift Protocol has not confirmed the attack vector.

A growing pattern of complex DeFi exploits

The incident adds to a broader trend of increasingly sophisticated exploits targeting decentralized finance protocols, where vulnerabilities often extend beyond simple smart contract bugs.

In several recent cases, attackers have exploited governance controls, oracle mechanisms, or internal parameter systems rather than purely external vulnerabilities.

If confirmed, the suspected method in this case would reflect a similar pattern, highlighting how complex protocol design and privileged access controls can introduce new risk surfaces.

Investigation ongoing

Drift Protocol said it is working with multiple partners to investigate the breach and contain further damage. No timeline has been provided for restoring normal operations.

The full scope of the exploit, including the exact attack vector and potential recovery efforts, remains unclear.


Final Summary

  • Drift Protocol has paused operations following an active attack, with early estimates placing losses at around $285m.
  • While funds are already being moved on-chain, the exact exploit method remains unconfirmed as investigations continue.

Pertanyaan Terkait

QWhat is the estimated financial loss from the Drift Protocol exploit according to initial on-chain analysis by PeckShield?

AThe estimated financial loss from the Drift Protocol exploit is approximately $285 million.

QWhat specific action did Drift Protocol take in response to the active attack?

ADrift Protocol halted all deposits and withdrawals in response to the active attack.

QWhat is one of the unverified potential mechanisms for the exploit that was circulating on social media?

AUnverified reports on social media suggested the attacker may have gained access to a privileged administrative key, allowing them to modify protocol parameters, manipulate collateral settings, and drain liquidity.

QWhich two assets made up the largest portions of the stolen funds according to the breakdown?

AAccording to the breakdown, the two largest portions of the stolen funds were $159.3 million in JLP and $71.4 million in USDC.

QWhat broader trend in decentralized finance (DeFi) does this incident contribute to?

AThis incident contributes to the broader trend of increasingly sophisticated exploits targeting DeFi protocols, where vulnerabilities often extend beyond simple smart contract bugs to include governance controls, oracle mechanisms, or internal parameter systems.

Bacaan Terkait

Menurunkan Ekspektasi untuk Bull Market Bitcoin Berikutnya

Artikel ini membahas penurunan ekspektasi penulis terhadap potensi kenaikan harga Bitcoin (BTC) pada siklus bull market berikutnya. Penulis, Alex Xu, yang sebelumnya memegang BTC sebagai aset terbesarnya, telah mengurangi porsi BTC dari full menjadi sekitar 30% pada kisaran harga $100.000-$120.000, dan kembali mengurangi di level $78.000-$79.000. Alasan utama penurunan ekspektasi ini adalah: 1. **Energi Penggerak yang Melemah:** Narasi adopsi BTC yang mendorong kenaikan signifikan di siklus sebelumnya (dari aset niche hingga institusi besar via ETF) sulit terulang. Langkah berikutnya, seperti masuknya BTC ke dalam cadangan bank sentral negara maju, dianggap sangat sulit tercapai dalam 2-3 tahun ke depan. 2. **Biaya Peluang Pribadi:** Penulis menemukan peluang investasi yang lebih menarik di perusahaan-perusahaan lain. 3. **Dampak Resesi Industri Kripto:** Menyusutnya industri kripto secara keseluruhan (banyak model bisnis seperti SocialFi dan GameFi terbukti gagal) dapat memperlambat pertumbuhan basis pemegang BTC. 4. **Biaya Pendanaan Pembeli Utama:** Perusahaan pembeli BTC terbesar, Stratis, menghadapi kenaikan biaya pendanaan yang memberatkan, yang dapat mengurangi kecepatan pembeliannya dan memberi tekanan jual. 5. **Pesaing Baru untuk "Emas Digital":** Hadirnya "tokenized gold" (emas yang ditokenisasi) menawarkan keunggulan yang mirip dengan BTC (seperti dapat dibagi dan dipindahkan) sehingga menjadi pesaing serius. 6. **Masalah Anggaran Keamanan:** Imbalan miner yang terus berkurang pasca halving menimbulkan kekhawatiran tentang keamanan jaringan, sementara upaya mencari sumber fee baru seperti ordinals dan L2 dinilai gagal. Penulis menyatakan tetap memegang BTC sebagai aset besar dan terbuka untuk membeli kembali jika alasannya tidak lagi relevan atau muncul faktor positif baru, meski siap menerima jika harganya sudah terlalu tinggi untuk dibeli kembali.

marsbit2 hari yang lalu 02:47

Menurunkan Ekspektasi untuk Bull Market Bitcoin Berikutnya

marsbit2 hari yang lalu 02:47

Trading

Spot
Futures

Artikel Populer

Cara Membeli DRIFT

Selamat datang di HTX.com! Kami telah membuat pembelian Drift Protocol (DRIFT) menjadi mudah dan nyaman. Ikuti panduan langkah demi langkah kami untuk memulai perjalanan kripto Anda.Langkah 1: Buat Akun HTX AndaGunakan alamat email atau nomor ponsel Anda untuk mendaftar akun gratis di HTX. Rasakan perjalanan pendaftaran yang mudah dan buka semua fitur.Dapatkan Akun SayaLangkah 2: Buka Beli Kripto, lalu Pilih Metode Pembayaran AndaKartu Kredit/Debit: Gunakan Visa atau Mastercard Anda untuk membeli Drift Protocol (DRIFT) secara instan.Saldo: Gunakan dana dari saldo akun HTX Anda untuk melakukan trading dengan lancar.Pihak Ketiga: Kami telah menambahkan metode pembayaran populer seperti Google Pay dan Apple Pay untuk meningkatkan kenyamanan.P2P: Lakukan trading langsung dengan pengguna lain di HTX.Over-the-Counter (OTC): Kami menawarkan layanan yang dibuat khusus dan kurs yang kompetitif bagi para trader.Langkah 3: Simpan Drift Protocol (DRIFT) AndaSetelah melakukan pembelian, simpan Drift Protocol (DRIFT) di akun HTX Anda. Selain itu, Anda dapat mengirimkannya ke tempat lain melalui transfer blockchain atau menggunakannya untuk memperdagangkan mata uang kripto lainnya.Langkah 4: Lakukan trading Drift Protocol (DRIFT)Lakukan trading Drift Protocol (DRIFT) dengan mudah di pasar spot HTX. Cukup akses akun Anda, pilih pasangan perdagangan, jalankan trading, lalu pantau secara real-time. Kami menawarkan pengalaman yang ramah pengguna baik untuk pemula maupun trader berpengalaman.

269 Total TayanganDipublikasikan pada 2024.12.11Diperbarui pada 2025.03.21

Cara Membeli DRIFT

Diskusi

Selamat datang di Komunitas HTX. Di sini, Anda bisa terus mendapatkan informasi terbaru tentang perkembangan platform terkini dan mendapatkan akses ke wawasan pasar profesional. Pendapat pengguna mengenai harga DRIFT (DRIFT) disajikan di bawah ini.

活动图片