# KelpDAO Articoli collegati

Il Centro Notizie HTX fornisce gli articoli più recenti e le analisi più approfondite su "KelpDAO", coprendo tendenze di mercato, aggiornamenti sui progetti, sviluppi tecnologici e politiche normative nel settore crypto.

Morning Post | Hyperliquid Launches Off-chain Event Prediction Market Contract; Strategy Completes $1.5 Billion Debt Buyback; Kelp DAO Announces rsETH Fully Restored

Crypto Market Digest (May 27, 2026) Ondo Finance's founder Nathan Allman has passed away, with President Ian De Bode taking over as CEO. In regulatory news, Hong Kong authorities concluded a consultation on virtual asset service provider licensing, aiming to align rules with traditional finance. Kelp DAO announced its rsETH token has fully recovered five weeks after a $293 million hack by Lazarus Group, though the incident caused significant damage to DeFi lending protocols like Aave. Key industry developments include Hyperliquid launching off-chain event prediction market contracts, and the CME introducing futures for Avalanche and Sui. A report highlights the rise of AI Agent payments, with over $73 million settled on-chain in a year, predominantly using USDC. Meanwhile, blockchain detective ZachXBT exposed market manipulation involving several BSC tokens. In investment news, a firm referred to as "Strategy" completed a $1.5 billion debt buyback. Political contributions from the crypto sector for the 2026 U.S. elections have surpassed $500 million, heavily favoring Republican candidates. BitMEX founder Arthur Hayes revealed Zcash is his second-largest holding, citing the growing necessity for monetary privacy. The digest concludes with trending memecoins on Ethereum, Solana, and Base networks, and highlights in-depth articles covering the impending SpaceX IPO, Polymarket's regulatory challenges, and an analysis of the on-chain treasury landscape.

链捕手05/27 01:32

Morning Post | Hyperliquid Launches Off-chain Event Prediction Market Contract; Strategy Completes $1.5 Billion Debt Buyback; Kelp DAO Announces rsETH Fully Restored

链捕手05/27 01:32

Kelp DAO's $400 Million Bad Debt Was Covered, But at a $12 Billion Cost to Aave

On May 26th, Kelp DAO successfully transferred its final batch of rsETH, completing the 37-day process of fully backing rsETH 1:1 after a security incident. However, the resolution came at a significant cost to Aave. The protocol's TVL plummeted by over $12 billion in the following month. Furthermore, a separate legal battle over 30,766 frozen ETH continues in court, posing ongoing reputational risk. The recovery was enabled by an unprecedented, one-time coalition dubbed "DeFi United," involving major contributions from Aave's founder, treasury, Consensys, Mantle, and others. Despite this, the event triggered a major outflow of funds, with whales like Justin Sun moving capital to competitors like Spark. Aave's path to regaining its position relies heavily on the successful execution of its multi-pronged strategy. Its new V4 protocol, designed for open, heterogeneous asset markets, faces delays due to internal governance disputes. Meanwhile, the V3 version remains the core revenue generator, and the permissioned Horizon fork is targeting institutional RWA (Real-World Assets) growth—a segment less impacted by the rsETH incident but dependent on traditional finance adoption timelines. The key takeaway is that while the immediate bad debt was covered, Aave paid a steep price in lost trust and capital. Recovering market share depends on accelerating V4's rollout and advancing its institutional RWA offerings, both of which face external and internal hurdles. The "DeFi United" safety net is unlikely to be replicable for future crises.

marsbit05/26 11:09

Kelp DAO's $400 Million Bad Debt Was Covered, But at a $12 Billion Cost to Aave

marsbit05/26 11:09

Aave Is Surrendering the Throne of DeFi Lending Due to Its Own Stupidity

Aave, a leading DeFi lending protocol, is facing a severe crisis and losing its dominant market position due to its poor handling of a recent security incident. The crisis began when Kelp DAO suffered a hack resulting in a loss of $292 million in rsETH. In the aftermath, approximately $17.2 billion in funds flowed out of Aave as user panic escalated. The article criticizes Aave's crisis management as "extremely foolish." Instead of promptly offering reassurance or committing to cover the potential bad debt—estimated between $123.7 million and $230.1 million, which Aave could have afforded—the protocol initially deflected blame, emphasizing that its code was not at fault. This delay and lack of a clear guarantee led to widespread user anxiety, triggering a bank run-like scenario where users withdrew funds or borrowed aggressively from other pools, causing liquidity shortages. Meanwhile, Aave’s competitor Spark—a fork of Aave’s own code—has benefited significantly. Having removed support for rsETH months earlier, Spark avoided any losses from the incident and has since seen its TVL grow by nearly $2 billion, attracting major deposits such as over $1.24 billion from Justin Sun. Spark has actively capitalized on the situation, publicly criticizing Aave’s security reputation. Although Aave’s founder Stani eventually announced a relief plan named "DeFi United" with several partners and a personal donation, the damage to user trust and capital outflows may be irreversible. The article concludes that Aave is losing its throne in DeFi lending to aggressive competitors like Spark, Morpho, and Jupiter Lend.

Odaily星球日报04/24 02:38

Aave Is Surrendering the Throne of DeFi Lending Due to Its Own Stupidity

Odaily星球日报04/24 02:38

Arbitrum Pretends to Be the Hacker, 'Steals' Back the Money Lost by KelpDAO

Title: Arbitrum Poses as Hacker to Recover Stolen Funds from KelpDAO Last week, KelpDAO suffered a hack resulting in nearly $300 million in losses, marking the largest DeFi security incident this year. Approximately 30,765 ETH (worth over $70 million) remained on an Arbitrum address controlled by the attacker. In an unprecedented move, Arbitrum’s Security Council utilized its emergency authority to upgrade the Inbox bridge contract, adding a function that allowed them to impersonate the hacker’s address and initiate a transfer without access to its private key. The council’s action, approved by 9 of its 12 members, moved the stolen ETH to a frozen address in a single transaction before reverting the contract to its original state. The operation was coordinated with law enforcement, which attributed the attack to North Korea’s Lazarus Group. Community reactions are divided: some praise the recovery of funds, while others question the centralization of power, as the council can upgrade core contracts without governance votes. However, such emergency mechanisms are common among major L2s. Despite the partial recovery, over $292 million was stolen in total, with more than $100 million in bad debt on Aave and remaining funds scattered across other chains. The incident highlights escalating security challenges in DeFi, with state-sponsored hackers employing advanced tactics and L2s responding with elevated countermeasures.

marsbit04/21 07:59

Arbitrum Pretends to Be the Hacker, 'Steals' Back the Money Lost by KelpDAO

marsbit04/21 07:59

The $290 Million Deficit: A Three-Way Game Between Aave, L0, and Kelp—Who Should Foot the Bill?

An incident involving the theft of 116,500 rsETH (worth approximately $290 million) from Kelp DAO’s cross-chain bridge contract has triggered a complex dispute over responsibility and compensation among Kelp DAO, LayerZero, and Aave. The attack occurred due to a compromised RPC provider used by LayerZero’s Decentralized Verifier Network (DVN). Since Kelp DAO’s bridge used a 1/1 DVN configuration—a single point of failure—the attacker successfully forged a cross-chain message, leading to the unauthorized release of rsETH tokens from the mainnet. These genuine tokens were then deposited into Aave and other lending platforms to borrow WETH, enabling the attacker to exit with the funds. Responsibility is attributed primarily to Kelp DAO for its risky 1/1 DVN setup. LayerZero bears secondary responsibility for permitting such a vulnerable configuration in its protocol layer. Aave also shares indirect blame for over-collateralizing rsETH and other Liquid Restaking Token (LRT) assets without adequate ongoing risk oversight. Kelp DAO lacks sufficient funds to cover the loss, shifting focus to the deeper-pocketed players: LayerZero, whose cross-chain ecosystem and reputation are at risk, and Aave, which faces massive bad loans and declining Total Value Locked (TVL). Aave has asserted that mainnet rsETH remains fully backed, implying it expects Kelp DAO to allow redemption of underlying ETH. This approach would preserve Aave’s mainnet positions but invalidate Layer2 rsETH, damaging LayerZero’s cross-chain credibility. Potential solutions include: - A universal 18.5% haircut on all rsETH holders, causing significant Aave bad debt. - Writing off Layer2 rsETH entirely, protecting Aave mainnet but harming LayerZero and Kelp DAO. - Negotiating a bounty with the hacker for partial fund return. - A joint bailout, possibly led by LayerZero’s ecosystem fund, given its long-term stake in the cross-chain ecosystem. The situation remains unresolved as the parties negotiate, but prolonged delay risks broader DeFi instability, including potential liquidity crises and loss of confidence in LRT and cross-chain infrastructures.

Odaily星球日报04/20 08:52

The $290 Million Deficit: A Three-Way Game Between Aave, L0, and Kelp—Who Should Foot the Bill?

Odaily星球日报04/20 08:52

An Open-Source AI Tool That No One Saw Predicted Kelp DAO's $292 Million Vulnerability 12 Days Ago

An open-source AI security tool flagged critical risks in Kelp DAO’s cross-chain architecture 12 days before a $292 million exploit on April 18, 2026—the largest DeFi incident of the year. The vulnerability was not in the smart contracts but in the configuration of LayerZero’s cross-chain bridge: a 1-of-1 Decentralized Verifier Network (DVN) setup allowed an attacker to forge cross-chain messages with a single compromised node. The tool, which performs AI-assisted architectural risk assessments using public data, identified several unremediated risks, including opaque DVN configuration, single-point-of-failure across 16 chains, unverified cross-chain governance controls, and similarities to historical bridge attacks like Ronin and Harmony. It also noted the absence of an insurance pool, which amplified losses as Aave and other protocols absorbed nearly $300M in bad debt. The attack unfolded over 46 minutes: the attacker minted 116,500 rsETH on Ethereum via a fraudulent message, used it as collateral to borrow WETH on lending platforms, and laundered funds through Tornado Cash. While an emergency pause prevented two subsequent attacks worth ~$200M, the damage was severe. The tool’s report, committed to GitHub on April 6, scored Kelp DAO a medium-risk 72/100—later acknowledged as too lenient. It failed to query on-chain DVN configurations or initiate private disclosure, highlighting gaps in current DeFi security approaches that focus on code audits but miss config-level and governance risks. The incident underscores the need for independent, AI-powered risk assessment tools that evaluate protocol architecture, not just code.

marsbit04/20 03:23

An Open-Source AI Tool That No One Saw Predicted Kelp DAO's $292 Million Vulnerability 12 Days Ago

marsbit04/20 03:23

活动图片