Kelp DAO Vulnerability Triggers Exodus of Hundreds of Billions; Two Major DeFi Lending Pathologies Clash Head-On

marsbitPublished on 2026-05-29Last updated on 2026-05-29

Abstract

Title: Kelp DAO Exploit Triggers $15 Billion Exodus, Exposing a Clash Between Two DeFi Lending Models. In April 2026, a hacker exploited a LayerZero bridge vulnerability in the Kelp DAO project, minting $292 million in fake rsETH tokens. These were deposited into Aave as collateral to borrow real Ethereum, draining the protocol's liquidity. Within three and a half days, Aave saw $15 billion in deposits flee, forcing a costly $160 million bailout. The root cause was identified as Aave's governance, which had previously voted to set rsETH's loan-to-value ratio to a risky 93%, leaving minimal safety margin. This incident starkly contrasts with the experience of Morpho, the second-largest DeFi lending protocol. Some fake rsETH also flowed into Morpho, but the exposure was limited to $1 million across isolated, pre-configured markets, preventing systemic contagion. The event highlights a fundamental divergence in DeFi lending architectures. Aave employs a shared liquidity pool model, where all deposits back all approved collateral assets, governed by DAO vote. This creates systemic risk, as seen when even users who never interacted with rsETH faced frozen funds. Furthermore, Aave's governance, influenced by leveraged borrowers, prioritized their interests during the crisis, even lowering borrowing rates for frozen markets at the expense of safer depositors. Its supplemental insurance mechanism, Umbrella, also failed as providers withdrew capital when needed. Morpho operates on...

Author: Vaidik Mandloi

Compilation: Saoirse, Foresight News

The underlying principles of all lending protocols in DeFi are largely similar: users deposit stablecoins or Ethereum into a shared liquidity pool, and borrowers draw funds from it after pledging assets; decentralized autonomous organizations (DAOs) vote to decide which assets can serve as collateral and their corresponding loan-to-value (LTV) ratios. Aave has developed a deposit scale of $500 billion precisely by relying on this model. For most of DeFi's development, this has been the industry's sole operating model, and its rationality has never been truly questioned.

However, on April 18, 2026, a hacker exploited a vulnerability in the LayerZero cross-chain bridge of the Kelp DAO project to forge rsETH tokens worth $292 million. The hacker deposited these counterfeit tokens into Aave as collateral to borrow real Ethereum. Within hours, the utilization rates of Aave's major mainstream lending markets reached 100%, meaning all available funds within the protocol had been fully borrowed. Over the next three and a half days, the platform lost $15 billion in deposits. Ultimately, Aave had to collaborate with various ecosystem parties to conduct a rescue, raising $160 million to cover the losses.

Although this vulnerability originated from the Kelp DAO project, the root cause of such massive losses lies in Aave's governance mechanism. As early as January of this year, a community vote decided to raise the collateral factor for rsETH to 93%, leaving only a 7% safety margin for such assets. It was this single decision that brewed one of the largest bank runs in the history of DeFi lending.

On the same day, some of the forged rsETH tokens also flowed into Morpho, the second-largest DeFi lending protocol. However, the risk exposure was only $1 million and dispersed across two independent, small isolated markets, failing to trigger a chain-reaction crisis.

Upon conducting in-depth research into this incident, I discovered that behind this event lies far more than a simple security attack.

Core Differences Between the Two Models

To understand why Aave hemorrhaged billions while Morpho remained largely unscathed, we must first clarify the fund placement and operational logic of the two protocol types.

When you deposit USDC into Aave, the funds flow into a single master liquidity pool, supporting lending activities for all community-approved assets like Ethereum and staked tokens. Depositors cannot choose the type of collateral asset their funds correspond to; all related rules are set by DAO votes. Therefore, when rsETH faced collapse risk, even ordinary users who had only deposited USDC and never touched rsETH found their assets frozen—everyone's funds were in the same risk pool, suffering collective losses.

Source: BingX

More critically, while the market was halted and users couldn't withdraw, Aave's governance layer actually lowered the borrowing rates for the frozen Ethereum markets, aiming to protect borrowers who had leveraged rsETH. Since deposit rates are directly linked to borrowing rates, depositors with the lowest risk and principal security saw their deposit yields shrink further.

In traditional credit systems, lenders with the lowest risk enjoy priority in repayment. However, Aave completely inverted this rule. The reason is that borrowers engaged in rsETH leveraged trading are also the most active voting group in community governance. When risk erupts, high-risk participants holding governance power naturally prioritize protecting their own interests.

Aave launched an insurance mechanism called Umbrella in late 2025, attempting to address such bad debt risks. Users could stake Ethereum; if the protocol incurred bad debts, the staked assets would be used for compensation. However, after the Kelp DAO crisis erupted, 18,922 out of 23,507 staked aWETH positions entered an unstaking waiting period, with nearly 80% of the insurance pool's funds withdrawing collectively.

This mechanism ultimately failed completely. On-chain insurance relies on voluntary user participation, and capital providers inevitably choose to exit when real risk materializes—after all, their assets only face substantial loss when a crisis occurs. This leads to such insurance often existing during peaceful times but becoming ineffective precisely when protection is needed.

Morpho's operational model is entirely different. It abandons the unified shared liquidity pool. Anyone can create an independent, isolated lending market, pre-setting the loan asset, collateral asset, price oracle, and interest rate model. Once parameters are deployed, they cannot be modified. To adjust risk levels, one can only create a new market.

Differences in underlying architecture between the traditional DeFi lending model (represented by Aave) and Morpho's "Morphological" model.

Furthermore, Morpho introduces independent risk management institutions (Stewards), such as Gauntlet and Steakhouse Financial. These entities establish vaults, allocate funds to different markets based on their own analysis, and charge performance fees; if losses occur, they are confined within their own vaults. Gauntlet also provided risk advice for Aave, but in Aave's system, its professional opinions were often overruled by token holders seeking high yields through voting, a situation Morpho prevents at its root.

The Overlooked Hidden Cost

Aave and Morpho are currently the two most widely applied lending models in the crypto space: Aave uses the shared liquidity pool model where all deposits are aggregated, with risk rules set by community votes; Morpho advocates the isolated market model, where each lending pair is independent, with risks managed autonomously by professional institutions.

The Kelp DAO vulnerability exposed the flaws and weaknesses of the shared pool model. But even during stable periods without security incidents, this model harbors a long-overlooked hidden cost. Aave's three core markets on Ethereum (Ethereum, USDT, USDC) contribute 89% of the platform's lending volume. In these three markets, deposit rates are consistently 25% to 35% lower than borrowing rates. This spread essentially represents idle funds lying dormant in the liquidity pool; depositors cannot profit from them, yet borrowers still bear the full borrowing cost.

The interest rate mechanism adjusted based on utilization rates can push rates higher when risk increases but cannot activate idle funds when lending demand is low, leaving large amounts of assets stranded in the pool generating no yield. In these three markets alone, the annual value erosion due to idle funds amounts to approximately $52 million, close to a quarter of Aave's annualized revenue for one quarter. Even zeroing out the reserve ratio and canceling platform fees cannot solve the idle fund issue—it's an inherent shortcoming of the shared pool architecture.

Morpho's interest rate model aims to maintain a utilization rate of around 90%, significantly higher than Aave's 60% to 80% range. This model can sustain high utilization because deposits within the platform are not re-used as collateral for other loans, avoiding chain-liquidation risks at the source and thus eliminating the need to reserve large amounts of capital as a risk buffer. When lending demand is strong and funds are heavily borrowed, rates automatically increase, attracting more depositors; when lending demand is weak, rates decrease, stimulating borrowing. The entire system achieves dynamic balance without requiring community votes.

Source: Gate.com

Actual data confirms its advantage: even after deducting Steward fees, the yield offered to depositors by Morpho's top USDC vaults still exceeds that of Aave and Compound. Currently, Morpho's deposit-to-loan ratio is 41%, while Aave's is 39%, and the former's scale reaches tens of billions of dollars, meaning the yield advantage benefits all depositors on the platform day after day.

Institutional Choice: Which is More Trustworthy?

Surprisingly, all of Coinbase's crypto asset lending services are built on Morpho. The related loan scale has now surpassed $2 billion, and over 100 million platform users are indirectly enjoying the returns provided by Morpho.

Most users aren't even aware they are using DeFi services. Coinbase did not develop its own lending system nor choose another platform. The core reason is that Morpho's underlying architecture allows the platform to independently set risk parameters, select partner risk institutions, and maintain full control over the entire product experience.

Apollo Global Management, a global asset manager with over $1 trillion in assets under management and 30 years of experience in private credit, recently signed a four-year cooperation agreement, planning to acquire up to 90 million MORPHO tokens, accounting for 9% of the total token supply. The institution is connecting its tokenized fund assets to Morpho as collateral, with Gauntlet responsible for vault management and market stress testing.

Beyond that, Anchorage Digital, the first federally chartered native crypto bank in the US, has connected its institutional clients managing hundreds of billions to Morpho vaults; SG-FORGE, the compliant arm of French banking giant Société Générale, is the first licensed bank to implement DeFi lending business through Morpho.

These heavily regulated traditional financial institutions collectively chose Morpho, with a highly consistent core demand: the isolated market model allows them to meet their own compliance and risk control requirements without relying on DAO decisions. In contrast, all market rules in Aave inevitably involve community voting, completely incompatible with institutions' need for autonomous control.

Changes in the regulatory environment have further amplified this trend. The US "GENIUS Act" stipulates that stablecoin issuers cannot directly distribute investment returns, meaning stablecoin institutions require neutral underlying infrastructure to activate vast amounts of idle assets. US-related projections show that by 2028, the scale of stablecoin reserves invested in US Treasury bonds will surge from the current $120 billion to over $1 trillion. This massive pool of capital urgently needs a lending foundation that allows asset custodians to control their own risks, and Morpho is currently the most fitting choice.

Related Questions

QWhat was the root cause of the massive $15 billion deposit outflow from Aave following the Kelp DAO exploit?

AThe root cause was Aave's governance mechanism. Earlier, the community had voted to increase the loan-to-value (LTV) ratio for rsETH to 93%, leaving a very thin safety margin of 7%. When fake rsETH tokens were deposited as collateral, it quickly drained the shared liquidity pool, causing the massive withdrawal.

QWhat is the fundamental difference in the operational models between Aave and Morpho as described in the article?

AAave uses a shared liquidity pool model where all deposits are pooled together to back all approved assets, with rules set by DAO governance. Morpho uses an isolated market model, where each lending market is separate with its own parameters set at creation, managed independently by professional risk stewards.

QWhy did Aave's Umbrella insurance mechanism fail during the crisis, according to the article?

AThe mechanism failed because it relies on voluntary participation. When the crisis hit, nearly 80% of the staked insurance funds (aWETH) entered the unstaking period and were withdrawn. Participants were incentivized to leave to avoid losses, rendering the insurance pool ineffective when it was needed most.

QWhat 'hidden cost' does the shared pool model like Aave's incur during normal market conditions?

AA significant hidden cost is idle capital due to low capital efficiency. In Aave's top three markets, the spread between deposit and borrow rates (25-35%) represents idle funds that earn no yield for depositors but whose cost is still borne by borrowers, leading to an estimated annual value drain of $52 million.

QWhy are regulated traditional financial institutions like Coinbase and Apollo Global Management choosing Morpho over Aave for their DeFi lending operations?

AThey choose Morpho because its isolated market model allows them to set their own risk parameters and choose their risk stewards, giving them full control and compliance. This is essential for meeting regulatory requirements, unlike Aave's model where all market rules are subject to community DAO votes.

Related Reads

a16z Partner: Being in the Flow of Capital Is the True Moat

A16z Partner: Standing in the Cash Flow is the True Moat Historically, many of the strongest companies built their moats by positioning themselves within "cash flows"—facilitating value creation and transfer in a network and taking a cut. The more value flows, the larger they grow. Crypto is the first modern technology natively built for this. With open ledgers, programmable settlement, and stablecoins enabling internet-speed global value transfer, it allows startups to inherit network effects from day one. Well-designed tokens align users, developers, and the protocol towards network growth, distributing value to contributors. This model isn't new (e.g., railroads, Visa, Google, AWS) but Crypto democratizes it. It lets entrepreneurs target areas with high inefficiency and profit extraction—like traditional finance's payments, custody, FX, and settlement—to compress costs, increase speed, and redistribute value by standing in the new flow. The opportunity extends beyond finance to emerging markets like GPU/compute, AI training data, energy, and space, where new, programmable infrastructure can be built without legacy constraints. Key questions for founders: Are you already in the cash flow? Does your revenue scale 10x with network activity? Where is profit extraction highest relative to value created in your market? The strategy is clear: compress the old cost structure, position yourself in the new value stream, and let the network compound.

marsbit16m ago

a16z Partner: Being in the Flow of Capital Is the True Moat

marsbit16m ago

Capturing 15 Top-Tier Zero-Day Vulnerabilities: A Consensus Protocol Debug Agent Framework Built by 0G Lab in Collaboration with Teams from NUS, PKU, and BUPT

"Agents Capture 15 Critical Zero-Day Bugs: 0G Lab's Multi-Agent Framework Automates Debugging in Consensus Protocols" Distributed consensus protocols are notoriously difficult to debug due to complex, intertwined states. A novel framework, Agora, developed by 0G Labs with researchers from NUS, Peking University, and Beijing University of Posts and Telecommunications, tackles this by fusing deep domain expertise with a collaborative multi-agent LLM architecture. Agora moves beyond the limitations of single LLMs and traditional testing like fuzzing. It employs three specialized agents: an Orchestrator for global state, a Strategy agent for generating attack scenarios using distributed systems knowledge, and a TestGen agent that creates executable tests. A core innovation is its efficient "Succinct Memory & Communication" mechanism and a dynamic test harness. This allows the system to translate abstract hypotheses into concrete tests across languages like Go and Rust, run them, capture failures, and refine the approach in a closed loop—all with minimal token overhead. In rigorous evaluations on production-level protocols including Raft, EPaxos, and components from etcd and Sui, Agora discovered 15 previously unknown deep logic bugs (e.g., execution divergence, liveness violations). In stark contrast, powerful standalone LLMs like GPT-5.2 and Claude 4.5 found zero such bugs. Agora achieved this with a high precision of 73.9% and at an average cost of only about $40 per bug found. The framework demonstrates high generalizability. Its decoupled design allows the "Multi-Agent + Hypothesis-Driven Testing" paradigm to be applied to other complex domains like database concurrency control, OS kernels, and Web3 smart contract auditing. By enabling efficient, automated detection of deep logic flaws, Agora points the way for AI-powered security in critical infrastructure, aligning with the growing trends of agentic systems and automated quality control.

marsbit19m ago

Capturing 15 Top-Tier Zero-Day Vulnerabilities: A Consensus Protocol Debug Agent Framework Built by 0G Lab in Collaboration with Teams from NUS, PKU, and BUPT

marsbit19m ago

a16z crypto Partner: Cash Flow Is the True Moat

Title: a16z Crypto Partner: Capital Flow is the True Moat In business history, enduringly successful enterprises often share a core logic: capturing value by facilitating its creation and transfer within an ecosystem, taking a share of the proceeds. The scale of value flowing through the ecosystem directly correlates with the company's growth. Cryptography is the first modern technology natively suited to this commercial logic. Startups that don't leverage this framework in product design and business model construction miss significant opportunities. Stablecoins enable internet-speed, 24/7 global settlement of value with end-to-end programmability. With open underlying channels for capital flow and transparent unit economics, every circulating dollar globally represents potential flow in this arena. Blockchain is inherently a network business model. All transactions are recorded on a shared ledger, and each new participant strengthens this foundational system for future developers. More users and applications increase the network's value for all. Crypto entrepreneurs start with built-in network effects, unlike traditional businesses that spend years building them on legacy infrastructure. Network tokens amplify this advantage. A well-designed token system aligns users, developers, service providers, and validators around a common goal—network growth—while distributing rewards based on contribution. All proceeds flow back to ecosystem participants, creating a virtuous cycle of value circulation. This is not a new logic; the crypto industry simply makes it easier for startups to implement and scale. Historic giants like railroads, Standard Oil, AT&T, and modern leaders like Google and AWS succeeded by positioning themselves at critical junctures of value flow. In finance, Visa processed $15.7 trillion in payments (net revenue: $35.9B), and top market makers like Jane Street thrive by being in the path of order flow, benefiting from volume. Combining capital flow with network effects creates one of business's most robust models. As Jeff Bezos noted, "Your margin is my opportunity." This is acutely true in traditional finance, where sectors like payments, custody, and settlements extract significant fees (e.g., 2-3% for card networks, 6-9% for cross-border transfers). These profits represent opportunities for disruption by reducing costs and increasing efficiency, as proven by Stripe and Square in payments. Crypto founders can build the next-generation infrastructure: programmable, instant, global, and inherently embedded in capital flow paths. Opportunities extend beyond finance to markets like compute/GPU trading, AI training data, energy, robotics, and critical minerals—areas poised for massive global value movement that existing channels cannot handle. These are blue oceans for new, programmable infrastructure centered on capital flow, free from entrenched platforms and intermediaries. Founders should ask: Is your business at the heart of a value flow? Does your revenue scale 10x with ecosystem transaction growth? Where are the highest margins relative to value created in your target market? The answers point to the opportunity: cut existing costs, enter new value flow arenas, and grow through network effects.

Foresight News20m ago

a16z crypto Partner: Cash Flow Is the True Moat

Foresight News20m ago

Unveiling the 'White-haired Stock God' Serenity: A Spiritual Remedy for Anxious Retail Investors

The article details the rise of Serenity, dubbed the "White-Haired Stock God," whose social media posts have recently caused significant volatility in China's A-share market. Previously gaining fame in international retail investor communities, Serenity is known for his "Chokepoint Investment" strategy targeting small monopolies in the AI supply chain, reportedly achieving returns over 3612% this year. His influence stems from his background as a former AI research scientist, detailed analysis, and a massive following on X, where his subscriber count has surpassed Elon Musk's. In early June, Serenity's Chinese-language posts mentioning A-shares like LeaderDrive (Lide Xiebo), Easun, and Innolight triggered immediate 20% surges in their stock prices. He later clarified that some recommendations were crowdsourced from followers and claimed he did not hold positions in these stocks, stating his actions were "just for fun" to offer a foreign perspective on Chinese markets. This activity drew scrutiny from Chinese financial media, which warned of potential "pump-and-dump" schemes and legal risks. While anonymous, clues suggest Serenity is likely a Chinese-speaking individual living in Japan. He maintains his anonymity due to past harassment but enjoys substantial monthly income from his paid subscriptions. The article posits that Serenity embodies the market's current appetite for a charismatic, successful figure during the AI bull run, serving as an "outward projection" of bullish sentiment. It concludes by noting the cyclical nature of such market icons, warning that the same crowds that elevate them often seek scapegoats when trends reverse.

Odaily星球日报25m ago

Unveiling the 'White-haired Stock God' Serenity: A Spiritual Remedy for Anxious Retail Investors

Odaily星球日报25m ago

Unveiling the 'White-Haired Stock God' Serenity: The Mental Elixir for Anxious Retail Investors

The anonymous stock influencer known as "White-Haired Stock God" Serenity has ignited a frenzy in the A-share market. From June 5-9, Serenity's posts on platform X mentioning A-shares like LeaderDrive, Easun, and Innolight triggered sharp price surges, with some stocks hitting 20% daily limits. Serenity, who claims a 3612% personal return this year, gained fame internationally using a "chokepoint investment" strategy focused on small, monopolistic AI supply chain companies. With over 810k X followers, his influence rivals top analysts. His recent foray into Chinese stocks, which he claims is "for fun" to offer a "foreign perspective," has drawn scrutiny. While Serenity denies holding positions in these A-shares and states his posts are not recommendations, his actions have caused significant market volatility. He monetizes through a $1/month subscription, earning an estimated $54k monthly. Facing accusations of market manipulation, he maintains he promotes "information democracy." Community analysis suggests Serenity is likely an English-speaking Chinese national living in Japan, based on his posting patterns and shared personal details. He maintains anonymity due to past harassment. Ultimately, Serenity is seen by many as a manifestation of the current AI bull market's euphoria—a mysterious, seemingly successful figure who fulfills the market's desire for a "stock god," though such personas often face intense scrutiny when market sentiment shifts.

marsbit25m ago

Unveiling the 'White-Haired Stock God' Serenity: The Mental Elixir for Anxious Retail Investors

marsbit25m ago

Trading

Spot
Futures

Hot Articles

How to Buy DAO

Welcome to HTX.com! We've made purchasing DAO Maker (DAO) simple and convenient. Follow our step-by-step guide to embark on your crypto journey.Step 1: Create Your HTX AccountUse your email or phone number to sign up for a free account on HTX. Experience a hassle-free registration journey and unlock all features.Get My AccountStep 2: Go to Buy Crypto and Choose Your Payment MethodCredit/Debit Card: Use your Visa or Mastercard to buy DAO Maker (DAO) instantly.Balance: Use funds from your HTX account balance to trade seamlessly.Third Parties: We've added popular payment methods such as Google Pay and Apple Pay to enhance convenience.P2P: Trade directly with other users on HTX.Over-the-Counter (OTC): We offer tailor-made services and competitive exchange rates for traders.Step 3: Store Your DAO Maker (DAO)After purchasing your DAO Maker (DAO), store it in your HTX account. Alternatively, you can send it elsewhere via blockchain transfer or use it to trade other cryptocurrencies.Step 4: Trade DAO Maker (DAO)Easily trade DAO Maker (DAO) on HTX's spot market. Simply access your account, select your trading pair, execute your trades, and monitor in real-time. We offer a user-friendly experience for both beginners and seasoned traders.

2.4k Total ViewsPublished 2024.03.29Updated 2026.06.02

How to Buy DAO

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of DAO (DAO) are presented below.

活动图片