Skip to main content
Meet us at Black Hat USA 2026— Las Vegas, August 1–6Book a Meeting
Mallory
Back to intelligence
cryptocurrency-platform-riskstate-sponsored-espionagethird-party-vendor-breachoperational-disruption

Kelp DAO bridge exploit tied to Lazarus triggers DeFi losses, legal fight, and migration

Updated 19d agoFirst seen Apr 20, 202646 sources

Attackers linked with North Korea’s Lazarus Group exploited Kelp DAO’s LayerZero-powered rsETH bridge by compromising off-chain verification infrastructure and abusing a 1-of-1 DVN setup, fraudulently releasing about 116,500 rsETH worth roughly $292 million. The stolen tokens were posted as collateral on Aave to borrow real assets, creating an estimated $124 million to $230 million in bad debt, driving severe liquidity stress, and contributing to a broader DeFi selloff. Kelp DAO and LayerZero publicly disputed responsibility after LayerZero first blamed Kelp’s configuration, then later acknowledged its own mistake in allowing its DVN to operate as the sole verifier for a high-value route; a later forensic report said the intrusion began with social engineering of a LayerZero developer and was attributed with high confidence to DPRK-linked TraderTraitor/UNC4899.

Arbitrum’s Security Council froze about 30,766 ETH—roughly $71 million—linked to the exploit, but the recovery effort became entangled in U.S. litigation after terrorism-judgment creditors sought to seize the assets as alleged North Korean property. A federal judge later allowed an Arbitrum DAO vote to move the frozen ETH to Aave LLC while preserving the restraining notice, leaving ownership unresolved as DeFi United worked to recapitalize rsETH, Kelp burned attacker-held tokens on Arbitrum, and most of the remaining $220 million in unfrozen funds were reportedly laundered through THORChain, Wasabi, Tornado Cash, and Umbra. In the aftermath, Kelp migrated rsETH bridging to Chainlink CCIP, and the incident accelerated broader protocol moves away from minimal LayerZero verifier configurations.

Share:
Kelp DAO bridge exploit tied to Lazarus triggers DeFi losses, legal fight, and migration
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

22 events from the most recent confirmed update back to the earliest known activity.

22 EVENTS
Jun 9, 202620d ago

LlamaRisk submits Aave-wide risk framework proposals

By 2026-06-09, LlamaRisk had submitted two Aave governance proposals in response to the KelpDAO exploit: a four-layer protocol-wide risk framework for Aave V3, V4, and Aave Horizon, and a proposal to migrate the Pendle PT risk oracle to protocol-owned infrastructure on Chainlink Runtime Environment. The proposals entered the community feedback stage and would advance to Snapshot and on-chain AIPs if consensus is reached.

Aave Proposes Protocol-Wide Risk Framework After KelpDAO Exploit - "The Defiant"
Jun 1, 202628d ago

Analysts say attacker laundered nearly all unfrozen proceeds

By 2026-06-01, on-chain analysts reported that the DPRK-linked attacker had laundered nearly all of the roughly $220 million in unfrozen funds through THORChain, Wasabi, Tornado Cash, and Umbra. The report said only the approximately $71 million frozen by Arbitrum still appeared materially recoverable.

Kelp DAO Hacker Has Laundered Nearly All $220M in Unfrozen Funds, Closing the Recovery Window - "The Defiant"
May 20, 20261mo ago

Chainlink says over $4B had migrated to CCIP by May 20

Chainlink stated that more than $4 billion had migrated to CCIP across seven protocols by 2026-05-20, amid a broader migration wave following the Kelp exploit. The article ties the shift in cross-chain infrastructure choices to security concerns raised by the incident.

Chainlink CCIP Draws $1.1 Billion in Value in One Week as Virtuals Join Migration Wave - "The Defiant"

LayerZero forensic report traces breach to March 6 compromise

On 2026-05-20, LayerZero Labs published a forensic incident report saying the breach began on 2026-03-06 when a developer was socially engineered into cloning a malicious GitHub repository. The report said Mandiant and CrowdStrike attributed the operation with high confidence to UNC4899/TraderTraitor and stated Kelp’s bridge had been downgraded from 2-of-2 to 1-of-1 before the exploit.

LayerZero's Incident Report Says Kelp Downgraded From 2-of-2 to 1-of-1 DVN Before $292M Exploit - "The Defiant"
May 13, 20262mo ago

Kelp DAO burns attacker-held rsETH and sets reopening plan

On 2026-05-13, Kelp DAO said it burned rsETH held by the attacker and published a recovery plan targeting roughly two weeks to restore liquidity and resume withdrawals. The plan said Aave’s Recovery Guardian multisig would help refill rsETH reserves during the recovery period.

Kelp DAO Burns Exploiter's rsETH on Arbitrum, Plans Two-Week Withdrawal Reopening: Kelp DAO - "The Defiant"
May 11, 20262mo ago

Federal judge allows vote to move frozen ETH to Aave

On 2026-05-11, a federal judge modified the restraining notice so Arbitrum DAO could proceed with an on-chain vote and transfer the frozen 30,766 ETH to Aave LLC. The court said the assets would remain subject to the same freeze after transfer and did not resolve the competing ownership claims.

US court clears way for vote on moving $71M in crypto stolen by North Korea | NK News
May 9, 20262mo ago

LayerZero apologizes and admits 1/1 DVN mistake

On 2026-05-09, LayerZero Labs publicly apologized for its handling of the exploit and acknowledged a security mistake in allowing its own DVN to operate as a 1/1 verifier for high-value transactions. The company said its internal RPC nodes were compromised, reversed earlier blame on Kelp’s configuration, and announced changes including ending support for 1/1 setups in its DVN.

LayerZero Admits Mistake in 1/1 DVN Setup Tied to $292M Kelp Hack - "The Defiant"
May 5, 20262mo ago

Kelp DAO rebuts LayerZero and announces CCIP migration

On 2026-05-05, Kelp DAO published a rebuttal rejecting LayerZero’s claim that Kelp alone caused the exploit through a 1-of-1 DVN choice. Kelp said the compromise originated in LayerZero infrastructure and confirmed it would migrate rsETH bridging from LayerZero OFT to Chainlink CCIP.

Kelp DAO Accuses LayerZero of Deflecting Blame for $300M Bridge Hack - "The Defiant"
May 4, 20262mo ago

Aave seeks emergency court relief from restraining notice

Aave LLC filed an emergency motion in U.S. District Court seeking to vacate the restraining notice that froze about $71 million in recovered ETH tied to the exploit. Aave argued the assets belonged to victims and that the legal action was obstructing the DeFi-led recovery plan.

Aave Asks Court to Vacate Restraining Notice Targeting Recovered Kelp DAO Assets - "The Defiant"
May 1, 20262mo ago

Attorney serves Arbitrum DAO with restraining notice

On 2026-05-01, attorney Charles Gerstein served Arbitrum DAO with a restraining notice and writs of execution seeking to seize the frozen ETH on behalf of plaintiffs holding terrorism judgments against North Korea. The claim argued that public attribution of the exploit to Lazarus made the assets reachable as DPRK property.

Lawyer Attempts to Seize Frozen ETH Linked to Kelp Exploit From Arbitrum DAO - "The Defiant"
Apr 28, 20262mo ago

DeFi United publishes technical recovery plan

On 2026-04-28, DeFi United released a technical plan to restore rsETH backing through governance proposals, controlled liquidations, and recapitalization tranches. The coalition said seven attacker-linked addresses still held active rsETH-backed lending positions and disclosed that LayerZero Labs pledged more than 10,000 ETH to the effort.

DeFi United Outlines Technical Path To Make Kelp's rsETH Whole - "The Defiant"
Apr 24, 20262mo ago

DeFi United reports partial progress filling rsETH shortfall

On 2026-04-24, DeFi United said 73,700 ETH of the exploit-related deficit had been filled and public commitments totaled 43,500 ETH. The update also cited Kelp’s clawback of 40,300 rsETH and the Arbitrum freeze as major recovery actions.

DeFi United Fundraising Chips Away at Kelp Exploit Shortfall - "The Defiant"
Apr 23, 20262mo ago

Aave and partners launch DeFi United recovery coalition

On 2026-04-23, Aave and several crypto firms launched the DeFi United recovery initiative to recapitalize rsETH, reduce bad debt, and stabilize affected lending markets. The coalition proposed ETH- and stETH-based contributions rather than relying solely on clawing back stolen funds.

KelpDAO hack news: Aave leads DeFi bailout push after $292M crypto exploit
Apr 21, 20262mo ago

Aave partially reopens Ethereum Core V3 WETH supply

On 2026-04-21, Aave partially rolled back emergency controls by reopening WETH supply on Ethereum Core V3 while keeping WETH collateralization disabled and other restrictions in place. The move followed the exploit’s liquidity shock and drew criticism over residual risk and looping incentives.

Aave Partially Unfreezes WETH After Kelp Bridge Exploit - "The Defiant"
Apr 20, 20262mo ago

Arbitrum Security Council freezes 30,766 ETH tied to attacker

On 2026-04-20, Arbitrum’s Security Council used emergency powers to freeze about 30,766 ETH, worth roughly $71 million, linked to the Kelp exploit. Reports say the action was taken with law-enforcement coordination and moved the funds into a wallet that requires further governance action to move.

Inside the KelpDAO Bridge Exploit

DeFi protocols launch aWETH Redemption Protocol

On 2026-04-20, Fluid and partners including Lido, Ether.fi, 1inch, 0x, and Kyber launched the aWETH Redemption Protocol to help Aave users exit trapped aWETH positions. The emergency mechanism was built in under 24 hours after the exploit-driven freeze in Aave’s WETH market.

DeFi Protocols Launch Joint Escape Hatch for Aave ETH Lenders and Loopers - "The Defiant"

Aave publishes incident report estimating bad debt

On 2026-04-20, Aave service providers released an incident report estimating potential bad debt from the Kelp exploit at $123.7 million to $230.1 million. The report said 89,567 stolen rsETH had been deposited across seven attacker-controlled wallets and recommended emergency mitigation steps.

Aave Models $124M to $230M in Bad Debt From Kelp Exploit - "The Defiant"

Dune analysis finds widespread 1-of-1 DVN exposure

On 2026-04-20, Dune Analytics published research showing that about 47% of active LayerZero OApps used a minimal 1-of-1 DVN configuration. The analysis explicitly linked this weak model to the Kelp DAO exploit and released open methodology for community review.

Dune Analytics Reveals 47% of LayerZero OApps Use Minimal DVN Security Following KelpDAO Hack - "The Defiant"

LayerZero publicly attributes exploit to Lazarus/TraderTraitor

By 2026-04-20, LayerZero publicly blamed North Korea-linked Lazarus Group, specifically TraderTraitor, for the Kelp DAO theft. Its postmortem said compromised RPC nodes and DDoS activity enabled a forged verification path and argued Kelp’s 1-of-1 DVN setup limited the blast radius to one application.

LayerZero Post Mortem Shows Lazarus Group Stole $290M From KelpDAO via RPC Node Compromise - "The Defiant"
Apr 18, 20262mo ago

Attackers use stolen rsETH on Aave, creating major bad debt

After the exploit, the attackers deposited stolen rsETH into Aave and borrowed real assets including WETH, creating a large collateral shortfall and estimated bad debt of roughly $124 million to $230 million. The event triggered severe liquidity stress across Aave and broader DeFi markets.

Aave Models $124M to $230M in Bad Debt From Kelp Exploit - "The Defiant"

Kelp DAO pauses contracts and blocks further theft attempts

Kelp DAO froze affected contracts 46 minutes after the initial drain and blacklisted attacker addresses. The response prevented additional attempted thefts, including two later forged transactions described as totaling more than $100 million or about 40,000 rsETH each in various reports.

Kelp DAO Accuses LayerZero of Deflecting Blame for $300M Bridge Hack - "The Defiant"

Kelp DAO bridge exploit drains 116,500 rsETH

On 2026-04-18, attackers exploited Kelp DAO’s LayerZero-powered Unichain-to-Ethereum bridge path and fraudulently released about 116,500 rsETH worth roughly $290-$293 million. Multiple reports tie the theft to forged cross-chain verification rather than a smart-contract flaw in Kelp’s core protocol.

LayerZero Post Mortem Shows Lazarus Group Stole $290M From KelpDAO via RPC Node Compromise - "The Defiant"
LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

139 LINKEDOpen in app
Threat actors
2 linked
Affected products
4 linked
GithubLedger LiveMacosKubernetes
Organizations
117 linked
LayerZeroKelpDAOAaveChainlinkCoinGeckoUBSSwiftJPMorgan ChaseVirtuals ProtocolZest ProtocolPleasing MarketCoinDeskCompoundChainalysisBitGoDeFiLlamaCointelegraphThe DefiantEthenaEther.fiArbitrumGrayscaleFilecoinMorgan StanleyCyVersDriftYearn FinanceTHORChainEulerLido FinanceEigenLayerSolv ProtocolGerstein Harrow LLPAave LLCCrowdStrikeChaos LabsPeckShieldSparkGoogleMEXCFluidZeroShadowDrift ProtocolUmbraLlamaRiskLido Labs FoundationMantleAbraxas CapitalKeeper SecurityMorphoFraxStandard CharteredTetherBeyondtrustCybernewsRecorded FutureByBitTornado CashHTXArkham IntelligenceWasabi TechnologiesEllipticCertiKSilent PushSEAL 911HexagateLookonchainTRM LabsEthereum FoundationSecurity AffairsCurve FinanceKyber NetworkYahoo FinanceZerionGolemCertoraGnosis1inchDune AnalyticsCurveBGD LabsCompound FinanceOffchain LabsLidoSentoraSecurity AllianceL2BEATCoW SwapKelpMagmaDevsLava Network0x ProtocolKyberNetworkGolem FactoryGolem FoundationTydroFrax FinanceQuickNodeUpshiftBeefyBralePendleNoncoDeFi UnitedHECOMorrison Cohen LLPTurnkeyopsekDuneHumanixRhea FinanceSparkLendKernelDAOSilo FinanceUnichainPresto ResearchKarak
Breaches
16 linked
KELPDAO-2026-04AAVE-2026-04KELP-2026-04KELPDAO-2026-05ETHENA-2026-04LAYERZERO-2026-04LAYERZEROLABS-2026-05AAVE-2025-04KELPDAO-2025-04CURVEFINANCE-2026-04BITGO-2026-04MEXC-2026-04ABRAXASCAPITAL-2026-04LIDOFINANCE-2026-04FLUID-2026-04SPARKLEND-2026-04
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.

Kelp DAO bridge exploit tied to Lazarus triggers DeFi losses, legal fight, and migration | Mallory