No Result
View All Result
  • Login
Tuesday, June 23, 2026
theadvisertimes.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
theadvisertimes.com
No Result
View All Result
Home Cryptocurrency

What Happened, Who Lost Money, and What’s Next – Featured Bitcoin News

by theadvisertimes.com
3 months ago
in Cryptocurrency
Reading Time: 4 mins read
A A
0
What Happened, Who Lost Money, and What’s Next – Featured Bitcoin News
Share on FacebookShare on TwitterShare on LInkedIn


DPRK Lazarus Group Suspected in Drift Protocol $286 Million Solana Theft

Drift Protocol, the largest decentralized perpetual futures exchange on the Solana network, confirmed the exploit after watching its total value locked (TVL) collapse from roughly $550 million to under $250 million in a single morning, now standing at $232 million. Bitcoin.com News was the first to report on the issue. The DRIFT token dropped as much as 37%–42% in the hours that followed, bottoming near $0.04 to $0.05.

Reports note that the attack began not with a code bug but with a Tornado Cash withdrawal. On March 11, the attacker pulled ETH from the Ethereum-based privacy protocol and used those funds to deploy the carbonvote token, or CVT, on March 12. Blockchain analysts noted the deployment timestamp corresponded to approximately 09:00 Pyongyang time, a detail that raised immediate flags.

DRIFT token on April 3, 2026.

Several reports detail that over the following three weeks, the attacker seeded minimal liquidity for CVT on the Raydium decentralized exchange and used wash trading to maintain a price near $1.00. Drift’s oracles read that price as legitimate. The attacker had built fake collateral that looked real to every automated system watching it.

“Earlier today, a malicious actor gained unauthorized access to Drift Protocol through a novel attack involving durable nonces, resulting in a rapid takeover of Drift’s Security Council administrative powers,” the Drift team wrote.

The project’s X account added:

“This was a highly sophisticated operation that appears to have involved multi-week preparation and staged execution, including the use of durable nonce accounts to pre-sign transactions that delayed execution.”

Ostensibly, between March 23 and March 30, the Drift attacker moved to the human layer. Using a legitimate Solana feature called durable nonces, the attacker reportedly induced members of Drift’s Security Council multisig to pre-sign transactions that appeared routine. Those signatures became pre-approved access keys, held in reserve until the attacker was ready.

The opening closed on March 27, when Drift migrated its Security Council to a 2-of-5 signature threshold and removed its timelock entirely. A timelock typically forces a 24-to-72-hour delay on administrative actions, giving the community time to catch and reverse anything suspicious. Without it, the attacker had zero-delay execution authority. The pre-signed transactions were live the moment the timelock was gone.

On April 1, the attacker activated those transactions, listed CVT as valid collateral, raised withdrawal limits, and deposited hundreds of millions in CVT tokens against which Drift’s risk engine issued real assets. The protocol handed over millions in JLP tokens, millions in USDC, millions in SOL, and smaller amounts of wrapped bitcoin and ethereum. Thirty-one withdrawal transactions cleared in roughly 12 minutes.

The attacker converted the stolen tokens to USDC using Jupiter, bridged to Ethereum, and swapped into tens of thousands of ETH. Some funds were routed through Hyperliquid, and a portion moved directly to Binance. On April 3, Drift sent an onchain message from an Ethereum address to four hacker-controlled wallets. The publication cryptonomist.ch reports that the message read:

“We are ready to speak.”

Security firms Elliptic and TRM Labs have attributed the attack to DPRK-linked threat actors, citing the Tornado Cash origin, the Pyongyang-time deployment signature, the social engineering focus, and the post-hack laundering speed. The Lazarus Group used the same patience and human-targeting approach in the 2022 Ronin bridge hack. The U.S. government has tied these thefts to North Korea‘s weapons program funding, and Elliptic has tracked over $300 million stolen in the first quarter of 2026 alone.

The contagion spread to more than 20 protocols. Prime Numbers Fi reported losses in the millions. Carrot Protocol paused mint and redeem functions after 50% of its TVL was affected. Pyra Protocol disabled withdrawals entirely, leaving all user funds inaccessible. Piggybank lost $106,000 and reimbursed users from its own team treasury.

DeFi Development Corp., a Nasdaq-listed company with a Solana treasury strategy, confirmed on April 1 that it had no Drift exposure. Its risk framework excluded the protocol entirely. That fact drew more attention than the company likely intended.

The Drift incident produced one clear lesson that most of the industry already knew but had not fully applied: a timelock is not optional. The removal of that single safeguard on March 27 converted a complex, multi-week attack into a 12-minute cash-out. Protocol governance without a delay mechanism is governance with an open door.

The next 48 hours following the DeFi attack were described as critical for Drift’s ability to retain user trust and map a recovery path. As of April 3, no comprehensive reimbursement plan had been announced.

FAQ 🔎

What happened to Drift Protocol? Attackers drained $286 million from Drift Protocol on April 1, 2026, using fake collateral and pre-signed administrative transactions to empty the protocol’s core vaults in 12 minutes. Who is responsible for the Drift Protocol hack? Security firms, including Elliptic and TRM Labs, have attributed the attack to DPRK-linked threat actors, citing laundering patterns and onchain timestamps consistent with Lazarus Group tradecraft. Is my money safe on Drift Protocol? Drift suspended all deposits and withdrawals following the attack; users in affected protocols like Pyra and Carrot remain unable to access funds as of April 3, 2026. What is a durable nonce attack in Solana DeFi? A durable nonce attack uses a legitimate Solana feature to pre-sign transactions that look routine, holding them as live authorization keys until the attacker chooses to execute them.



Source link

Tags: BitcoinFeaturedhappenedlostMoneyNewsWhats
ShareTweetShare
Previous Post

“Pets Alive” Polly the Interactive Electronic Pet only $14.99!

Next Post

Mortgage Rates Today, Friday, April 3: A Little Lower

Related Posts

EU Committee Advances Digital Euro CBDC Bill After Vote

EU Committee Advances Digital Euro CBDC Bill After Vote

by theadvisertimes.com
June 23, 2026
0

The creation of an EU-issued digital euro moved a step closer Tuesday after a key European Parliament committee vote.The EP's...

CZ Says Hyperliquid Found A No-KYC Niche Binance Cannot Touc

CZ Says Hyperliquid Found A No-KYC Niche Binance Cannot Touc

by theadvisertimes.com
June 23, 2026
0

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure TL;DR CZ discussed Hyperliquid’s no-KYC model...

.5M DeFi vault pulled overnight: The wake-up call for traders chasing high yields

$8.5M DeFi vault pulled overnight: The wake-up call for traders chasing high yields

by theadvisertimes.com
June 22, 2026
0

A verification dispute at MainStreet triggered a broader confidence scare across yield-bearing stablecoin products, sending more than 8.5 million USDT...

Fed Chair Kevin Warsh Faces Congress On July 14 Amid Rate Hike Debate

Fed Chair Kevin Warsh Faces Congress On July 14 Amid Rate Hike Debate

by theadvisertimes.com
June 22, 2026
0

Federal Reserve Chair Kevin Warsh will make his first monetary policy presentation to Congress on July 14. The testimony comes...

Strategy Adds 0 Million To USD Reserve As Saylor Reports 520 BTC Buy

Strategy Adds $300 Million To USD Reserve As Saylor Reports 520 BTC Buy

by theadvisertimes.com
June 22, 2026
0

Strategy has added more Bitcoin to its treasury, but the bigger signal in Michael Saylor’s latest update may be the...

Bitcoin Climbs Above ,000 as US-Iran Talks Ease Fears and Lift Risk Appetite

Bitcoin Climbs Above $65,000 as US-Iran Talks Ease Fears and Lift Risk Appetite

by theadvisertimes.com
June 22, 2026
0

Key TakeawaysBitcoin surged to an intraday high of $65,555 as U.S.-Iran peace talks eased global market anxieties.The crypto recovery lifted...

Next Post
Mortgage Rates Today, Friday, April 3: A Little Lower

Mortgage Rates Today, Friday, April 3: A Little Lower

Newt Gingrich wants to drop a nuke on the Strait of Hormuz. America actually looked at the same thing in 1977 in Latin America

Newt Gingrich wants to drop a nuke on the Strait of Hormuz. America actually looked at the same thing in 1977 in Latin America

  • Trending
  • Comments
  • Latest
Should You Offer a Concession to Get Your Apartment Leased Faster?

Should You Offer a Concession to Get Your Apartment Leased Faster?

June 15, 2026
6 Hotels Where Chase’s Points Boost Yields 2.5x

6 Hotels Where Chase’s Points Boost Yields 2.5x

May 22, 2026
Understanding risk remains a major investor blind spot: TIAA Institute

Understanding risk remains a major investor blind spot: TIAA Institute

June 5, 2026
Anthropic’s confidential S-1 signals summer AI IPO race could heat up fast

Anthropic’s confidential S-1 signals summer AI IPO race could heat up fast

June 2, 2026
Memorial Day 2026: Take Advantage of Food Freebies, Deals

Memorial Day 2026: Take Advantage of Food Freebies, Deals

May 23, 2026
9 Best Cheap Cell Phone Plans That Will Save You Money

9 Best Cheap Cell Phone Plans That Will Save You Money

June 3, 2026
Cutsinger’s Solution: Veggies and Noodles

Cutsinger’s Solution: Veggies and Noodles

0
8 Places to Sell Printables Online for Cash

8 Places to Sell Printables Online for Cash

0
Vedanta Power, Oil & Gas, and Iron shares rally up to 5%; Aluminium sheds 3%. Should you buy, sell or hold?

Vedanta Power, Oil & Gas, and Iron shares rally up to 5%; Aluminium sheds 3%. Should you buy, sell or hold?

0
The Board-Lot Reckoning: Access, Liquidity, and Governance

The Board-Lot Reckoning: Access, Liquidity, and Governance

0
EU Committee Advances Digital Euro CBDC Bill After Vote

EU Committee Advances Digital Euro CBDC Bill After Vote

0
Cisco Systems (CSCO): Neues Fundament nach Kurssprung!

Cisco Systems (CSCO): Neues Fundament nach Kurssprung!

0
EU Committee Advances Digital Euro CBDC Bill After Vote

EU Committee Advances Digital Euro CBDC Bill After Vote

June 23, 2026
Roku (ROKU) Has a CTV Operating-System and Ad Platform Bigger Than a Hardware Narrative

Roku (ROKU) Has a CTV Operating-System and Ad Platform Bigger Than a Hardware Narrative

June 23, 2026
Cisco Systems (CSCO): Neues Fundament nach Kurssprung!

Cisco Systems (CSCO): Neues Fundament nach Kurssprung!

June 23, 2026
Gen Z: if you want to succeed at work, you need to start friction-maxxing

Gen Z: if you want to succeed at work, you need to start friction-maxxing

June 23, 2026
266. “I carry the household, the bills, and the stress”

266. “I carry the household, the bills, and the stress”

June 23, 2026
Cutsinger’s Solution: Veggies and Noodles

Cutsinger’s Solution: Veggies and Noodles

June 23, 2026
theadvisertimes.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • EU Committee Advances Digital Euro CBDC Bill After Vote
  • Roku (ROKU) Has a CTV Operating-System and Ad Platform Bigger Than a Hardware Narrative
  • Cisco Systems (CSCO): Neues Fundament nach Kurssprung!
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclosures
  • About Us
  • Contact Us

© Copyright 2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

© Copyright 2024 All Rights Reserved
See articles for original source and related links to external sites.