DeFi TVL 在 KelpDAO 桥被利用后下跌 14%

DeFi 各类别的总锁定价值自 4 月中旬以来已大幅下跌约 14%,从约 1720 亿美元降至 1480 亿美元。此次下滑与 4 月 18 日 KelpDAO 跨链漏洞利用事件相吻合,该事件不仅本身造成影响,也在更广泛范围内笼罩了 DeFi 情绪。在 4 月 18 日,据称与朝鲜的 Lazarus Group 有关的攻击者利用了 KelpDAO 的 LayerZero 跨链,窃取了约 2.92 亿美元(116,500 rsETH)。此次攻击针对的是链下基础设施,而非智能合约漏洞,通过操纵内部 RPC 节点并压垮外部验证者,将虚假数据输入到一种单点故障的验证设置中,诱使目标链在源链上的“虚假销毁”情形下释放资金。

DeFi Sectoral Impact

Lending, the largest DeFi category, experienced the steepest decline, falling from approximately $53 billion to $40 billion over the period. Liquid restaking protocols also recorded notable declines.

Attack Mechanism Details

The KelpDAO exploit targeted LayerZero’s bridge infrastructure through a compromise of off-chain systems. Attackers manipulated internal RPC nodes and overwhelmed external validators to inject false data into a verification setup with a single point of failure. This mechanism tricked the destination chain into releasing funds against a phantom burn recorded on the source chain, rather than exploiting a smart contract vulnerability.

Market Sentiment and Capital Withdrawal

Outflows have persisted for over five weeks following the exploit. Users who exited following the attack have largely not returned, indicating a broader withdrawal of marginal capital rather than a technical re-rating of specific protocols. The pattern reflects how high-profile infrastructure failures reduce risk appetite across the DeFi sector rather than remaining contained to the affected protocol.

不断演变的 DeFi 风险面

KelpDAO 的攻击凸显了 DeFi 威胁格局的变化。随着智能合约安全性不断提升,链下基础设施已成为更可被利用的一层——而现有的监测框架仍在追赶这一风险。

免责声明:以上内容(如有图片或视频亦包括在内)均为平台用户上传并发布,本平台仅提供信息存储服务,对本页面内容所引致的错误、不确或遗漏,概不负任何法律责任,相关信息仅供参考。

本站尊重他人的知识产权、名誉权等法律法规所规定的合法权益!如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到qklwk88@163.com,本站相关工作人员将会进行核查处理回复

(0)
上一篇 2026年5月27日 上午4:07
下一篇 2026年1月16日 上午9:12

相关推荐

风险提示:理性看待区块链,提高风险意识!