Lazarus Group Suspected of Moving $175M in ETH After Arbitrum Freezes $71M From KelpDAO Exploit

North Korea’s Lazarus Group is preliminarily attributed with draining approximately $292 million in rsETH from KelpDAO on April 18, 2026. The state-backed hacking entity has been responsible for billions of dollars stolen from the crypto industry over the last few years. Key Takeaways: Lazarus Group drained 116,500 rsETH from KelpDAO on April 18. The Arbitrum … Read more

Aave Freeze Sparks Immediate Exit of $274M

The Aave rsETH/wrsETH market froze abruptly, leading to a rapid series of withdrawals, including one notable exit tied to a wallet connected with Justin Sun. And this whopper of a withdrawal highlighted both the speed and weaknesses that come along with DeFi (decentralized finance), just minutes after the platform ceased trade. On April 18 at … Read more

Incident Report: Llamarisk, Aave Service Providers Detail Kelp rsETH Hack Across Ethereum and Arbitrum Markets

An incident report published by Llamarisk to the Aave forum explains that a bridge exploit targeting KelpDAO’s Layerzero V2 rsETH route on Saturday allowed an attacker to extract 116,500 rsETH from Ethereum’s OFT adapter without burning any tokens on the source chain. Llamarisk’s report notes that this incident exposed Aave V3 markets to potential bad … Read more

ZachXBT Flags $280M+ KelpDAO Exploit Hitting Ethereum DeFi Lending Markets

An attacker reportedly exploited a minting flaw in KelpDAO’s rsETH liquid restaking token on April 18, 2026, draining an estimated $280 million or more across Ethereum and Arbitrum. Key Takeaways: ZachXBT flagged a $280M+ theft across Ethereum and Arbitrum DeFi protocols on April 18, 2026. KelpDAO’s rsETH minting flaw created bad debt on Aave V3, … Read more

Chainalysis Details ‘Shadow Crypto Economy’ Exposure as Grinex Suspends Operations

Grinex’s shutdown is intensifying scrutiny of crypto laundering tactics, as fund movements suggest behavior inconsistent with typical enforcement actions. Chainalysis analysis highlights patterns that raise questions about whether the activity aligns with a conventional external hack or alternative explanations. Key Takeaways: Chainalysis flags Grinex swaps as inconsistent with typical law enforcement seizures. Tron-based conversions show … Read more

Circle Faces Lawsuit After Drift Exploit Over Claims It Took No Action to Freeze the Funds

Crypto infrastructure providers are under rising pressure as a new lawsuit tests whether technical control can bring legal responsibility after a major hack. The case against Circle could influence how courts treat stablecoin and bridge operators during active breaches. Key Takeaways: Circle faces claims it failed to freeze stolen USDC after the Drift Protocol exploit. … Read more

Sanctioned Exchange Grinex Hit by $13.7M Hack; Blames Foreign Intelligence Services

The sanctioned crypto-ruble exchange Grinex has suspended all operations following a high-level cyberattack that resulted in the theft of over $13.74 million worth of tether stablecoins. Key Takeaways: Grinex halts operations after a state-level hack drains over 1 billion rubles in USDT from user wallets. The 2025 takeover of Garantex solidified Grinex as a primary … Read more

Tether Steps In With $150M Support Plan After Drift Protocol Loses $285M in Exploit

Tether announced a recovery plan of up to $150 million to help Drift Protocol users recoup losses from an April 1 exploit that drained approximately $285 million from the Solana-based trading platform. Key Takeaways: Tether committed up to $127.5 million toward Drift Protocol’s recovery plan following the April 1, 2026 exploit. The $150 million recovery … Read more

Cow Protocol Halts Trading After Frontend Domain Hijack

Cow Swap, a decentralized exchange aggregator built on Cow Protocol, paused its protocol Monday after attackers hijacked the DNS records for its main frontend at swap.cow.fi. Key Takeaways: Cow Swap’s frontend at swap.cow.fi was hijacked via DNS at 14:54 UTC on April 14, 2026. Cow DAO paused Cow Protocol’s APIs and backend as a precaution, … Read more

You have not selected any currencies to display