Skip to content
Blockchain

Why can a single compromised validator approve a $300M bridge withdrawal?

85

Möglichkeit

Omnichain messaging protocols let bridge deployers choose how many independent verifiers must sign a cross-chain message before funds move. In April 2026, KelpDAO lost $292M because their bridge ran with a single DVN, a configuration that every smart contract audit had cleared because the contract code itself was correct. The exploit did not require finding a code bug; it required compromising one off-chain operator and forging one message. No on-chain enforcement today prevents a bridge from going live with a 1-of-1 setup, and there is no audit standard that covers DVN configuration semantics rather than bytecode logic.

Warum es wichtig ist

Billions in bridge TVL sit behind audit processes that read code but treat the configuration parameters that actually determine trust minimization as out of scope.

Wie ich die Chance bewerte

Der Opportunity Score ist meine persönliche Einschätzung, keine Messung: wie stark es schmerzt, wie oft es auftritt und wie wenig heute existiert, um es zu lösen. Ein höherer Wert bedeutet, dass ich es für lohnender halte, es umzusetzen.

Schweregrad9/10

Wie viel Schmerz es verursacht, wenn es auftritt.

Häufigkeit7/10

Wie oft Menschen tatsächlich darauf stoßen.

Whitespace8/10

Wie wenig gute Werkzeuge dafür heute existieren.

Weitere lösungswürdige Probleme