‹ Back to Home

Kelp DAO Bridge Hack: $292 M rsETH Vanished in One Go

A LayerZero‑powered cross‑chain bridge run by Kelp DAO was hit hard – an attacker drained almost $292 million worth of rsETH and forced the team to pause every rsETH contract.

Keerthika 3 min read 209
Follow on Google
Security Kelp DAO Bridge Hack: $292 M rsETH Vanished in One Go 3 min left Follow on Google
Kelp DAO Bridge Hack: $292 M rsETH Vanished in One Go

TamilTech AI summary

An unknown attacker drained about $292 million in rsETH from the Kelp DAO bridge in one transaction by abusing its LayerZero-based cross-chain router that moves the token between Ethereum, Optimism, and other L2s. They hit the bridgeRouter with malformed payloads that triggered a re-entrancy-style bug, letting them mint rsETH on the destination chain without locking the real underlying assets on the source side. Kelp’s team paused the contracts within roughly five minutes to halt further loss, and they are now running a full audit, planning a move to a LayerZero v2 endpoint, and setting up a compensation fund plus a white-hat bounty. This matters because many users (including Indian DeFi folks) treat rsETH as a yield-bearing ETH alternative, yet even holders who never touched the bridge directly now face frozen contracts and cannot withdraw, swap, or bridge until an official unpause. Check your wallet for any paused flag, skip all rsETH bridging or trading until Kelp confirms it is safe, consider alternatives like wstETH or stETH in the meantime, and follow Kelp’s Discord and Twitter for patch updates while remembering that cross-chain bridges still carry real smart-contract risk.

  • Attacker drained ~$292 M rsETH via a LayerZero bridge bug.
  • Kelp paused all rsETH contracts within minutes to limit damage.
  • Indian DeFi users should pause rsETH activities and watch for official updates.

AI-assisted summary, checked by the TamilTech editorial team.

0:00
0:00
🔒 Listen is for subscribers. Subscribe

What happened?

In a single transaction an unknown attacker exploited the Kelp DAO bridge, a LayerZero‑based cross‑chain router that lets users move rsETH between Ethereum, Optimism and other L2s. The exploit emptied roughly $292 million (around ₹24 billion) of rsETH from the system. Within minutes Kelp’s devs hit the emergency stop and froze all rsETH contracts to stop further loss.

How the bridge works (in a nutshell)

Kelp’s bridge is built on LayerZero – a messaging protocol that lets smart contracts on different chains talk to each other as if they were on the same chain. When you deposit rsETH on Ethereum, the bridge locks the original tokens and mints a wrapped version on the destination chain. The reverse works the same way: burn the wrapped token, unlock the original.

Where the attack hit

The attacker targeted the bridgeRouter contract that coordinates the mint‑and‑burn process. By feeding malformed payloads to LayerZero’s endpoint, they triggered a re‑entrancy style bug that allowed them to mint rsETH on the destination chain without actually locking the underlying ETH on the source chain. In short, they created money out of thin air.

Numbers at a glance

  • Total value stolen: ~$292 M (≈₹24 B)
  • Chains affected: Ethereum, Optimism, Arbitrum
  • Number of rsETH tokens minted illicitly: ~250,000 rsETH
  • Time to pause contracts: ~5 minutes after the first alert

Why Indian users should care

Many Indian DeFi enthusiasts have been using rsETH as a low‑risk yield‑bearing asset on Polygon and Optimism because it offers higher APY than plain ETH staking. If you hold rsETH in a wallet that wasn’t directly interacting with the Kelp bridge, you’re still at risk because the contracts are now paused – you can’t withdraw, swap or bridge until Kelp releases a fix. This also raises a red flag for any Indian project that relies on LayerZero for cross‑chain messaging. A breach like this could ripple into other protocols that share the same endpoint.

What Kelp is doing now

The team announced a full audit of the bridge code, a migration plan to a new LayerZero v2 endpoint, and a compensation fund that will be funded by Kelp’s treasury and community contributors. They also opened a bounty for white‑hat hunters who can locate any remaining vulnerabilities.

TamilTech’s take

Honestly, this is a wake‑up call for everyone building on cross‑chain infrastructure. LayerZero is powerful, but it’s still young, and the security model is complex – you’re essentially trusting a third‑party relayer with your message integrity. Indian developers should start diversifying: use multi‑chain bridges, audit every external call, and keep a hot‑wallet buffer for emergency withdrawals.

What you can do right now

  1. Check your wallet: if you hold rsETH, look for a ‘paused’ flag on the token contract.
  2. Do NOT try to bridge or trade rsETH until Kelp posts a official “unpause” notice.
  3. Consider moving to alternative wrapped ETH solutions like wstETH or Lido’s stETH, which have separate bridge mechanisms.
  4. Stay tuned to Kelp’s Discord and Twitter for the latest patch notes.

Looking ahead

We expect Kelp to launch a patched bridge within the next two weeks. In the meantime, the incident will likely push other DeFi projects to re‑evaluate their reliance on a single messaging layer. For Indian investors, the lesson is clear: spread risk across multiple protocols and keep an eye on bridge health dashboards.

Stay safe, keep your private keys private, and remember – in DeFi, the only guarantee is that you’re responsible for your own security.

Get tomorrow’s tech news on WhatsApp

One short update a day, free. Follow the TamilTech channel.

What do you think?

people reacted

Keerthika

TamilTech editorial team · 3,344 articles

Keerthika is an editor at TamilTech, the Tamil and English technology publication founded by Praveen Kumar S. She covers AI, smartphones, gadgets, EVs, startups and cybersecurity i...

More from Keerthika

Ask TamilTech on WhatsApp

Tech doubt? Ask in Tamil or English — our WhatsApp assistant answers from TamilTech articles in seconds.

Related stories

Comments (0)

| Supports **bold**, *italic*, `code`

Be the first to comment!

Next story PixelLeak: How AI Coding Agents Put 13,000 Internal Screenshots on Public GitHub
Tamiltech

Tamiltech

Install app for faster access

Earn XP 🏆
WhatsApp
Notifications