The post $280M drained via social engineering appeared on BitcoinEthereumNews.com. A sophisticated attack has shaken DeFi, with the drift protocol hack exposingThe post $280M drained via social engineering appeared on BitcoinEthereumNews.com. A sophisticated attack has shaken DeFi, with the drift protocol hack exposing

$280M drained via social engineering

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

A sophisticated attack has shaken DeFi, with the drift protocol hack exposing critical weaknesses in operational security and transaction approvals.

How $280 million was drained from Drift Protocol

On Drift Protocol, attackers managed to drain about $280 million from an associated wallet, impacting nearly half of its funds. According to the team, this was a highly organized operation that unfolded over time rather than a simple, opportunistic theft.

Moreover, the exploit centered on pre-signed durable nonce transactions. These special transactions can be executed later, outside normal timing expectations. The attacker waited and then triggered them at a strategic moment, converting a routine operational mechanism into a powerful attack vector.

Social engineering and multisig manipulation

However, the core of the incident did not lie in code. Instead, the attacker reportedly used targeted social engineering to mislead several multisig signers. By building trust and crafting convincing messages, they persuaded signers to approve dangerous actions without recognizing the underlying risk.

This process allowed the attacker to secure an administrative privilege takeover on critical infrastructure linked to the protocol. With elevated permissions in hand, they could authorize movements of funds and execute those delayed transactions, resulting in the large-scale drain of assets.

Why this was not a smart contract failure

The team explicitly clarified that the breach was not due to a smart contract bug clarification or any flaw in the protocol’s code. Seed phrases and core wallet keys also remained uncompromised. That said, the combination of delayed transaction tools and human deception created an effective off-chain vulnerability.

In its internal drift protocol analysis, the project stressed that code audits alone cannot prevent this type of attack. Instead, stronger procedures around signer verification, out-of-band confirmations, and transaction limits are required when using powerful administrative wallets.

Lessons from the drift protocol hack for DeFi security

The drift protocol hack highlights how human factors can undermine even well-audited systems. Moreover, it shows that durable nonce mechanisms and multisig setups must be paired with strict policies, including multi-channel confirmations and contextual checks before approvals.

For the wider ecosystem, this incident will likely inform future drift protocol security update practices and broader DeFi standards. In particular, protocols may revisit their use of pre-signed transactions, rethink signer rotation policies, and insist on continuous education against multisig social engineering attack attempts.

Ultimately, the event stands as a detailed wallet funds drained exploit case study. It underlines the need to treat operational security, signer behavior, and off-chain communication with the same rigor as on-chain code, especially wherever large administrative wallets control user assets.

Source: https://en.cryptonomist.ch/2026/04/02/drift-protocol-hack/

Market Opportunity
Drift Protocol Logo
Drift Protocol Price(DRIFT)
$0.03698
$0.03698$0.03698
+1.03%
USD
Drift Protocol (DRIFT) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Trump's allies set a trap — don't fall for it

Trump's allies set a trap — don't fall for it

Friends,When I was very young and frustrated about one thing or another, my mother reassured me that “everything works out in the end.”Her optimism used to drive
Share
Rawstory2026/05/11 05:32
Adoption Leads Traders to Snorter Token

Adoption Leads Traders to Snorter Token

The post Adoption Leads Traders to Snorter Token appeared on BitcoinEthereumNews.com. Largest Bank in Spain Launches Crypto Service: Adoption Leads Traders to Snorter Token Sign Up for Our Newsletter! For updates and exclusive offers enter your email. Leah is a British journalist with a BA in Journalism, Media, and Communications and nearly a decade of content writing experience. Over the last four years, her focus has primarily been on Web3 technologies, driven by her genuine enthusiasm for decentralization and the latest technological advancements. She has contributed to leading crypto and NFT publications – Cointelegraph, Coinbound, Crypto News, NFT Plazas, Bitcolumnist, Techreport, and NFT Lately – which has elevated her to a senior role in crypto journalism. Whether crafting breaking news or in-depth reviews, she strives to engage her readers with the latest insights and information. Her articles often span the hottest cryptos, exchanges, and evolving regulations. As part of her ploy to attract crypto newbies into Web3, she explains even the most complex topics in an easily understandable and engaging way. Further underscoring her dynamic journalism background, she has written for various sectors, including software testing (TEST Magazine), travel (Travel Off Path), and music (Mixmag). When she’s not deep into a crypto rabbit hole, she’s probably island-hopping (with the Galapagos and Hainan being her go-to’s). Or perhaps sketching chalk pencil drawings while listening to the Pixies, her all-time favorite band. This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Center or Cookie Policy. I Agree Source: https://bitcoinist.com/banco-santander-and-snorter-token-crypto-services/
Share
BitcoinEthereumNews2025/09/17 23:45
Why Ethereum Took a Bigger Hit Than Bitcoin After Trump’s Iran “Stone Ages” Speech

Why Ethereum Took a Bigger Hit Than Bitcoin After Trump’s Iran “Stone Ages” Speech

The post Why Ethereum Took a Bigger Hit Than Bitcoin After Trump’s Iran “Stone Ages” Speech appeared first on Coinpedia Fintech News While the entire crypto market
Share
CoinPedia2026/04/02 17:45

KAIO Global Debut

KAIO Global DebutKAIO Global Debut

Enjoy 0-fee KAIO trading and tap into the RWA boom