Lido declares protocol ‘fully secure’ after oracle attack sparks emergency DAO vote

Lido declares protocol ‘fully secure’ after oracle attack sparks emergency DAO vote

The post Lido declares protocol ‘fully secure’ after oracle attack sparks emergency DAO vote appeared on BitcoinEthereumNews.com.

Ethereum staking protocol Lido has confirmed that it remains “fully secure and operational” following a breach in which an attacker compromised one of its protocol reporting oracles.  The attack resulted in the theft of nearly 1.5 ETH, prompting an emergency DAO vote to rotate the oracle’s address. According to Chorus One, the operator of the oracle, the incident appears to be an “isolated event” with no further threats to the protocol.  The operator continued to say that they have thoroughly audited their entire infrastructure and found no evidence of broader compromise. Blockchain data shows that the attacker drained 1.46 ETH worth about $3,800 from the compromised address.  Chorus One says the investigation is ongoing, and a full postmortem will be shared once it is concluded. The exploiter’s activity suggests using an automated system rather than a targeted attack. Lido breach sparks renewed focus on oracle security and DeFi resilience While the breach led to the drain of the oracle address’s ETH balance (which was purposely held at a low level, Chorus One said), the attack did not affect Lido’s operations, as its protocol reporting oracles needs a 5-of-9 consensus.  Lido’s head of validators, Izzy, commented that in the worst-case scenario, compromised oracles could cause delays in stETH rebases, whether positive or negative. This would primarily affect stETH holders, but the impact would be negligible, except for those using stETH in leveraged DeFi strategies. The Lido DAO vote to rotate the compromised address currently has unanimous support, though it has not yet reached a quorum.  Izzy continued to say that oracles are complex and have different usages across DeFi. He noted that in Lido, they’re an integral part of the protocol, and possible negative impact is meaningfully mitigated through effective decentralization, segregation of duties, and multiple layers of checks. The breach…