Articles
Solana

Drift explains $280M exploit as critics question Circle over USDC freeze

User Image

โดย ไม่ระบุชื่อ

สร้างแล้ว April 02, 2026|อ่านใน 2 นาที
Main Image

Drift said a durable nonce attack helped drive its Solana exploit, as critics questioned why stolen USDC moved for hours without a freeze.

Drift Protocol, a Solana-based decentralized exchange (DEX), confirmed Thursday it was targeted in a roughly $280 million exploit, describing it as a “highly sophisticated operation.”

The platform took to X on to share its findings from a preliminary investigation, saying that the attackers exploited Solana’s durable nonces, a mechanism enabling pre-signed transactions, to seize control and drain funds. The protocol had earlier said it was experiencing an active attack and suspended deposits and withdrawals while coordinating with security firms, bridges and exchanges.

The attack began on Wednesday, with the theft involving multiple assets, including Circle’s USDC (USDC) and various altcoins. Onchain data later showed that the exploiter swapped the majority of assets into USDC, with the funds later bridged to Ethereum.

The incident has attracted scrutiny not only because it appears to involve abuse of a legitimate Solana transaction feature rather than a plain smart contract failure, but also for how funds moved across chains for hours without being frozen, raising questions about intervention by centralized stablecoin issuers.

Solana’s durable nonces are a unique feature allowing transactions to bypass certain expiration windows and enabling users to pre-sign transactions for future execution, offline signing, or complex multisig workflows.

Drift said the attacker used durable nonce-based, pre-signed transactions to gain unauthorized administrative access and execute malicious actions quickly after submission.

Durable nonces have not been widely associated with major exploits on their own, but developers have noted that features enabling delayed execution can introduce complexity and potential risks if misused or combined with other vulnerabilities.

The incident has sparked criticism of the USDC issuer Circle, as the attacker took hours to swap $270 million to the stablecoin before bridging to Ethereum.

Onchain sleuth ZachXBT and others said the company had at least six hours to freeze funds but did not act, contrasting the response with previous cases where wallets were blacklisted.

Some industry figures pointed to the gap between Circle’s ability to freeze funds and any obligation to do so.

“Circle could freeze it. But they’re not required to,” pseudonymous user Molu wrote on X, adding that proposed regulatory frameworks such as the GENIUS Act could change that dynamic by requiring intervention under finalized rules.

Related: Balancer Labs shuts down 4 months after $100M+ exploit, protocol to continue

The incident marks yet another case in the ongoing debate over intervention by centralized platforms during attacks, with ZachXBT repeatedly criticizing Circle over the issue.

The investigator previously questioned Circle’s response to USDC tied to a Bybit-related hack in late February, prompting a response from Circle CEO Jeremy Allaire, who said the company acts on law enforcement requests before freezing funds.

Magazine: Nobody knows if quantum secure cryptography will even work

Source: CoinTelegraph


บทความอื่นๆที่เผยแพร่เมื่อเร็วๆนี้

Four signs that Bitcoin has recovered to ‘full’ bullish momentum
Four signs that Bitcoin has recovered to ‘full’ bullish momentum

Bitcoin

Expanding Bitcoin price momentum, recovering liquidity and surging network activity all point to con...

Ethereum derivatives unfazed by DeFi hacks: Can ETH hit $2.6K next?
Ethereum derivatives unfazed by DeFi hacks: Can ETH hit $2.6K next?

Ethereum

ETH futures and options signal quiet confidence among pros despite macro headwinds and DeFi exploits...

XRP traders say bullishness ‘growing’ as ETFs log largest inflow since January
XRP traders say bullishness ‘growing’ as ETFs log largest inflow since January

Crypto Market Analysis

XRP analysts highlighted the potential for a sustained price rally, fueled by strong institutional d...

Latest version of crypto market structure bill raises eyebrows ahead of Senate markup
Latest version of crypto market structure bill raises eyebrows ahead of Senate markup

Crypto Market Analysis

Some lawmakers continue to push for ethics provision in the bill as bipartisan support is necessary ...

WAIB Summit Monaco 2026 returns: the world’s most exclusive gathering for digital assets & AI
WAIB Summit Monaco 2026 returns: the world’s most exclusive gathering for digital assets & AI

Casino

Following the resounding success of its 2025 edition, WAIB Summit Monaco proudly announces its retur...

DTCC to use Chainlink to power 24/7 collateral management network
DTCC to use Chainlink to power 24/7 collateral management network

Crypto Market Analysis

The world’s largest post-trade infrastructure provider will integrate Chainlink technology into it...