Cryip
  • Home
  • News
  • Research & Analysis
  • Reviews & Comparisons
  • Learn Crypto
  • Features
No Result
View All Result
Cryip
  • Home
  • News
  • Research & Analysis
  • Reviews & Comparisons
  • Learn Crypto
  • Features
No Result
View All Result
Cryip
No Result
View All Result
Home News Security & Hacks

North Korea-Linked Hackers Drain $286M from Drift Protocol

Elliptic Flags State-Sponsored Attack as Hackers Compromise Admin Keys and Move Funds Across Chains

by Saravana Kumar Mahendran
April 3, 2026
in Security & Hacks
0 0
North Korea-Linked Hackers Drain $286M
Share on FacebookShare on Twitter

Solana-based decentralized perpetual futures exchange Drift Protocol suffered a major exploit on April 1, 2026, with nearly $286 million drained from its liquidity vaults. The attack shows strong technical indicators matching previous North Korean state-sponsored operations. The sophisticated breach involved unauthorized access to administrative controls and rapid fund movement across chains, making it one of the largest DeFi incidents reported this year.

Strong North Korean Connection

Elliptic’s detailed analysis reveals that the on-chain behavior, laundering patterns, and network signatures in this exploit closely match those observed in previous DPRK-attributed operations. The firm has classified the incident as suspected to be linked to North Korean actors. If confirmed, this would represent the 18th DPRK-linked crypto theft tracked in 2026 so far. North Korean groups have already stolen over $300 million this year through similar attacks, forming part of a sustained campaign that has generated more than $6.5 billion in recent years to fund the regime’s weapons and nuclear programs while evading international sanctions.

How the Hack Was Executed

Attackers compromised Drift Protocol’s administrator private keys and drained liquidity from key vaults, including JLP Delta Neutral, SOL Super Staking, and BTC Super Staking. The malicious wallet was created eight days prior and tested with a small transfer from a Drift vault. Within roughly one hour, they extracted around 41.7 million JLP tokens worth $155 million along with large quantities of USDC, SOL, wrapped BTC variants, and liquid staking tokens. The stolen funds were swiftly swapped via a Solana DEX aggregator, bridged to Ethereum, and converted primarily into ETH. Drift immediately suspended deposits and withdrawals and is working with security partners to trace the assets.

Disclaimer: Cryip is an independent media and research outlet providing news, data, and analysis on the cryptocurrency industry. Content is for informational and research purposes only and does not constitute financial, legal, tax, or investment advice. Cryptocurrency markets are volatile and past performance is not indicative of future results. References to specific assets, platforms, or incidents are for journalistic purposes only and do not imply endorsement, and readers assume full responsibility for their decisions.
Tags: Crypto Hacks

Related Posts

Wasabi Protocol Hit by Multi-Chain Exploit
Security & Hacks

Wasabi Protocol Hit by Multi-Chain Exploit, Over $5 Million Drained

by Saravana Kumar Mahendran
April 30, 2026

Wasabi Protocol, a decentralized perpetuals and leveraged trading platform, has suffered a major security breach with funds stolen across Ethereum,...

Read moreDetails
Aftermath Finance Exploit

Aftermath Finance Exploit: $1.14M USDC Drained from Sui Perpetuals Protocol

April 29, 2026
ZetaChain GatewayEVM Hack

ZetaChain GatewayEVM Hack: $300K Loss from Team Wallets, Cross-Chain Transactions Paused

April 28, 2026
North Korean AI Hack on Zerion

North Korean AI Hack Hits Zerion, $100K Lost in Social Engineering Attack

April 15, 2026
Polkadot Bridge Exploit

Polkadot Bridge Exploit Technical Incident Analysis

April 13, 2026
Hyperbridge Exploit

Polkadot Bridge Exploit: 1B Fake DOT Minted on Ethereum

April 13, 2026
SubQuery Staking Contract Exploit

SubQuery Staking Contract Exploit Triggers Withdrawals Pause

April 13, 2026
Next Post
Cambodia Senate Passes Tough New Law Targeting Technology-Based Fraud

Cambodia Targets Online and Crypto Scams with Tough New Legal Measures

Cryip focuses on crypto research and on-chain analysis, supported by coverage of markets, regulation, security events, and blockchain ecosystems.

Recent Posts

  • Blockworks Raises Series A Extension at $192M Valuation Amid Push for Crypto Market Transparency
  • Wasabi Protocol Hit by Multi-Chain Exploit, Over $5 Million Drained
  • Tether Leads $14 Million Investment in Argentine Crypto Firm Belo

Categories

  • AI × Crypto
  • Data & Dashboards
  • Market Updates
  • On-Chain Analysis
  • OpSec
  • Policy & Regulation
  • Post Mortems
  • Reports
  • Scams & Fraud
  • Security & Hacks
  • Stablecoins
  • Tokenomics
  • VC & Funding

Company

  • About Us
  • Contact Us
  • Editorial Standards & Integrity
  • Our Team
  • Privacy Policy
  • Review Methodology
  • Terms and Conditions
  • Trust, Disclosures & Independence

© 2026 Cryip - Research-Driven Crypto Analysis & News by Hashlays.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • News
  • Research & Analysis
  • Reviews & Comparisons
  • Learn Crypto
  • Features

© 2026 Cryip - Research-Driven Crypto Analysis & News by Hashlays.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.