North Korea Lazarus Group Drained 292M From DeFi
20 April 2026

North Korea Lazarus Group Drained 292M From DeFi

Protocol

About
North Korea's Lazarus Group just walked away with 292 million dollars in crypto by poisoning the infrastructure behind a bridge so badly configured it had one single security verifier—despite repeated warnings to add more. They didn't hack the code, they cut the phone lines and forced the system to use compromised backup nodes, then minted tokens out of thin air and used them as collateral across nine major DeFi protocols before anyone could blink. Aave is staring down 177 million in bad debt, their insurance vault got completely wiped out, and this exact vulnerability exists right now on other protocols that haven't disclosed it yet.