DeFi losses surge as Kelp DAO rsETH exploit triggers Aave outflows
DeFi losses accelerated in April after two major hacks. Kelp DAO’s restaked-ether (rsETH) bridge was exploited for about $292M over the weekend, bringing total April DeFi losses to over $580M. Earlier on April 1, Drift Protocol suffered a $285M incident.
The Kelp DAO breach drove rapid deleveraging risk on Aave, one of the largest Ethereum lending/borrowing protocols. Although Aave said its smart contracts were not directly affected, the rsETH support mechanism collapsed outside Aave. Aave reported roughly $196M in bad debt. In response, users withdrew more than $6B from Aave, and AAVE fell over 18% during the weekend.
Security experts also highlighted how cross-chain verification failures are being weaponized. Attackers allegedly used a LayerZero messaging-layer configuration to inject a forged command and mint about 116,500 rsETH on Ethereum.
A central theme behind the worsening picture is the rise of AI-driven attacks. The article cites research suggesting exploit capability doubles about every 1.3 months, and AI security agents outperform standard coding agents in finding smart-contract vulnerabilities.
Traders may see near-term volatility and reduced risk appetite in DeFi until confidence in collateral mechanisms and cross-chain infrastructure improves. Longer term, the gap between fast protocol deployment and slower continuous auditing could keep pressure on DeFi risk premia, especially for bridge and restaking-related designs.
Bearish
这则新闻的直接信号是“DeFi losses→TVL/抵押信心快速恶化”。类似历史上大型利用事件(如桥被盗、稳定币/抵押机制失效)那样,市场往往先触发链上赎回与被动风控,再通过代币下跌反映风险重估。此次Kelp DAO的rsETH桥攻击导致Aave出现坏账、资金在短时间内从Aave外撤(>60亿美元),并使AAVE周末下跌18%+,符合“先恐慌出逃、后风险定价”的典型路径。
短期影响:DeFi板块情绪偏弱,流动性与杠杆意愿下降,桥接/再质押/跨链相关资产可能更容易被交易端降仓或提高保证金要求,带来波动。
长期影响:文章强调AI驱动攻击与自动化扫描能力提升,以及审计/持续验证跟不上协议上线速度的结构性问题。这意味着DeFi需要更严格的跨链验证与持续安全测试,否则风险溢价可能长期偏高,推动市场在“可验证性更强、隔离更好”的协议中进行再分配。总体偏空。