🌐 Nation-State Threats

Drift's $285M Nightmare: DPRK's Nonce Social Engineering Masterclass

Drift got nonce'd. Hard. North Korea's hackers just turned social engineering into high art, draining $285 million from a 'secure' Solana DEX.

Digital illustration of North Korean hackers manipulating Solana blockchain nonces to drain Drift Protocol funds

⚡ Key Takeaways

  • DPRK used durable nonces and social engineering to bypass Drift's multisig without touching code. 𝕏
  • Attack mirrors Bybit 2025 heist, with $285M laundered via Tornado Cash and bridges. 𝕏
  • Multisig isn't secure if humans can be conned; DeFi needs signerless defenses now. 𝕏
Published by

Threat Digest

Threat intelligence. Zero noise.

Worth sharing?

Get the best Cybersecurity stories of the week in your inbox — no noise, no spam.

Originally reported by The Hacker News

Stay in the loop

The week's most important stories from Threat Digest, delivered once a week.