Solana Foundation to Provide Security for DeFi Protocols After Drift Hack
永远满仓
04-08 02:11
Ai Focus
The Solana Foundation and Asymmetric Research have introduced STRIDE, a security program for DeFi protocols with over $10 million TVL, offering 24/7 threat monitoring and formal verification for those with over $100 million TVL. This initiative aims to enhance security as attackers target Solana's growing locked value.
Helpful
No.Help

Nearly a week after a prominent Solana-based decentralized exchange was hit with a $285 million hack that’s been linked to North Korean hackers, the Solana Foundation has revealed plans to help secure the network’s largest DeFi protocols.

The Solana Foundation and Asymmetric Research launched STRIDE, a tiered security program that provides 24/7 threat monitoring for DeFi protocols with over $10 million in total value locked (TVL). For protocols with over $100 million TVL, the Foundation will offer “formal verification”—described in a post as “a mathematical, proof-based method that guarantees smart contract correctness by exhaustively checking every possible state and execution path.”

STRIDE—or Solana Trust, Resilience and Infrastructure for DeFi Enterprises—evaluates protocols against security standards before providing ongoing protection services. The initiative marks a significant escalation in blockchain security infrastructure as attackers target Solana's growing billions in locked value with increasingly sophisticated methods.

The program launched alongside the Solana Incident Response Network (SIRN), a membership-based collective of security firms dedicated to rapid ecosystem defense. Founding participants include Asymmetric Research along with OtterSec, Neodyme, Squads, and ZeroShadow. The framework will evolve based on real-world assessment feedback, with version 0.1 currently live.

The timing underscores an urgent need—Drift Protocol suffered an exploit where attackers drained $285 million in under 12 minutes on April 1, demonstrating the speed and scale at which modern DeFi vulnerabilities can be exploited. Drift said on Sunday that it discovered that North Korean hackers had spent six months infiltrating its team and infrastructure before executing the attack.

Such incidents highlight why major blockchain networks are taking more direct responsibility for ecosystem-wide security rather than leaving individual protocols to defend themselves.

The tiered approach based on TVL thresholds reflects how layer-1 networks are institutionalizing security as decentralized finance matures. Rather than treating all protocols equally, STRIDE allocates resources proportionally to risk—acknowledging that protocols managing hundreds of millions of dollars' worth of assets require different protection than smaller experiments.

This shift recognizes that individual smart contract audits alone cannot match the innovation pace of adversaries targeting blockchain infrastructure. Rapidly advancing AI is also a key concern, as it can help attackers and developers alike find flaws.

An upcoming Anthropic AI model codenamed Claude Mythos is being viewed as a particular threat to cybersecurity—so much so that top cybersecurity stock prices fell late last month when first details of the model were leaked. On the other hand, a recently fixed Zcash software exploit was discovered with the help of AI tooling.

Tip
$0
Like
0
Save
1
Views 242
WalletJYS reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
Ethereum: Ethereum MEV Bot Launches a $7.8 Million rsETH Attack
An attack attempt on Ethereum worth approximately $7.8 million rsETH was preempted by a MEV bot, exposing authorization verification issues with the executor related to the Safe module.
Cryptonews
·2026-09-16 01:09:12
7
The Trump administration claims that the risks associated with AI can be managed by companies on their own.
The Trump administration claims that the risks associated with AI can mainly be managed by companies, while Democratic lawmakers are calling for more regulatory constraints.
CNBC
·2026-09-16 01:09:09
7
Significant cyberattacks frequent in 2026, affecting governments and AI platforms
TechCrunch Review of Major Cyber Attacks in 2026, Involving Government Data, Critical Infrastructure, Meta AI Vulnerabilities, and Open Source Supply Chain Security.
TechCrunch
·2026-09-16 00:45:30
11
U.S. Energy Secretary says Saudi oil pipeline outage lasted only a few days
U.S. Energy Secretary says Saudi east-west crude oil pipeline outage is expected to last only a few days; market focuses on the impact of Middle East tensions on crude supply and oil prices.
CNBC
·2026-09-16 00:45:27
13
web3: The US Department of Justice initiates a confiscation case regarding $61 million in crypto assets
The US Department of Justice stated that the relevant crypto assets are linked to Iran's oil sales revenues, and the case involves the Binance account and two Chinese companies.
The Cryptonomist
·2026-09-16 00:45:21
13
View More