☁️ Cloud & Infrastructure

Fake Token Hijacks Solana's Drift Governance — $285M Gone in 12 Minutes

DeFi expected smart contract carnage. Instead, a phony token and tricked signers let hackers siphon $285M from Solana's Drift Protocol in minutes. Governance just became the new battlefield.

Diagram of fake token attack draining funds from Solana's Drift Protocol

⚡ Key Takeaways

  • Governance and social engineering, not code bugs, enabled the $285M Drift heist.
  • Likely North Korean attackers used fake token CVT to fool oracles and multisig signers.
  • This hack predicts AI-driven governance tools as DeFi's next evolution.
Published by

DevTools Feed

Ship faster. Build smarter.

Worth sharing?

Get the best Developer Tools stories of the week in your inbox — no noise, no spam.

Originally reported by Hacker News

Stay in the loop

The week's most important stories from DevTools Feed, delivered once a week.