How a Solana feature designed for convenience let attackers drain more than $270 million from Drift
Burns Brief
The exploit did not involve a bug in Drift's code Market participants are carefully weighing the implications, with the outcome likely to depend on broader macro conditions and volume. Watch $SOL for reaction — a decisive move above or below key levels will confirm the next trend.
The exploit did not involve a bug in Drift's code. It used "durable nonces," a legitimate Solana transaction feature, to pre-sign administrative transfers weeks before executing them, bypassing the protocol's multisig security in minutes.
Key Takeaways
- It used "durable nonces," a legitimate Solana transaction feature, to pre-sign administrative transfers weeks before executing them, bypassing the protocol's multisig security in minutes