惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

www.infosecurity-magazine.com
www.infosecurity-magazine.com
Security Archives - TechRepublic
Security Archives - TechRepublic
TaoSecurity Blog
TaoSecurity Blog
Cloudbric
Cloudbric
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
N
News and Events Feed by Topic
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
S
Securelist
The Cloudflare Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
D
DataBreaches.Net
S
Schneier on Security
L
LangChain Blog
Jina AI
Jina AI
M
MIT News - Artificial intelligence
Recent Announcements
Recent Announcements
T
Tenable Blog
B
Blog RSS Feed
V
Visual Studio Blog
Simon Willison's Weblog
Simon Willison's Weblog
G
Google Developers Blog
T
The Exploit Database - CXSecurity.com
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
WordPress大学
WordPress大学
W
WeLiveSecurity
I
InfoQ
The Hacker News
The Hacker News
雷峰网
雷峰网
月光博客
月光博客
P
Privacy & Cybersecurity Law Blog
O
OpenAI News
Hacker News: Ask HN
Hacker News: Ask HN
T
Threat Research - Cisco Blogs
GbyAI
GbyAI
The Last Watchdog
The Last Watchdog
P
Privacy International News Feed
Cyberwarzone
Cyberwarzone
S
SegmentFault 最新的问题
L
Lohrmann on Cybersecurity
人人都是产品经理
人人都是产品经理
V
V2EX
V
Vulnerabilities – Threatpost
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
C
Cybersecurity and Infrastructure Security Agency CISA
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
T
Troy Hunt's Blog
Application and Cybersecurity Blog
Application and Cybersecurity Blog
阮一峰的网络日志
阮一峰的网络日志
SecWiki News
SecWiki News
Microsoft Azure Blog
Microsoft Azure Blog

PYMNTS.com

Crypto Payments Are Back. Will Merchants Actually Care This Time? Labor Department Proposes Unified Joint Employer Standard B2B’s New Battlefield Is Everything Before the Button Amazon Targets the GLP-1 Gap Big Pharma Left Open LendingClub Signals Expanded Capabilities With Happen Bank Rebrand Congress Moves to Give FinTechs Direct Fed Payment Access Microsoft Tests Mythos to Identify and Mitigate Vulnerabilities United Airlines Hikes Fares as Fuel Costs Surge OpenAI Images 2.0 Is a Real Leap With a Real Price Tag Morgan Stanley Says Gaming Could Score $22 Billion With AI FTC Shuts Down Alleged Healthcare Fraud Scheme Sam’s Club Offers eCommerce Shoppers Hour-or-Less Deliveries FinTechs Cut Staff as AI and Margins Redefine Growth JPMorganChase Extends Critical Industries Investment Program to Continental Europe OpenAI Lands $75 Million Investment From Robinhood Ventures House Bill Would Reduce Small Lenders’ Reporting Requirements Coinbase Lists tGBP to Expand Locally-Denominated Stablecoin Access BNY Names New Head for Payments/Trade Client Platform KnowBe4 Automates Global Cash Flow Via Flywire Partnership Treasury Calls for Programmable Financial Enforcement Across Crypto DeepSeek Seeks $20 Billion Valuation as Tech Giants Weigh Investment Google Accelerates Agentic AI Shift With New Enterprise Platform OpenAI Begins Briefing Governments on Cybersecurity Capabilities DeFi Security Suffers New Blow With $3 Million Volo Exploit Uninvited Users Access Anthropic’s Mythos AI Model Block and Uber Expand Partnership Across Several Global Markets OpenAI Pledges $1.5 Billion to PE Enterprise AI Project Synchrony CFO Flags Momentum in Spending and Credit Banks Risk Slowing the Emerging Middle Market Firms Driving Growth Paysafe Expands Digital Wallet Availability Across 18 European Markets Bad Data Can Break Good AI in Payments 50% More Digital Shopping Days Put Parents at the Center of Retail’s Shift 65% Call Insurance Essential. Why Most Spending Isn’t So Clear-Cut Amazon Recasts Marketplace Fraud as a Broader Trust Problem Capital One’s Q1 Shifts Attention From Spending to Strategy Lawmakers Question JetBlue About Surveillance Pricing Allegations Payments Modernization Is Insurance’s Next Big Margin Engine How Visa Is Rewiring Bank Infrastructure for the AI Era Instant Payments Grow but the Real Barrier Is Human The Old-School Card Product Banks May Need Most 43% of SMBs Would Pay to Make Purchases in Installments The Real AI Edge in Payments Comes From Better Judgment In the Age of Agentic AI, Data Control Is Power Verizon’s Dan Schulman Tells CEOs to Be Open About AI Job Cuts Walmart Eyes Stores as Warehouse Space for Same-Day Delivery France’s CB Payments Network Aims to Take on Visa/Mastercard in EU QVC Was TikTok Shop Before TikTok Shop Loop Raises $95 Million to Bridge Supply Chain Data Gap Cursor Eyes $50 Billion Valuation as AI Coding Demand Surges Commercial Lending Rescues Regional Banks From Consumer Slowdown Anthropic and White House Aim to Make Peace in Friday Meeting Home Depot Buys SIMPL Automation to Support Same-Day Delivery The Riskiest Words in B2B: This Is How We’ve Always Done It France Urges Euro Stablecoins to Break Dollar Dependency Importers Prep for Monday Opening of Tariff Refund Portal Permitting Hurdles and Labor Shortages Threaten AI Data Center Timelines Token Freezes Force CFOs to Rethink Stablecoin Risk X Money Tests Whether Social Commerce Can Hold Consumer Deposits Anthropic Briefs EU Regulators on Mythos Cybersecurity Concerns Welcome to Vibe Ordering, ChatGPT Is Taking Your Order Now Nvidia Says AI Can Finally Make Quantum Computing Work QVC Files Chapter 11 to Slash Debt and Pursue Growth Uber Eats Lets Customers Return Their Retail Purchases Financial Officials Sound Alarm About Anthropic’s Banking Risk 71% of Billion-Dollar Firms Face Agent Identity Threats What If Clearing Had Its Stripe Moment? OpenAI Targets Pharma Giants With Purpose-Built AI Model California Claims Amazon Punishes Sellers for Lower Prices on Other Sites CFTC Chairman Says AI Helps Agency Run More Like a Business Global Finance Chiefs Call for Mythos Information Sharing Big Bank Earnings Show Digital Activity Drives Deposits OCC Clears JPMorgan Chase After Trade Surveillance Program Upgrade Accounts Receivable Gets an AI Upgrade BNY’s AI Strategy Signals a New Era of Platform Banking Bank of England Probes AI Threats to UK Financial Stability Rising AI Adoption Is Driving Up Enterprise Costs Google Faces EU Order to Share Search Data With Rivals Delivery Robots Lead Grab’s AI Expansion Circle Chief Says China Could Issue Stablecoin in 3 to 5 Years Amex Acquires Hyper to Boost AI and Expense Management Offerings Anthropic Ready to Offer Mythos to British Banks Issuers Face a New Reality as Credit Goes Real Time How Payments Gaps Are Limiting Deposit Growth at Community Banks AI May Run Payments but Humans Still Own the Risk 90% of Millennials Feel Pressure at the Grocery Store The New Checkout Is Where the Best Offer Wins Insurance Sector’s Private Credit Ties Has Investors Concerned Oil Price Spike Erodes Small Business Confidence, NFIB Says Synctera Looks to Beef Up Compliance With Cable Acquisition Velera Launches Cloud Platform to Modernize Credit Union Tech Kraken Lands $200 Million Investment From Deutsche Börse Walmart CFO Says Marketplace Revenue Up 20% Over 2025 The US Operationalized Stablecoins This Week, But Who’s Using Them? AI Is the New Sales Associate in Physical Retail Fed Finds Stablecoins Idle, Confirms PYMNTS Usage Gap BMO Accelerates Quantum Push With New Tech Institute Bank of France Pushes EU to Rein in Non-Euro-Backed Stablecoins Perplexity Uses Plaid to Personalize Financial Insights Blackstone Accelerates Push to Lead AI Infrastructure Boom Feds Warn Major Banks of Anthropic Mythos Cyber Threat
Podcast: Inside the $9 Billion DeFi Hack That’s Shaking Crypto’s Foundations
PYMNTS · 2026-04-22 · via PYMNTS.com


Explore more conversations like this 
From the Block

For the crypto sector, big enough operational crises can be viewed as industry-wide reputational crises.

And by any measure, the April 18 exploit of the Kelp DAO decentralized finance (DeFi) platform, which saw roughly $292 million siphoned from a cross-chain restaking protocol and set off a chain reaction that erased nearly $9 billion from the largest DeFi lending platform, is fast becoming a reputational, even existential, crisis for DeFi.

In the latest episode of the “From the Block” podcast, PYMNTS CEO Karen Webster and Ryan Rugg, global head of digital assets for Citi Treasury and Trade Solutions, sat down to unpack why the weekend’s DeFi exploit was not just a technical failure, but a behavioral one.

Unlike earlier attacks that targeted private keys or flawed smart contracts, this breach struck at the connective tissue of blockchain ecosystems: the messaging layer that enables interoperability across chains.

Advertisement: Scroll to Continue

“Past hacks were due to stolen keys or bugs in smart contracts, this one was convincing the vault the thief was actually the owner,” Rugg said.

As Webster put it, “We’re learning, literally hour by hour, what happened.”

DeFi Industry’s Existential Question

At the heart of the issues being surfaced by the DeFi exploit are the unavoidable tensions between crypto’s push for open, interoperable systems versus the institutional demand for security and control that has long defined, and in some places limited, blockchain’s evolution.

“Does this delay the institutional adoption of DeFi? Maybe,” Rugg said. “It is going to take some of the confidence out of the market.”

But she stopped short of calling the incident a defining setback, noting that any institutionally driven decision will likely hinge on whether firms can implement “proper redundancy and security at every layer where the trust resides.”

In other words, the future of DeFi could look less like a radical departure from mainstream finance and more like an extension of it. After all, the weekend’s exploit maneuver struck at the heart of DeFi’s design, its composability.

But this incident reveals the flip side: Composability also creates tightly coupled risk. A failure in one protocol can cascade across many, not because of direct exposure, but because assets are reused and rehypothecated across the system.

In practical terms, the Kelp DAO attackers forged a cross-chain message that triggered the bridge to release funds that had never been legitimately burned. The exploit hinged on a weakness in the validation process by isolating a single validator acting as a point of failure.

But the same features that allow assets to flow seamlessly between platforms, the attack revealed, can also allow compromised collateral to propagate risk system-wide. A failure in one protocol can cascade across many, not because of direct exposure, but because assets are reused and rehypothecated across the system.

While DeFi’s promise has long rested on the idea that transparency substitutes for trust, in moments of stress, that transparency can also accelerate panic as users see risk materializing in real time and exit instantly.

“You have to rebuild the confidence,” Rugg said, outlining the standard response playbook: containment, patching vulnerabilities, increasing validator redundancy and engaging enforcement agencies.

Interoperability Meets Institutional Reality

The paradox of DeFi is that it was built to eliminate intermediaries, yet now faces the same challenges that define modern finance: how to manage systemic risk in a highly interconnected system. And the Kelp DAO incident underscored a critical asymmetry afflicting blockchain applications. Despite capital moving instantly across chains, risk signals can often lag.

Interoperability, for example, is widely seen as essential for scaling digital assets across banks, FinTechs and enterprises. But the very bridges that enable that connectivity are also emerging as the most vulnerable points in the system.

In the case of the Kelp DAO exploit, the compromised asset (rsETH) continued to be priced near its expected value by on-chain oracles even after the underlying system had been breached. That mismatch allowed the attacker to extract additional value from downstream protocols, effectively turning a single exploit into a multiplatform liquidity event.

“There’s a reason we are still on a permissioned blockchain. We want interoperability and are driving toward that, we’ve heard our clients loud and clear around their desire for multi-bank, multi-asset-like solutions … but we need to make sure that what we’ve done in our traditional world to ensure safety and soundness now comes into this space as well,” Rugg said.

“Safety and soundness are first and foremost to large institutions like us,” she stressed, drawing a parallel between DeFi protocols and early internet routing before modern security standards were established.

Still, the road ahead is a long one. The question for institutional blockchain may not be one of whether true interoperability will arrive, but whether it can do so without compromising the very trust in the financial system it aims to decentralize.