Drift Protocol, a Solana-based decentralized perpetual futures platform, was hit by a major exploit on April 1, 2026, resulting in the loss of approximately $285 million in digital assets. The attack did not involve a bug in Drift's code but rather exploited 'durable nonces,' a legitimate Solana transaction feature, to pre-sign administrative transfers weeks before executing them. This sophisticated approach bypassed the protocol's multisig security measures in just minutes. The malicious actor gained unauthorized access through a novel attack involving durable nonces, resulting in a rapid takeover of Drift's Security Council administrative powers. Drift suspended deposits and withdrawals immediately after discovering the suspicious activity and is coordinating with multiple security firms, bridges and exchanges to contain the incident. The exploit ranks among the largest in crypto history and has significantly impacted Solana's DeFi ecosystem.
Drift Protocol Suffers $285 Million Exploit Through Durable Nonces Attack
C
CoinDesk
Friday, April 3, 2026·5 min read·DeFi
#Drift Protocol#exploit#Solana#durable nonces#security
