Vercel Confirms Security Breach as Hacker Demands $2 Million and Claims to Sell Internal Access
Unchained·60-word summary·1 min read
Vercel confirmed a security breach caused by a compromised third-party AI tool. Hackers demanded $2 million and claimed to sell internal access. Vercel is rotating credentials and investigating the incident, which did not access sensitive environment variables. The breach highlights risks of third-party integrations in cloud platforms used by Web3 developers.
Layerzero, a blockchain bridge, reported no contagion after a $290 million exploit, but concerns about its security and validation models remain. The incident has increased scrutiny on bridge infrastructure, with Chainlink’s Zach Rynes criticizing the design. The event highlights ongoing risks in cross-chain protocols and the need for improved security measures.
Two days after a $292 million DeFi hack drained funds from a bridge and caused $6.6 billion to flee Aave, Vitalik Buterin emphasized Ethereum’s security improvements at a Hong Kong event. He discussed upcoming features like zkEVM, quantum resistance, and 10-second finality, highlighting Ethereum’s ongoing efforts to enhance security and resilience amid recent high-profile attacks.
A crypto analyst predicts XRP could reach $100 in 2026 if several conditions occur, including explosive growth in Ripple’s On-Demand Liquidity, ETF inflows, regulatory clarity, and tokenization. The scenario involves trillions in cross-border payments, institutional adoption, and regulatory approvals, requiring a series of positive developments for XRP to hit this target.
On April 18, KelpDAO's LayerZero-based cross-chain bridge was hacked, resulting in a $292 million loss of rsETH. The attack lasted 46 minutes and highlights rising AI-driven security threats in crypto, affecting both decentralized finance and cloud infrastructure. The incident underscores the increasing sophistication of attacks targeting smart contracts and related tools amid rapid AI advancements.
Crypto markets lost over $6 million in 12 exploits in April, highlighting ongoing security vulnerabilities. The month saw significant breaches involving bridges, access controls, and governance, including a recent incident linked to AAVE. These exploits underscore persistent risks in the Web3 space, raising concerns about potential future attacks and the need for improved security measures.
The KelpDAO exploit resulted in a $292 million loss, causing DeFi total value locked to drop by $13 billion. Vercel CEO stated that highly sophisticated actors, possibly utilizing AI, carried out the attack. The incident raises concerns about security vulnerabilities in DeFi platforms and the evolving tactics of malicious actors in the space.