Aave published a postmortem tracing the April 2026 rsETH exploit that caused $230 million in losses to a LayerZero bridge verification failure, where a single verifier approved a fake message allowing 116,500 unbacked rsETH tokens to be minted. Aave is overhauling asset-listing standards to evaluate bridge infrastructure, oracle dependencies, and custodial arrangements, and has executed 295 parameter changes across V3 markets. The protocol is reviewing every asset listed on Aave V3.
Story comments
Loading comments…