Bitget App
Trade smarter
Open
HomepageSign up
Bitget>
News>
Lido Contains Oracle Key Breach After Chorus One Wallet Compromised

Lido Contains Oracle Key Breach After Chorus One Wallet Compromised

Cryptonewsland2025/05/12 16:00
By: by Austin Mwendia
DAO+0.65%LDO-1.86%ETH-1.80%
  • Lido responded fast to a wallet breach linked to an oracle key and kept the protocol secure and fully active.
  • The breach caused a small ETH loss but had no effect on staking or user funds due to system design.
  • Lido started a DAO vote to replace the key and improve security while checking all other oracle systems.

Ethereum staking platform Lido acted quickly after a security breach affected one of its oracle keys. The breach involved a wallet managed by validator operator Chorus One. It resulted in a loss of 1.46 ETH, worth around $3,675.

On May 10, a hot wallet managed by Chorus One that was used to vote in the Lido Oracle was accessed by an unauthorized entity, leading to the transfer of 1.46 ETH. Our team has been working tirelessly, in collaboration with @LidoFinance , to investigate the incident. As a result,… https://t.co/IIAGdBe1pQ pic.twitter.com/ZWpSFJ43VX

— Chorus One (@ChorusOne) May 11, 2025

The incident was discovered on May 10. A Lido contributor saw a low balance alert on the wallet. Further checks confirmed that someone had accessed the wallet without permission. The wallet was used for oracle voting and not protected under Lido’s stricter security rules.

Immediate Action Taken

Lido and Chorus One worked together to contain the issue. The wallet was created in 2021 and used only to sign oracle reports. It did not hold client assets. Chorus One confirmed that the wallet usually had a low balance. This reduced the impact of the breach.

The Lido protocol stayed safe and fully functional. The design of its oracle system helped as it uses a 5-out-of-9 voting system to approve changes. This means one compromised key could not control the system. Lido checked all other oracle keys and systems and no further threats were found.

Lido then started an emergency DAO vote. This vote will replace the affected oracle key. It applies to three contracts: the Accounting Oracle, the Validators Exit Bus Oracle, and the CS Fee Oracle. The vote lasts 72 hours and includes a 48-hour objection period.

Security Updates in Place

A new key has already been created and it is stored securely under updated security rules. Chorus One said that it now uses better protection for all keys. This includes HashiCorp Vault and role-based access control. These updates meet current standards and lower the risk of future attacks.

On the same day as the breach, Lido faced other oracle delays. Four oracle operators had node-level bugs. These bugs were unrelated to the breach. The problems were fixed quickly. No user funds were affected, and all services stayed active.

Review and Next Steps

Lido has launched a full review of its oracle setup. The team wants to make sure no issues remain. A full report will follow when the review ends. Chorus One stated that this event does not reflect its current security methods. Lido confirmed that the core system stayed safe and user funds were never at risk.

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

New spot margin trading pair — HOLO/USDT!
Bitget Announcement2025/09/12 07:46
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

- FUN plunged 32.34% in 24 hours to $0.008938, marking a 541.8% monthly loss amid prolonged bearish trends. - Technical breakdowns, elevated selling pressure, and forced liquidations highlight deteriorating market sentiment and risk-off behavior. - Analysts identify key support below $0.0080 as critical, with bearish momentum confirmed by RSI (<30) and MACD indicators. - A trend-following backtest strategy proposes short positions based on technical signals to capitalize on extended downward trajectories.

Bitget-RWA2025/09/12 06:14
OPEN has dropped by 189.51% within 24 hours during a significant market pullback

- OPEN's price plummeted 189.51% in 24 hours to $0.8907, marking its largest intraday decline in history. - The token fell 3793.63% over 7 days, matching identical monthly and yearly declines, signaling severe bearish momentum. - Technical analysts cite broken support levels and lack of bullish catalysts as key drivers of the sustained sell-off. - Absence of stabilizing volume or reversal patterns leaves the market vulnerable to further downward pressure.

Bitget-RWA2025/09/12 06:14
New spot margin trading pair — LINEA/USDT!
Bitget Announcement2025/09/11 10:04

Trending news

More
1
New spot margin trading pair — HOLO/USDT!
2
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

Crypto prices

More
Bitcoin
Bitcoin
BTC
$115,403.45
+0.04%
Ethereum
Ethereum
ETH
$4,637.24
+1.68%
XRP
XRP
XRP
$3.12
+2.96%
Tether USDt
Tether USDt
USDT
$1
+0.03%
Solana
Solana
SOL
$238.55
+0.01%
BNB
BNB
BNB
$928.16
+2.22%
USDC
USDC
USDC
$0.9998
-0.00%
Dogecoin
Dogecoin
DOGE
$0.2973
+10.48%
Cardano
Cardano
ADA
$0.9313
+3.95%
TRON
TRON
TRX
$0.3490
-0.10%
How to sell PI
Bitget lists PI – Buy or sell PI quickly on Bitget!
Trade now
Become a trader now?A welcome pack worth 6200 USDT for new users!
Sign up now
Trade smarter