Lido suspends ZKsync bridge deposits, raising security concerns; LDO and ZK both weaken

ZK-0,31%
LDO2,4%
ETH1,39%

On March 4th, it was reported that the Ethereum liquidity staking protocol Lido Finance recently announced that it has suspended new bridging deposits due to a potential security vulnerability found in the wstETH bridge contract endpoint on its ZKsync network. Lido stated in a notice that there are no signs of the vulnerability being exploited so far, and assets held by wstETH holders on ZKsync remain unaffected. Withdrawal and token transfer functions are still operating normally. This suspension is a precautionary measure aimed at reducing potential risks.

The issue involves the wstETH bridge contract endpoint on the ZKsync network. This smart contract is responsible for transferring staked ETH between the Ethereum mainnet and the ZKsync Layer 2 network. Although Lido has not disclosed specific technical details of the vulnerability, it has activated an emergency multi-signature mechanism to temporarily restrict bridging deposits to prevent potential attack vectors.

ZKsync is the fifth Layer 2 integration deployed by Lido. The bridging solution was developed jointly by Lido, Matter Labs, and txSync, with the goal of establishing a standardized cross-chain wstETH bridge contract. The wstETH bridging feature on ZKsync was launched in January 2024, following approval through governance voting by Lido DAO.

Lido stated that a fix for the vulnerability has been developed, but due to the protocol’s decentralized governance model, the patch must be reviewed and deployed through the next on-chain governance proposal. The current schedule estimates that the governance vote will take place from late March to early April 2026. Until the fix is officially implemented, the new bridging deposit function will remain suspended.

For DeFi users, this process reflects the security mechanism of decentralized governance and also indicates that the repair progress depends on on-chain voting coordination. Historical experience shows that upgrading or fixing vulnerabilities in DeFi protocols often takes a considerable amount of time to complete the community governance process.

In the market, related tokens have experienced short-term pressure. Lido’s governance token LDO dropped over 3.5% in the past 24 hours, trading around $0.305; meanwhile, ZKsync’s native token ZK also declined more than 3.1%, trading near $0.018. However, analysts note that both tokens were already in a downward trend before the announcement, and the security incident has further intensified market caution.

It is worth noting that Lido currently controls about one-third of the staked ETH on the Ethereum network, making it the largest single staking service provider. Therefore, even potential security risks could have spillover effects on the entire Ethereum staking ecosystem. Currently, Lido has confirmed that the withdrawal function for wstETH on ZKsync remains operational and user assets are not directly threatened.

View Original
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

Pump.fun signals multichain move on subdomains, MoonPay

Pump.fun multichain expansion: what current signals indicate now according to Phemex News, Pump.fun has registered subdomains for Base, BSC, Monad, and Ethereum, a step widely read as groundwork for a broader rollout beyond Solana. Domain preparation can indicate technical planning and branding al

CoincuInsights51m ago

HYPE (Hyperliquid) increased by 7.80% in the past 24 hours

Gate News Update, March 12 — According to Gate Market Data, as of press time, HYPE (Hyperliquid) is trading at $37.28, up 7.80% in the past 24 hours. The highest price reached $37.42, while the lowest dipped to $29.53. The 24-hour trading volume is $446 million. The current market capitalization is approximately $9.595 billion, an increase of $694 million from yesterday. Hyperliquid is a high-performance blockchain focused on finance, designed to unify various financial applications within the crypto ecosystem. Its core application is a decentralized exchange offering zero gas fees, up to 40x leverage trading, and fully on-chain order books. Hyperliquid L1 features a block time of 0.07 seconds and a maximum of 200,000 transactions per second.

GateNews1h ago

Hyperliquid surpasses $4.5 billion in assets under management, with annualized fees reaching $747 million

Gate News Report, March 12 — According to DefiLlama data, the Hyperliquid platform currently has cross-asset (supporting USDC, USDT) assets totaling $4.507 billion. In the past 24 hours, the platform's annualized fees reached $747 million, and over the past 30 days, the platform's perpetual contract trading volume totaled $178.23 billion. Market data shows that HYPE is currently trading at $37.14, up 7.33% in the past 24 hours.

GateNews1h ago

MICA Daily|Exchange liquidity dries up, BTC trend continues to weaken

The latest US CPI data released aligns with market expectations, but due to the impact of the Middle East situation, market reactions are muted. The US stock indices fluctuate, and BTC prices hover around $70,000. Although it appears stable in the short term, market sentiment remains pessimistic, and whether the price can stay above $70,000 in the future remains uncertain, mainly depending on the development of the Middle East situation. Meanwhile, Binance's net flow data shows that investors withdraw BTC during market downturns, but selling pressure still exists.

区块客2h ago

On-chain detective claims that some institutional investors are pressuring HyperLiquid to keep trading addresses confidential

Gate News Report, March 12 — On-chain detective analyst Eye stated that some institutional investors in the crypto market are feeling uneasy after their trading wallet addresses on HyperLiquid were identified. Fearing that loss-making trades might be exposed, they have proactively contacted HyperLiquid and attempted to pressure them into not disclosing the related information. Previously, Eye had uncovered and revealed the "1011 Insider Whale."

GateNews2h ago

Ethereum spot ETF had a net inflow of $57.012 million yesterday, with none of the nine ETFs experiencing net outflows.

As of March 12, Ethereum spot ETFs recorded a total net inflow of $57.012 million on March 11, 2023, in Eastern Time, with all nine ETFs experiencing no net outflows. Among them, the Fidelity ETF had the highest net inflow at $19.1332 million, with a total net inflow of $2.333 billion. Grayscale Ethereum Mini Trust ETF followed, with a single-day net inflow of $19.0788 million and a total net inflow of $1.842 billion. Currently, the total net asset value of Ethereum spot ETFs is $11.85 billion, with a net asset ratio of 4.75%.

GateNews3h ago
Comment
0/400
No comments