Express
Lido: CSM-related Vulnerability Fixed, Exploitation Averted
Summary: Lido has disclosed on X platform that a vulnerability related to Lido CSM and the non-custodial validator contract used for validator withdrawals has been reported and fixed. The vulnerability was not exploited, and no CSM node operators were affected. stETH holders were also unaffected. As part of the fix, a vulnerability mitigation solution (disabling bond ...
Lido has disclosed on X platform that a vulnerability related to Lido CSM and the non-custodial validator contract used for validator withdrawals has been reported and fixed. The vulnerability was not exploited, and no CSM node operators were affected. stETH holders were also unaffected. As part of the fix, a vulnerability mitigation solution (disabling bond destruction functionality) and DAO vote proposal 190 were implemented. Lido has paid a bug bounty to white hat hackers who disclosed the issue through the Lido×Immunefi project.