On April 2, Solana’s Drift Protocol suffered a devastating hack: attackers compromised admin keys, manipulated oracle data, and drained over $285 million — the largest DeFi exploit of 2026 so far. Around 20 protocols integrated with Drift vaults faced collateral damage. Solana Foundation Chair Lily Liu bluntly stated: “The smart contracts are fine. The target is people: social engineering and opsec weaknesses.”
In response, the Solana Foundation today announced two flagship security initiatives — STRIDE and SIRN — executed by security firm Asymmetric Research. The programs combine tools, standards, and funding to plug the gaps exposed by the attack.
STRIDE: Free Monitoring for $10M+ TVL, Formal Verification for $100M+
STRIDE stands for “Solana Trust, Resilience and Infrastructure for DeFi Enterprises.” It’s a structured assessment framework covering eight security pillars. Asymmetric Research will independently evaluate protocols and publish results. Protocols with TVL over $10 million that pass STRIDE receive 24/7 active threat monitoring and opsec support fully funded by the Foundation. Those above $100 million get additional funding for formal verification — among the most rigorous contract security methods. The Foundation cited existing vetting: Squads Multisig (10+ audits and formal verification), Kamino (9 audits), Jupiter Lend (formal verification +7 audits). But Drift proved that audit counts alone are not enough; proactive monitoring and rapid response are the real weak spots.
SIRN: Five Security Firms Form Incident Response Network
While STRIDE focuses on standards, SIRN (Solana Incident Response Network) handles live crises. Launched today as a membership-based alliance, SIRN coordinates security incident response across Solana. Founding members are Asymmetric Research, OtterSec, Neodyme, Squads, and ZeroShadow. They share threat intelligence, coordinate real-time response, and refine the STRIDE framework. Membership is open to all Solana protocols, with resource prioritization based on TVL size.
Existing Free Tools
Alongside the new programs, the Foundation highlighted free tools already available to the ecosystem: Hypernative (institutional threat detection since Sept 2024), Range Security (real-time alerts for multisig wallets and programs, 100 free API calls/month since Oct 2024), and Neodyme’s Riverguard (simulates attacks on Solana programs). The Foundation stressed: these measures do not transfer security responsibility. Protocols managing large user funds must treat strict security as a requirement, not an option.

