On April 1, the Solana decentralized finance (DeFi) ecosystem faced a severe blow. Drift Protocol, a well-known perpetual futures platform, reportedly suffered a critical smart contract vulnerability, allowing hackers to siphon massive funds. Initially some thought it was an April Fools' joke, but on-chain data confirmed billions of dollars moving swiftly, causing substantial investor losses.
Vault Drained: Single Transaction Moved 41.7 Million JLP
According to multiple blockchain security firms, the attack occurred during the afternoon and evening of April 1 (UTC+8). Hackers precisely targeted Drift's vault, extracting user funds abnormally. On-chain records show an initial transfer of approximately 41.7 million JLP (Jupiter Liquidity Provider tokens), valued at $155 million. Total loss estimates range from $136 million to $220 million. Trackers indicate one primary hacker wallet (7RoMqGAcU7S6ESAhPDvB9iSXvASUhuoE8u7dYRxGBew9) still holds about $109 million in assets and is actively mixing and cross-chain laundering.
DRIFT Token Crashes Over 30%
The multi-hundred-million-dollar hack triggered extreme market panic. Drift Protocol's native token DRIFT saw a selling frenzy, dropping over 30% in a short period and continuing to trade with high volatility. Some cross-chain services have activated emergency circuit breakers to prevent contagion.
Official Response Pending
As of press time, Drift Protocol's official X (formerly Twitter) account hasn't released a formal incident confirmation or post-mortem. Security experts strongly advise all Solana users to immediately revoke approvals for the protocol, halt deposits, withdrawals, and transactions until the fix is confirmed, to avoid further losses.
Security Recommendations and Next Steps
This incident underscores the security fragility of DeFi protocols. Investors should monitor official announcements, check wallet authorizations, and prioritize moving assets to secure wallets. Attention should also be paid to the flow of stolen funds or potential compensation plans.

