Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
KernelDAO

KernelDAO Vendor Cyber Rating & Cyber Score

kerneldao.com

KernelDao is leading the restaking revolution with three key products - Kelp LRT (liquid restaking on ETH), Kernel (Restaking Infrastructure on BNB), and Gain (Tokenized Airdrops and Rewards). Unified by $KERNEL governance token.


KernelDAO A.I CyberSecurity Scoring

KernelDAO
Company Information
Website:https://kerneldao.com/
Employees number:42
Number of followers:8,085
NAICS:5183
Industry Type:Blockchain Services
Homepage:kerneldao.com
KernelDAO Risk Score (AI oriented)
Between 550 and 599
logo
KernelDAOBlockchain Services
Updated:
27/07/2026
582/1000
Very Poor
Ca
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
KernelDAO Global Score (TPRM)
xxxx
logo
KernelDAOBlockchain Services
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

KernelDAO
KernelDAOVery Poor
Current Score
582Ca (VERY POOR)
01000
2 incidents
-88 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
584Before Incident
JULY 2026
695Before Incident
Breach
26 Jul 2026KernelDAO
WEMIX and Kelp DAO: WEMIX Hit With $724K Stablecoin Security Breach

WEMIX Stablecoin Compromised in Latest Crypto Security Breach

582After Incident
CRITICAL-113
KERWEM1785170324
WEMIX Stablecoin Compromised in Latest Crypto Security Breach On July 26, blockchain network WEMIX disclosed a security breach in which an attacker gained control of its WEMIX$ stablecoin, converting it into 30,736 WEMIX tokens and $724,198.27 in USDC. The stolen funds were then bridged to Ethereum and Binance Smart Chain (BSC), swapped into assets like ETH and USDT, and partially deposited into centralized exchanges. WEMIX stated that the investigation is ongoing, with attacker wallets and fund movements actively tracked. The company has requested asset freezes and cooperation from exchanges and stablecoin issuers. The incident follows a $2.4 million exploit targeting cryptocurrency wallet SecondFi earlier in the week, which forced the platform to wind down operations. This breach is part of a broader trend of high-profile crypto exploits in 2024, including the $292 million theft from Kelp DAO a DeFi platform whose attack triggered a cascading loss of nearly $9 billion across major DeFi lending protocols. Industry experts note the tension between crypto’s push for open, interoperable systems and institutional demands for security, with some suggesting such incidents may temporarily dampen confidence in DeFi adoption. In response to rising crypto theft, U.S. lawmakers introduced the Federal Cryptocurrency Theft Enforcement and Coordination Act last month. The bill, proposed by Reps. Lance Gooden (R-Texas) and Josh Gottheimer (D-N.J.), would establish a federal task force combining efforts from the Treasury, Justice, and Homeland Security departments, along with other law enforcement agencies, to combat crypto-related crimes and assist victims.
INCIDENT DETAILS -
TYPE
Stablecoin Compromise
MOTIVATION
Financial gain
IMPACT
Financial Loss: $724,198.27 in USDC and 30,736 WEMIX tokensSystems Affected: WEMIX$ stablecoin, Ethereum, Binance Smart Chain (BSC)Brand Reputation Impact: Potential dampening of confidence in DeFi adoption
JUNE 2026
693Before Incident
MAY 2026
691Before Incident
APRIL 2026
753Before Incident
Cyber Attack
18 Apr 2026KernelDAO
KelpDAO and LayerZero Labs: KelpDAO Security Breach Blamed on Lazarus Group

KelpDAO Suffers $292M Exploit Linked to North Korea’s Lazarus Group

690After Incident
CRITICAL-63
KERLAY1776675144
KelpDAO Suffers $292M Exploit Linked to North Korea’s Lazarus Group On April 18, decentralized finance (DeFi) protocol KelpDAO fell victim to a $292 million exploit, now confirmed to be the work of the North Korean state-backed Lazarus Group. The attack, the largest DeFi breach of 2026, targeted a vulnerability in the protocol’s cross-chain bridge, powered by LayerZero Labs’ infrastructure. The Lazarus Group executed a sophisticated attack by poisoning the decentralized validation network’s downstream RPC infrastructure. Through coordinated denial-of-service (DoS) attacks and control of key nodes, the threat actors manipulated the network into accepting malicious data, enabling them to forge cross-chain transactions. The incident highlights the growing sophistication of state-affiliated cyber threats in the DeFi space. Investigations revealed a critical architectural flaw in KelpDAO’s design a single-point-of-failure configuration using a one-of-one (1/1) validation setup. Despite industry warnings against such setups, the protocol lacked redundant verifiers, allowing the forged transactions to go undetected. The breach has prompted widespread industry action, with multiple DeFi platforms freezing their cross-chain bridges to prevent similar attacks. The fallout has been severe, triggering a liquidity crisis across major lending platforms like Aave as users rushed to withdraw assets amid fears of bad debt exposure. Total value locked (TVL) in DeFi has contracted sharply, reflecting heightened risk aversion. The incident has also reignited debates over the safety of restaked assets as collateral, pushing protocols toward institutional-grade security standards. As the DeFi sector grapples with the aftermath, the exploit underscores the vulnerabilities inherent in complex cross-chain architectures and the consequences of prioritizing speed over security. The event marks a turning point in how the industry assesses and mitigates systemic risks.
INCIDENT DETAILS -
TYPE
Exploit
MOTIVATION
Financial gain, state-sponsored cyber threat
IMPACT
Financial Loss: $292 millionSystems Affected: Cross-chain bridge, downstream RPC infrastructure, DeFi lending platforms (e.g., Aave)Operational Impact: Liquidity crisis, asset withdrawals, frozen cross-chain bridgesBrand Reputation Impact: Heightened risk aversion, industry-wide security concerns
MARCH 2026
753Before Incident
FEBRUARY 2026
753Before Incident
JANUARY 2026
753Before Incident
DECEMBER 2025
753Before Incident
NOVEMBER 2025
753Before Incident
OCTOBER 2025
753Before Incident
SEPTEMBER 2025
753Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for KernelDAO ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in July 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in June 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in May 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in April 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in March 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in February 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in January 2026 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in December 2025 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in November 2025 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in October 2025 ?
?
What was KernelDAO's A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on KernelDAO's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with KernelDAO ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view KernelDAO's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?