SparkLend Stands Tall Amidst Chaos: $294M rsETH Heist Highlights Rate Limit Resilience
On April 18, a security breach drained nearly $294 million in unbacked rsETH from KelpDAO, causing widespread disruption in the DeFi lending space. The compromised bridge exploited LayerZero, siphoning approximately 116,500 rsETH at the time.
Aave, the largest decentralized lending protocol by most measures, held substantial rsETH positions when the exploit hit. As a result, Aave accumulated roughly $195 million in bad debt from unbacked collateral and was forced to freeze markets as a reactive measure. Its total value locked took a sharp hit before partially recovering.
SparkLend, on the other hand, had already lowered its rsETH exposure ahead of the incident, maintaining a loan-to-value ratio of 72% on those positions. The protocol's rate-limited deposit and borrow caps mechanically contained any potential damage, as it was designed to do.
The key to SparkLend's resilience lies in its predetermined risk measures, rate limits built into the protocol's architecture before anyone knew KelpDAO would be exploited. This structural approach allowed SparkLend to avoid material losses entirely, while competitors like Aave struggled with credibility challenges and significant TVL declines.