LayerZero OFT DVN config (count, threshold, diversity)
Veda (BoringVault)'s assessment for RD-F-179 — scored gray on the v1.7.0 rubric. The evidence below is the curator's reasoning for this score.
Evidence summary #
HONEST NULL + CURATOR FOLLOW-UP REQUIRED. LayerZeroTeller at 0xe97365b41b340352d3d32ca2c7230330f19a1e73 is confirmed LayerZero v2 OApp (not v1 trustedRemote — F179 applies). DVN configuration (required DVN count, optional DVNs, k-of-N threshold, operator diversity) was not retrieved. LayerZero scan returned HTTP 429. Etherscan source tab does not surface per-pathway DVN config. This is the HIGHEST-RISK unknown in Cat 10 — a 1/1 DVN threshold (Kelp DAO class, April 2026 $292M exploit) would be catastrophic. Curator must: (1) query LZ endpoint for DVN config per pathway; (2) assess whether default config is used (LayerZero default DVN set). Flag RED if 1/1 required DVN; YELLOW if 2+ DVNs with same operator; GREEN if ≥2 independent DVNs.
Sources #
- URLKelp DAO LayerZero DVN exploit forensic analysisKelp DAO LayerZero 1/1 DVN exploit context — $292M, April 2026retrieved 2026-05-17
- LayerZeroTeller Etherscan verified sourceLayerZeroTeller 0xe97365b41b340352d3d32ca2c7230330f19a1e73 — LZ v2 confirmed via ILayerZeroEndpointV2 interface; DVN config not in source tabretrieved 2026-05-17
Methodology #
For any LayerZero OFT adapter, read the DVN configuration: count of DVNs, k-of-N threshold, and operator diversity (independent operators vs same-operator multi-DVN).
See the full factor methodology and distribution across all protocols →